Package: bip
Version: 0.8.9-1.1
Severity: normal
Tags: patch

I run bip on a stretch system, and connect to it from a hexchat client on
sid. After a recent upgrade of the client, which pulled in openssl 1.1,
hexchat began failing to connect to my server with the message:

error:141a318a:ssl routines:tls_process_ske_dhe:dh key too small

I found that backporting bip 0.9.0~rc3-1 to jessie worked. I further found
that just cherry-picking the following commit back to bip 0.8.9 seems to be
sufficient:

  39414f8 Handle OpenSSL version 1.1

Assuming this is the correct fix, could we get that incorporated in a
jessie update?

  -dann

-- System Information:
Debian Release: buster/sid
  APT prefers unstable-debug
  APT policy: (500, 'unstable-debug'), (500, 'unstable'), (1, 
'experimental-debug'), (1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.17.0-3-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages bip depends on:
ii  adduser    3.117
ii  libc6      2.27-5
ii  libssl1.1  1.1.1~~pre9-1
ii  lsb-base   9.20170808

bip recommends no packages.

bip suggests no packages.

Reply via email to