Bug#541735: [Pkg-openssl-devel] Bug#541735: libssl0.9.8: unknown message digest algorithm error in heirloom-mailx

2009-09-11 Thread Kurt Roeckx
On Wed, Sep 09, 2009 at 09:09:53AM -0400, Marc Deslauriers wrote: > Here's the upstream patch that disables signature checking on > self-signed certs. This is needed when the CVE-2009-2409 patch is used. > > http://marc.info/?l=openssl-cvs&m=124508133203041&w=2 Thanks for the pointer. Preparing

Bug#541735: libssl0.9.8: unknown message digest algorithm error in heirloom-mailx

2009-09-09 Thread Marc Deslauriers
Here's the upstream patch that disables signature checking on self-signed certs. This is needed when the CVE-2009-2409 patch is used. http://marc.info/?l=openssl-cvs&m=124508133203041&w=2 Marc. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscri

Bug#541735: [Pkg-openssl-devel] Bug#541735: libssl0.9.8: unknown message digest algorithm error in heirloom-mailx

2009-08-17 Thread Florian Weimer
* Kurt Roeckx: > So it seems that the verisign certificate is using MD2 for > something, but I can't find for what exactly. The self-signature on the root certificate is MD2. You generally have to ignore root CA self-signatures because they are bogus certificates anyway (if it says "Equifax", it

Bug#541735: libssl0.9.8: unknown message digest algorithm error in heirloom-mailx

2009-08-17 Thread Florian Weimer
* Vladimir Volovich: > Now, what i don't understand is why i'm still able to connect to that > host using "openssl s_client", but i'm getting errors when connecting > via perl's Crypt::SSLeay -- when i "export DEBUG_HTTPS=1" and run the > script which connects to that URL, i see With "openssl s_c

Bug#541735: libssl0.9.8: unknown message digest algorithm error in heirloom-mailx

2009-08-17 Thread Vladimir Volovich
Hi! it looks like disabling MD2 in version 0.9.8k-4 caused problems with some other important applications as the Payflow PRO service. E.g., when you connect to https://payflowpro.paypal.com/ if you look at the certificate chain, the root certificate in the chain uses signature algorithm PKCS #

Bug#541735: [Pkg-openssl-devel] Bug#541735: libssl0.9.8: unknown message digest algorithm error in heirloom-mailx

2009-08-16 Thread Kurt Roeckx
On Sat, Aug 15, 2009 at 06:02:58PM -0700, Paul Vojta wrote: > Package: libssl0.9.8 > Version: 0.9.8k-4 > Severity: important > > With the above version of libssl0.9.8, I get the following error output when > trying to run heirloom-mailx: > > > % heirloom-mailx > > Error with certificate at depth:

Bug#541735: libssl0.9.8: unknown message digest algorithm error in heirloom-mailx

2009-08-15 Thread Paul Vojta
Package: libssl0.9.8 Version: 0.9.8k-4 Severity: important With the above version of libssl0.9.8, I get the following error output when trying to run heirloom-mailx: > % heirloom-mailx > Error with certificate at depth: 2 issuer = /C=US/O=VeriSign, Inc./OU=Class 3 > Public Primary Certification