From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([2001:4830:134:3::10]:34179) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1cbb3b-0003Zv-OS for qemu-devel@nongnu.org; Wed, 08 Feb 2017 17:49:48 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1cbb3Y-0003fD-NG for qemu-devel@nongnu.org; Wed, 08 Feb 2017 17:49:47 -0500 References: <20170126101827.22378-1-berrange@redhat.com> <20170126101827.22378-4-berrange@redhat.com> From: Max Reitz Message-ID: Date: Wed, 8 Feb 2017 23:49:31 +0100 MIME-Version: 1.0 In-Reply-To: <20170126101827.22378-4-berrange@redhat.com> Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="xlDAp1NstSQPTN4mbUHGXCtxNDUVChIXG" Subject: Re: [Qemu-devel] [PATCH v3 03/18] qcow: document another weakness of qcow AES encryption List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: "Daniel P. Berrange" , qemu-devel@nongnu.org Cc: qemu-block@nongnu.org, Kevin Wolf This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --xlDAp1NstSQPTN4mbUHGXCtxNDUVChIXG From: Max Reitz To: "Daniel P. Berrange" , qemu-devel@nongnu.org Cc: qemu-block@nongnu.org, Kevin Wolf Message-ID: Subject: Re: [PATCH v3 03/18] qcow: document another weakness of qcow AES encryption References: <20170126101827.22378-1-berrange@redhat.com> <20170126101827.22378-4-berrange@redhat.com> In-Reply-To: <20170126101827.22378-4-berrange@redhat.com> Content-Type: text/plain; charset=iso-8859-15 Content-Transfer-Encoding: quoted-printable On 26.01.2017 11:18, Daniel P. Berrange wrote: > Document that use of guest virtual sector numbers as the basis for > the initialization vectors is a potential weakness, when combined > with internal snapshots or multiple images using the same passphrase. > This fixes the formatting of the itemized list too. >=20 > Signed-off-by: Daniel P. Berrange > --- > qemu-img.texi | 19 ++++++++++++++++--- > 1 file changed, 16 insertions(+), 3 deletions(-) Reviewed-by: Max Reitz --xlDAp1NstSQPTN4mbUHGXCtxNDUVChIXG Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- iQFGBAEBCAAwFiEEkb62CjDbPohX0Rgp9AfbAGHVz0AFAliboHsSHG1yZWl0ekBy ZWRoYXQuY29tAAoJEPQH2wBh1c9A+CMIALkiKtDNK2XCIs79FXPh8jmZ0GyVOmRF B7qS7Tc9CPM8SM/8qPwQxRvjDcOIc0sWEXsVJIFoycQjkGRCB6GC7BnMoE5i3/lN k/jkTcq3PCS6mP+8Zbh9znJ0LQYtjz1p+YmEHnBcJpgqOoLwfcErAf98MDG6OmFP fWMr35Ja5YFcyTspNICEpJBUR2LDzTSrLxidOWdrWlQ4Xvvl4owDsQVDmT2Fb5Cs z+Q3ZZH836a0fGnURm7oFgm3ezx872rimfS5cIWeD+kishr3oOWs9xn18k5GirUe 2VOmcWGy7/EyooEwqQgRxgdm/wd27FOP+1MWgF0CJIg1azPjP5njfPk= =KXdq -----END PGP SIGNATURE----- --xlDAp1NstSQPTN4mbUHGXCtxNDUVChIXG--