← Back to team overview

touch-packages team mailing list archive

[Bug 1425914] [NEW] DTLS handshake broken - precise x64

 

Public bug reported:

Hi,

there is a problem in DTLS handshake in OpenSSL library in Ubuntu 12.04
x86_64. The affected library version is  libssl 1.0.1-4ubuntu5.21.  The
problem causes, that it is impossible to establish DTLS session with
Chrome or Firefox when trying to perform a SIP call via WebRTC.

The problem is fixed in OpenSSL upstream by commit https://github.com/openssl/openssl/commit/a20152bdaf7a99b006ff5a0eef081502e0e11553
committed April 4th 2012.

32bit version of Ubuntu 12.04 is not affected by this issue, because it
doesn't support HMAC ciphers, which cause the problem.

I've checked other distributions (Centos6, Centos7, Ubuntu 14.04 and
especially Debian 7 - which should be close to Ubuntu 12.04) and all has
this patch applied and thus WebRTC calls work.

Please merge this upstream fix to Ubuntu 12.04 x86_64 libssl package.

Thanks

** Affects: openssl (Ubuntu)
     Importance: Undecided
         Status: New

** Description changed:

  Hi,
  
  there is a problem in DTLS handshake in OpenSSL library in Ubuntu 12.04
  x86_64. The affected library version is  libssl 1.0.1-4ubuntu5.21.  The
  problem causes, that it is impossible to establish DTLS session with
- both Chrome  and Firefox when trying to perform a SIP call via WebRTC.
+ Chrome or Firefox when trying to perform a SIP call via WebRTC.
  
  The problem is fixed in OpenSSL upstream by commit https://github.com/openssl/openssl/commit/a20152bdaf7a99b006ff5a0eef081502e0e11553
  committed (April 4th 2012).
  
  32bit version of Ubuntu 12.04 is not affected by this issue, because it
  doesn't support HMAC ciphers, which cause the problem.
  
  I've checked other distributions (Centos6, Centos7, Ubuntu 14.04 and
  especially Debian 7 - which should be close to Ubuntu 12.04) and all has
  this patch applied and thus WebRTC calls work.
  
  Please merge this upstream fix to Ubuntu 12.04 x86_64 libssl package.
  
  Thanks

** Description changed:

  Hi,
  
  there is a problem in DTLS handshake in OpenSSL library in Ubuntu 12.04
  x86_64. The affected library version is  libssl 1.0.1-4ubuntu5.21.  The
  problem causes, that it is impossible to establish DTLS session with
  Chrome or Firefox when trying to perform a SIP call via WebRTC.
  
  The problem is fixed in OpenSSL upstream by commit https://github.com/openssl/openssl/commit/a20152bdaf7a99b006ff5a0eef081502e0e11553
- committed (April 4th 2012).
+ committed April 4th 2012.
  
  32bit version of Ubuntu 12.04 is not affected by this issue, because it
  doesn't support HMAC ciphers, which cause the problem.
  
  I've checked other distributions (Centos6, Centos7, Ubuntu 14.04 and
  especially Debian 7 - which should be close to Ubuntu 12.04) and all has
  this patch applied and thus WebRTC calls work.
  
  Please merge this upstream fix to Ubuntu 12.04 x86_64 libssl package.
  
  Thanks

-- 
You received this bug notification because you are a member of Ubuntu
Touch seeded packages, which is subscribed to openssl in Ubuntu.
https://bugs.launchpad.net/bugs/1425914

Title:
  DTLS handshake broken - precise x64

Status in openssl package in Ubuntu:
  New

Bug description:
  Hi,

  there is a problem in DTLS handshake in OpenSSL library in Ubuntu
  12.04 x86_64. The affected library version is  libssl
  1.0.1-4ubuntu5.21.  The problem causes, that it is impossible to
  establish DTLS session with Chrome or Firefox when trying to perform a
  SIP call via WebRTC.

  The problem is fixed in OpenSSL upstream by commit https://github.com/openssl/openssl/commit/a20152bdaf7a99b006ff5a0eef081502e0e11553
  committed April 4th 2012.

  32bit version of Ubuntu 12.04 is not affected by this issue, because
  it doesn't support HMAC ciphers, which cause the problem.

  I've checked other distributions (Centos6, Centos7, Ubuntu 14.04 and
  especially Debian 7 - which should be close to Ubuntu 12.04) and all
  has this patch applied and thus WebRTC calls work.

  Please merge this upstream fix to Ubuntu 12.04 x86_64 libssl package.

  Thanks

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssl/+bug/1425914/+subscriptions


Follow ups

References