This isn't just a problem of openssl spradically crashing. It can also cause silent data corruption. If openssl req -new doesn't crash, the IPv6 address in the output CSR will be wrong.
Martin -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org