Your message dated Wed, 08 Feb 2017 20:49:15 +0000
with message-id <e1cbzax-0007vl...@fasolo.debian.org>
and subject line Bug#850743: fixed in syslog-ng 3.8.1-10
has caused the Debian Bug report #850743,
regarding syslog-ng: tls cert check segfault
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
850743: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=850743
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: syslog-ng
Version: 3.8.1-9
Severity: normal
Tags: upstream
See https://github.com/balabit/syslog-ng/issues/1310
syslog-ng segfaults on TLS certificate verification. the bug is not present in
3.7.3
#0 CRYPTO_get_ex_data (ad=0x1d0, idx=idx@entry=0) at crypto/ex_data.c:377
#1 0x00007ffff5b4ef2c in SSL_get_ex_data (s=<optimized out>, idx=idx@entry=0)
at ssl/ssl_lib.c:3527
#2 0x00007ffff7b7cb54 in tls_session_verify_callback (ok=0,
ctx=0x7fffec00aba0) at ../../lib/tlscontext.c:182
#3 0x00007ffff585d874 in verify_cb_cert (err=<optimized out>, depth=<optimized
out>, x=<optimized out>, ctx=<optimized out>) at crypto/x509/x509_vfy.c:162
#4 build_chain (ctx=<optimized out>) at crypto/x509/x509_vfy.c:3209
#5 verify_chain (ctx=0x7fffec00aba0) at crypto/x509/x509_vfy.c:219
#6 0x00007ffff585dc10 in X509_verify_cert (ctx=ctx@entry=0x7fffec00aba0) at
crypto/x509/x509_vfy.c:293
#7 0x00007ffff5b460c8 in ssl_verify_cert_chain (s=s@entry=0x555555792240,
sk=sk@entry=0x7fffec005170) at ssl/ssl_cert.c:439
#8 0x00007ffff5b586bb in tls_process_server_certificate (s=0x555555792240,
pkt=0x7ffff2ea58a0) at ssl/statem/statem_clnt.c:1226
#9 0x00007ffff5b55f1f in read_state_machine (s=0x555555792240) at
ssl/statem/statem.c:589
#10 state_machine (s=0x555555792240, server=0) at ssl/statem/statem.c:385
#11 0x00007ffff5b3c2fa in ssl3_write_bytes (s=0x555555792240, type=23,
buf_=0x5555557bdf00, len=50) at ssl/record/rec_layer_s3.c:374
#12 0x00007ffff5b4c889 in SSL_write (s=<optimized out>, buf=<optimized out>,
num=<optimized out>) at ssl/ssl_lib.c:1605
#13 0x00007ffff7b7d6ea in log_transport_tls_write_method (s=0x555555790070,
buf=<optimized out>, buflen=<optimized out>) at
../../lib/transport/transport-tls.c:102
#14 0x00007ffff7b88def in log_transport_write (count=50, buf=<optimized out>,
self=<optimized out>) at ../../lib/transport/logtransport.h:45
#15 log_proto_text_client_flush (s=0x55555578f780) at
../../lib/logproto/logproto-text-client.c:54
#16 0x00007ffff7b716a7 in log_proto_client_flush (s=<optimized out>) at
../../lib/logproto/logproto-client.h:110
#17 log_writer_flush_finalize (self=0x5555557bdaa0) at
../../lib/logwriter.c:1083
#18 log_writer_flush (self=0x5555557bdaa0, flush_mode=LW_FLUSH_NORMAL) at
../../lib/logwriter.c:1212
#19 0x00007ffff7b716fa in log_writer_work_perform (s=0x5555557bdaa0) at
../../lib/logwriter.c:185
#20 0x00007ffff7b732dd in _work (self=<optimized out>) at
../../lib/mainloop-io-worker.c:52
#21 0x00007ffff6579ea7 in ?? () from /usr/lib/x86_64-linux-gnu/libivykis.so.0
#22 0x00007ffff65791a3 in ?? () from /usr/lib/x86_64-linux-gnu/libivykis.so.0
#23 0x00007ffff657bb54 in iv_main () from
/usr/lib/x86_64-linux-gnu/libivykis.so.0
#24 0x00007ffff6579cd3 in ?? () from /usr/lib/x86_64-linux-gnu/libivykis.so.0
#25 0x00007ffff657c687 in ?? () from /usr/lib/x86_64-linux-gnu/libivykis.so.0
#26 0x00007ffff63600a4 in start_thread () from
/lib/x86_64-linux-gnu/libpthread.so.0
#27 0x00007ffff609562d in clone () from /lib/x86_64-linux-gnu/libc.so.6
-- System Information:
Debian Release: stretch/sid
APT prefers unstable
APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386
Kernel: Linux 4.8.0-1-amd64 (SMP w/8 CPU cores)
Locale: LANG=en_US.UTF8, LC_CTYPE=en_US.UTF8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash
Init: sysvinit (via /sbin/init)
--- End Message ---
--- Begin Message ---
Source: syslog-ng
Source-Version: 3.8.1-10
We believe that the bug you reported is fixed in the latest version of
syslog-ng, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 850...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Laszlo Boszormenyi (GCS) <g...@debian.org> (supplier of updated syslog-ng
package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Sun, 05 Feb 2017 08:34:41 +0000
Source: syslog-ng
Binary: syslog-ng syslog-ng-dbg syslog-ng-dev syslog-ng-core
syslog-ng-mod-journal syslog-ng-mod-json syslog-ng-mod-mongodb
syslog-ng-mod-sql syslog-ng-mod-smtp syslog-ng-mod-amqp syslog-ng-mod-geoip
syslog-ng-mod-redis syslog-ng-mod-stomp syslog-ng-mod-riemann
syslog-ng-mod-graphite syslog-ng-mod-python syslog-ng-mod-add-contextual-data
Architecture: source amd64 all
Version: 3.8.1-10
Distribution: unstable
Urgency: medium
Maintainer: syslog-ng maintainers
<syslog-ng-maintain...@lists.alioth.debian.org>
Changed-By: Laszlo Boszormenyi (GCS) <g...@debian.org>
Description:
syslog-ng - Enhanced system logging daemon (metapackage)
syslog-ng-core - Enhanced system logging daemon (core)
syslog-ng-dbg - Enhanced system logging daemon (debug symbols)
syslog-ng-dev - Enhanced system logging daemon (development files)
syslog-ng-mod-add-contextual-data - Enhanced system logging daemon
(add-contextual-data)
syslog-ng-mod-amqp - Enhanced system logging daemon (AMQP plugin)
syslog-ng-mod-geoip - Enhanced system logging daemon (GeoIP plugin)
syslog-ng-mod-graphite - Enhanced system logging daemon (graphite plugin)
syslog-ng-mod-journal - Enhanced system logging daemon (systemd journal plugin)
syslog-ng-mod-json - Enhanced system logging daemon (JSON plugin)
syslog-ng-mod-mongodb - Enhanced system logging daemon (MongoDB plugin)
syslog-ng-mod-python - Enhanced system logging daemon (Python plugin)
syslog-ng-mod-redis - Enhanced system logging daemon (Redis plugin)
syslog-ng-mod-riemann - Enhanced system logging daemon (Riemann destination)
syslog-ng-mod-smtp - Enhanced system logging daemon (SMTP plugin)
syslog-ng-mod-sql - Enhanced system logging daemon (SQL plugin)
syslog-ng-mod-stomp - Enhanced system logging daemon (STOMP plugin)
Closes: 850743
Changes:
syslog-ng (3.8.1-10) unstable; urgency=medium
.
* Fix segfault in X509_STORE_CTX_get_app_data(ctx) (closes: #850743).
Checksums-Sha1:
e51098749421009e15922b10be948e7d9df57c71 3730 syslog-ng_3.8.1-10.dsc
174a2ccaece9eda90b4d1e06e9615f6d84dcfa5f 42696 syslog-ng_3.8.1-10.debian.tar.xz
5b8862f44a8ed305fc565eb9ed201dfb9862258a 450408
syslog-ng-core_3.8.1-10_amd64.deb
a64ebf8f027e8edcd19001fa98aab72807a48fad 3059000
syslog-ng-dbg_3.8.1-10_amd64.deb
ca4936066bb0aa2abf3b139c57a0e58ae3ca9d90 117224
syslog-ng-dev_3.8.1-10_amd64.deb
f302def58fb2d77cd1c2772ebc6dcffd82dedcea 37614
syslog-ng-mod-add-contextual-data_3.8.1-10_amd64.deb
082e9c3f363a5dd722d0fd032a1f99cecf5f8e89 47782
syslog-ng-mod-amqp_3.8.1-10_amd64.deb
bfa7655f400c720128f0b7f1dd42b7d89f1a4329 34680
syslog-ng-mod-geoip_3.8.1-10_amd64.deb
d225677ded69290513ead609629f9d394a8f044d 30048
syslog-ng-mod-graphite_3.8.1-10_amd64.deb
3db0b2cd019733986ff0dd3b5d599e3bcc305be4 39434
syslog-ng-mod-journal_3.8.1-10_amd64.deb
621c2a5c73981fc1063fcaf62fbd8daa5392e316 38906
syslog-ng-mod-json_3.8.1-10_amd64.deb
e0eb3fea888b236b9e58299582e9d6c05bf58a6b 42480
syslog-ng-mod-mongodb_3.8.1-10_amd64.deb
60a0e4cf1207d5bb1b0dd50ba5397db3d8afd83a 51910
syslog-ng-mod-python_3.8.1-10_amd64.deb
eeaec6934b25bbf84db7749cf55a8d5e41db2499 36296
syslog-ng-mod-redis_3.8.1-10_amd64.deb
11dbb99564028a9aa216c1dcb2282c08b4d5e919 39120
syslog-ng-mod-riemann_3.8.1-10_amd64.deb
2bc131ba6587ea1446c7c5a03b81d1521b00dfd7 38862
syslog-ng-mod-smtp_3.8.1-10_amd64.deb
22835ba19b72ea6514be884b4df3ba39ad812eba 44142
syslog-ng-mod-sql_3.8.1-10_amd64.deb
2e5a6e6dc5101fbd6ba4672d7482b94540f6aa48 39960
syslog-ng-mod-stomp_3.8.1-10_amd64.deb
bfd262eb3aace99500dc7d3a9fa188989655733c 26424 syslog-ng_3.8.1-10_all.deb
e9445fe096c2bcf357051dd53b2f466b32d55a22 12942
syslog-ng_3.8.1-10_amd64.buildinfo
Checksums-Sha256:
d16407ba5000ac1bbbb3a08e4f7b57bec57d53a77c6d2ffbe0e0f1a3d036f9d0 3730
syslog-ng_3.8.1-10.dsc
1718c3939c5582f7f0b72d1e69cc53278d08ff21d67a591cde2f6a3ae7253645 42696
syslog-ng_3.8.1-10.debian.tar.xz
85b4e131860a3c147a71b8b1325332f8a7de02dbb1f7e280881ac1a9177f47d6 450408
syslog-ng-core_3.8.1-10_amd64.deb
da9667d3fa579f9f2fdb2769feb64a607ccb3c05e823acd24c4652af042a929f 3059000
syslog-ng-dbg_3.8.1-10_amd64.deb
b2517be8cfb3926ebc2598d4345acec7837e2abc5b07a3524b5479c1841b4eff 117224
syslog-ng-dev_3.8.1-10_amd64.deb
3ab2c47863bcd5256af6df45abf39b7bf309d0d736857333e4cde9313457b7d3 37614
syslog-ng-mod-add-contextual-data_3.8.1-10_amd64.deb
2964faa6ff98ed3d687a5c453365539aa1cec6d42e5e3e585aecfe04d8beb281 47782
syslog-ng-mod-amqp_3.8.1-10_amd64.deb
7568e0fb19fc51bedca3951a9243596dfd61fecbe51990ba7834c849d8f948ce 34680
syslog-ng-mod-geoip_3.8.1-10_amd64.deb
4b67abf1fb197d12b0ef5be477b59e140a9c7577ade4c091973a9e878ee52597 30048
syslog-ng-mod-graphite_3.8.1-10_amd64.deb
4ec02a890057913c9080a1a2368efed10440abc73a18cff8fc7234986df2a61e 39434
syslog-ng-mod-journal_3.8.1-10_amd64.deb
49f41cb30574ea0723dc079348564bf6c7da0dc4d64ed67b9c6b95c3a18cc391 38906
syslog-ng-mod-json_3.8.1-10_amd64.deb
1ab554b18b1828102b698369613488cbbdfb36c4b6644e5e70c483f0568a67f8 42480
syslog-ng-mod-mongodb_3.8.1-10_amd64.deb
fdf7cb261bb38d919814ab321cc9ed522eb078d1bdb71e369e898d94b1923193 51910
syslog-ng-mod-python_3.8.1-10_amd64.deb
aac6e3600e139c350413c972979bbcd8d43263c6669f789745df4ce4825f3bb3 36296
syslog-ng-mod-redis_3.8.1-10_amd64.deb
5a189bb9a4a3f9606d50083e3d89d9d1f40805b02acf33b8ed4c0187c889de89 39120
syslog-ng-mod-riemann_3.8.1-10_amd64.deb
57d215b0da0f876b278246ef86089485d9272e2c1ecdfcf40e6fd5b7e5b7235e 38862
syslog-ng-mod-smtp_3.8.1-10_amd64.deb
14d8e41841c207f33f5e91e7508358fb76dd276cb97a21510a3ec581383adeed 44142
syslog-ng-mod-sql_3.8.1-10_amd64.deb
b404f61df838a45dfc120462ae626fe799ec4f1e93d415b7ab2d07cacb0499c5 39960
syslog-ng-mod-stomp_3.8.1-10_amd64.deb
ecf0b63ea8b33809d99e8665616466019d26d157cea01d457666f48481a2291e 26424
syslog-ng_3.8.1-10_all.deb
3a7d4ce15f287d70cdb67dd4bb682cddbf7882df8797aba3a69dd7ffdaad954e 12942
syslog-ng_3.8.1-10_amd64.buildinfo
Files:
9ff8f7d416284ea1e795c3c0dfa0a6af 3730 admin extra syslog-ng_3.8.1-10.dsc
3478d37a8f3330306d14199b727c3266 42696 admin extra
syslog-ng_3.8.1-10.debian.tar.xz
62aa956576c0899580e79f492df147a4 450408 admin extra
syslog-ng-core_3.8.1-10_amd64.deb
64a1fa288c3460389f45efe20e8dad68 3059000 debug extra
syslog-ng-dbg_3.8.1-10_amd64.deb
814c2f5dbf93f8718416afbf5481b953 117224 libdevel extra
syslog-ng-dev_3.8.1-10_amd64.deb
34ed308b15eb945e079b6393731cf3c5 37614 admin extra
syslog-ng-mod-add-contextual-data_3.8.1-10_amd64.deb
06eebdeaaafdd9e7540cec11fa8b1047 47782 admin extra
syslog-ng-mod-amqp_3.8.1-10_amd64.deb
36bf8432db3f45134a019c38448f2548 34680 admin extra
syslog-ng-mod-geoip_3.8.1-10_amd64.deb
a19c8d0bfbb17f7255222f62789d5cab 30048 admin extra
syslog-ng-mod-graphite_3.8.1-10_amd64.deb
8bddaf3f00550e42a8c846c3f1c3b23b 39434 admin extra
syslog-ng-mod-journal_3.8.1-10_amd64.deb
4a731d6d106bd190386130d6739db000 38906 admin extra
syslog-ng-mod-json_3.8.1-10_amd64.deb
8c8905b99fd4283d3f74879c83cdef54 42480 admin extra
syslog-ng-mod-mongodb_3.8.1-10_amd64.deb
a481bf572ab099f7db93e59faaaaeba9 51910 admin extra
syslog-ng-mod-python_3.8.1-10_amd64.deb
2d5bc267e2bf0eddfb1ce7f02044b4ed 36296 admin extra
syslog-ng-mod-redis_3.8.1-10_amd64.deb
93d9174b5e7680bc664913f2f3da8e1a 39120 admin extra
syslog-ng-mod-riemann_3.8.1-10_amd64.deb
da64f3b7d60fe502e21e640385ed0c47 38862 admin extra
syslog-ng-mod-smtp_3.8.1-10_amd64.deb
7ca90962665a8751310931b0102faea2 44142 admin extra
syslog-ng-mod-sql_3.8.1-10_amd64.deb
101c9bbd1534d5102036a250f939d3c4 39960 admin extra
syslog-ng-mod-stomp_3.8.1-10_amd64.deb
08bfacd0a3948803ddd9c86446750e6c 26424 admin extra syslog-ng_3.8.1-10_all.deb
8ba98c380358b596220e10140bfe227e 12942 admin extra
syslog-ng_3.8.1-10_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=1IgC
-----END PGP SIGNATURE-----
--- End Message ---