<oembed><type>rich</type><version>1.0</version><author_name>npub1m230cem2yh3mtdzkg32qhj73uytgkyg5ylxsu083n3tpjnajxx4qqa2np2</author_name><author_url>https://nostr.ae/npub1m230cem2yh3mtdzkg32qhj73uytgkyg5ylxsu083n3tpjnajxx4qqa2np2</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2017-02-23&#xA;📝 Original message:On Thu, Feb 23, 2017 at 01:14:09PM -0500, Peter Todd via bitcoin-dev wrote:&#xA;&gt; Worth noting: the impact of the SHA1 collison attack on Git is *not* limited&#xA;&gt; only to maintainers making maliciously colliding Git commits, but also&#xA;&gt; third-party&#39;s submitting pull-reqs containing commits, trees, and especially&#xA;&gt; files for which collisions have been found. This is likely to be exploitable in&#xA;&gt; practice with binary files, as reviewers aren&#39;t going to necessarily notice&#xA;&gt; garbage at the end of a file needed for the attack; if the attack can be&#xA;&gt; extended to constricted character sets like unicode or ASCII, we&#39;re in trouble&#xA;&gt; in general.&#xA;&gt; &#xA;&gt; Concretely, I could prepare a pair of files with the same SHA1 hash, taking&#xA;&gt; into account the header that Git prepends when hashing files. I&#39;d then submit&#xA;&gt; that pull-req to a project with the &#34;clean&#34; version of that file. Once the&#xA;&gt; maintainer merges my pull-req, possibly PGP signing the git commit, I then take&#xA;&gt; that signature and distribute the same repo, but with the &#34;clean&#34; version&#xA;&gt; replaced by the malicious version of the file.&#xA;&#xA;Thinking about this a bit more, the most concerning avenue of attack is likely&#xA;to be tree objects, as I&#39;ll bet you you can construct tree objs with garbage at&#xA;the end that many review tools don&#39;t pick up on. :(&#xA;&#xA;-- &#xA;https://petertodd.org &#39;peter&#39;[:-1]@petertodd.org&#xA;-------------- next part --------------&#xA;A non-text attachment was scrubbed...&#xA;Name: signature.asc&#xA;Type: application/pgp-signature&#xA;Size: 455 bytes&#xA;Desc: Digital signature&#xA;URL: &lt;http://lists.linuxfoundation.org/pipermail/bitcoin-dev/attachments/20170223/29fe50b5/attachment-0001.sig&gt;</html></oembed>