Gentoo Archives: gentoo-security

From: Ryan Voots <simcop2387@×××××.com>
To: gentoo-security@g.o
Subject: Re: [gentoo-security] MD5 mismatch for XFree86 patch
Date: Fri, 05 Dec 2003 09:41:09
Message-Id: 20031205104105.319489fe.simcop2387@yahoo.com
In Reply to: Re: [gentoo-security] MD5 mismatch for XFree86 patch by Russell Adams
On Fri, 5 Dec 2003 09:33:32 -0600
"Russell Adams" <RLAdams@××××××××××××××.com>  Add to Address Book wrote:

> This is the way HLUG and I caught the trojaned libpcap/tcpdump sources > on the home site a while back. (http://www.adamsinfoserv.com/trojan.html) > > MD5's were good on the mirrors, but failed when downloading from the > home site. > > To be thorough, check the validity of the files you download from > multiple sources. Switch mirrors and then force a download from the > home site for that package and watch your checksums. > > Russell >
you could also do a tar -tv[zj]f /usr/portage/distfiles/<file> to see if the archive is even good, if not you'll get errors from gzip or bzip2 at some point, but just make sure you backed up in case there is some exploit with gzip or bzip2 that its trying to do -----BEGIN GEEK CODE BLOCK---- Version: 3.1 GCS/CM/E/M/S/O d--(-) s:+>:- a--->-->->>+>++>+++$ C+++>++++$ UL++++>++++$ P+++>++++$ L++++>++++$ !E-? W++>++$>+++$ N++>* !o? !K? w--->---$ O-- M-@ !V--? PS+++(++(+((-)))) PE Y+(++)@ PGP+++(++) t+++>+++$ 5--(-)@ X++@>+++@ R+(++)@ tv+++@>++@ b+>++ DI++++ D+++@ G+++>++++ e>+$>++$>+++$>++++$>+++++$ h+>++ r*(--(++))@ !y+>-->->+++@ -----END GEEK CODE BLOCK-----