Package: apt-listbugs
Version: 0.1.35
Severity: grave
Justification: renders package unusable

Dear Maintainer,

The old Let's Encrypt root certificate expired recently. Let's Encrypt
has moved on from that certificate a long time ago, and in principle
only old devices who don't get their CA store updated should be
affected.

https://techcrunch.com/2021/09/21/lets-encrypt-root-expiry/

However, apt-listbugs fails due to a expired certificate, while curl and
my web browser can access the BTS just fine:

----------------8<----------------8<----------------8<-----------------
~$ apt-listbugs list apt-listbugs
Retrieving bug reports... 0% Fail
Error retrieving bug reports from the server with the following error message:
E: SSL_connect returned=1 errno=0 state=error: certificate verify failed 
(certificate has expired)
It could be because your network is down, or because of broken proxy servers, 
or the BTS server itself is down. Check network configuration and try again
Retry downloading bug information? [Y/n] n
Continue the installation anyway? [y/N] n
E: Exiting with error
~[1]$ curl -I https://bugs.debian.org/src:apt-listbugs
HTTP/2 302
date: Fri, 01 Oct 2021 12:12:14 GMT
server: Apache
x-content-type-options: nosniff
x-frame-options: sameorigin
referrer-policy: no-referrer
x-xss-protection: 1
permissions-policy: interest-cohort=()
strict-transport-security: max-age=15552000
location: https://bugs.debian.org/cgi-bin/pkgreport.cgi?src=apt-listbugs
content-type: text/html; charset=iso-8859-1
----------------8<----------------8<----------------8<-----------------

I can also reproduce this on a clean unstable system.


-- System Information:
Debian Release: bookworm/sid
  APT prefers testing-debug
  APT policy: (900, 'testing-debug'), (900, 'testing'), (500, 
'unstable-debug'), (500, 'unstable'), (1, 'experimental-debug'), (1, 
'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 5.14.0-1-amd64 (SMP w/4 CPU threads)
Locale: LANG=C.UTF-8, LC_CTYPE=C.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set to 
C.UTF-8), LANGUAGE=C.UTF-8
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages apt-listbugs depends on:
ii  apt             2.3.9
ii  ruby            1:2.7+2
pn  ruby-debian     <none>
pn  ruby-gettext    <none>
ii  ruby-soap4r     2.0.5-5
pn  ruby-unicode    <none>
pn  ruby-xmlparser  <none>

Versions of packages apt-listbugs recommends:
ii  ruby-httpclient  2.8.3-3

Versions of packages apt-listbugs suggests:
ii  chromium [www-browser]  93.0.4577.82-1
ii  firefox [www-browser]   92.0-1
ii  reportbug               11.0.0
ii  sensible-utils          0.0.17
ii  w3m [www-browser]       0.5.3+git20210102-6
ii  xdg-utils               1.1.3-4.1

-- no debconf information

Attachment: signature.asc
Description: PGP signature

Reply via email to