Bug 510518 - mod_ssl cannot handle more than 85 CAs
Summary: mod_ssl cannot handle more than 85 CAs
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Enterprise Linux 4
Classification: Red Hat
Component: httpd
Version: 4.8
Hardware: All
OS: Linux
medium
medium
Target Milestone: rc
: ---
Assignee: Joe Orton
QA Contact: BaseOS QE
URL:
Whiteboard:
Depends On: 510515
Blocks:
TreeView+ depends on / blocked
 
Reported: 2009-07-09 15:27 UTC by Martin Poole
Modified: 2011-02-16 13:58 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Cause: Consequence: Fix: Result:
Clone Of: 510515
Environment:
Last Closed: 2011-02-16 13:58:06 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Apache Bugzilla 46952 0 None None None Never
Red Hat Product Errata RHBA-2011:0237 0 normal SHIPPED_LIVE httpd bug fix and enhancement update 2011-02-15 16:35:07 UTC

Description Martin Poole 2009-07-09 15:27:01 UTC
+++ This bug was initially created as a clone of Bug #510515 +++

There is an issue in the interaction of the mod_ssl/openssl
buffer handling which results in a hanging connection, when the
server is using a certificate from the CERN CA and there are more
than 85 trusted CA certificates.

The original issue with a suggested workaround:
  https://savannah.cern.ch/bugs/?48458

mod_ssl follow up with test case:
  https://issues.apache.org/bugzilla/show_bug.cgi?id=46952

related openssl bug (guest/guest):
  http://rt.openssl.org/Ticket/Display.html?id=1949

upstream mod_ssl patch
  http://svn.apache.org/viewvc?view=rev&revision=787722

Comment 4 Florian Nadge 2011-01-13 13:21:51 UTC
Please be so kind and add a few key words to the technical note of this
bugzilla entry using the following structure:

Cause:

Consequence:

Fix:

Result:

Thanks

Comment 5 Florian Nadge 2011-01-13 13:21:53 UTC
    Technical note added. If any revisions are required, please edit the "Technical Notes" field
    accordingly. All revisions will be proofread by the Engineering Content Services team.
    
    New Contents:
Cause:

Consequence:

Fix:

Result:

Comment 6 Florian Nadge 2011-01-13 13:23:47 UTC
Please be so kind and add a few key words to the technical note of this
bugzilla entry using the following structure:

Cause:

Consequence:

Fix:

Result:

For more details on CCFR texts, see:

https://bugzilla.redhat.com/page.cgi?id=fields.html#cf_release_notes

Comment 7 errata-xmlrpc 2011-02-16 13:58:06 UTC
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on therefore solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.

http://rhn.redhat.com/errata/RHBA-2011-0237.html


Note You need to log in before you can comment on or make changes to this bug.