Bug 2237492 - lastpass-cli-1.3.6 is available, fixes fatal CA certificate error
Summary: lastpass-cli-1.3.6 is available, fixes fatal CA certificate error
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Fedora EPEL
Classification: Fedora
Component: lastpass-cli
Version: epel8
Hardware: Unspecified
OS: Unspecified
unspecified
medium
Target Milestone: ---
Assignee: Robert-André Mauchin 🐧
QA Contact: Fedora Extras Quality Assurance
URL: https://github.com/lastpass/lastpass-...
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2023-09-05 18:03 UTC by Vic Breen
Modified: 2024-03-05 02:08 UTC (History)
1 user (show)

Fixed In Version: lastpass-cli-1.3.7-1.fc39
Clone Of:
Environment:
Last Closed: 2024-03-05 02:08:09 UTC
Type: Bug
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Github lastpass/lastpass-cli/releases/tag/v1.3.6 0 None None None 2023-09-05 18:10:09 UTC
Red Hat Bugzilla 2236615 0 unspecified CLOSED lastpass-cli-1.3.5 is available 2023-09-15 18:47:01 UTC

Description Vic Breen 2023-09-05 18:03:13 UTC
Description of problem:
Current version of lastpass-cli in EPEL 8 as of today is 1.3.3 which has expired chain certificates. Latest version 1.3.6 is available and my local build of it works as expected.



Version-Release number of selected component (if applicable):
1.3.3 is broken. Fixed in latest 1.3.6

How reproducible:
Every time.

Steps to Reproduce:

1. Login to vault with "lpass login <user@domain>" with the application version 1.3.3
2. Fatal error returned is "Error: Peer certificate cannot be authenticated with given CA certificates."
3. ???
4. No Profit

Actual results:
Fatal error results in being unable to unlock the vault. CLI use of lastpass with "lpass" binary has become impossible with available version in EPEL 8.

Expected results:
1. Login to vault with "lpass login <user@domain>"
2. Password vault master password challenge prompt is shown.
3. Correct vault password provided by user.
4. Exit 0, message returned "Success: Logged in as <user@domain>."
5. "lpass ls" shows contents of vault.

Additional info:
This supersedes bug 2236615, since the latest version released is now past the version reported in that bug.

Comment 1 Fedora Update System 2024-02-25 12:11:12 UTC
FEDORA-2024-3d63cc7380 (lastpass-cli-1.3.7-1.fc39) has been submitted as an update to Fedora 39.
https://bodhi.fedoraproject.org/updates/FEDORA-2024-3d63cc7380

Comment 2 Fedora Update System 2024-02-26 01:37:18 UTC
FEDORA-2024-3d63cc7380 has been pushed to the Fedora 39 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2024-3d63cc7380`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2024-3d63cc7380

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 3 Fedora Update System 2024-03-05 02:08:09 UTC
FEDORA-2024-3d63cc7380 (lastpass-cli-1.3.7-1.fc39) has been pushed to the Fedora 39 stable repository.
If problem still persists, please make note of it in this bug report.


Note You need to log in before you can comment on or make changes to this bug.