← Back to team overview

touch-packages team mailing list archive

[Bug 1425914] Re: DTLS handshake broken - precise x64

 

Hi Pavel,

Thanks for reporting this issue. I have prepared an update for precise
which I will upload for processing by the SRU team.

In the meantime, could you please describe the simple steps required to
reproduce this issue, to help with testing?

Thanks!

** Bug watch added: OpenSSL RT #2778
   http://rt.openssl.org/Ticket/Display.html?id=2778

** Also affects: openssl via
   http://rt.openssl.org/Ticket/Display.html?id=2778
   Importance: Unknown
       Status: Unknown

** Also affects: openssl (Ubuntu Trusty)
   Importance: Undecided
       Status: New

** Also affects: openssl (Ubuntu Precise)
   Importance: Undecided
       Status: New

** Also affects: openssl (Ubuntu Vivid)
   Importance: Undecided
       Status: New

** Also affects: openssl (Ubuntu Utopic)
   Importance: Undecided
       Status: New

** Changed in: openssl (Ubuntu Trusty)
       Status: New => Fix Released

** Changed in: openssl (Ubuntu Utopic)
       Status: New => Fix Released

** Changed in: openssl (Ubuntu Vivid)
       Status: New => Fix Released

** Changed in: openssl (Ubuntu Precise)
       Status: New => Confirmed

** Changed in: openssl (Ubuntu Precise)
     Assignee: (unassigned) => Marc Deslauriers (mdeslaur)

-- 
You received this bug notification because you are a member of Ubuntu
Touch seeded packages, which is subscribed to openssl in Ubuntu.
https://bugs.launchpad.net/bugs/1425914

Title:
  DTLS handshake broken - precise x64

Status in OpenSSL cryptography and SSL/TLS toolkit:
  Unknown
Status in openssl package in Ubuntu:
  Fix Released
Status in openssl source package in Precise:
  Confirmed
Status in openssl source package in Trusty:
  Fix Released
Status in openssl source package in Utopic:
  Fix Released
Status in openssl source package in Vivid:
  Fix Released

Bug description:
  Hi,

  there is a problem in DTLS handshake in OpenSSL library in Ubuntu
  12.04 x86_64. The affected library version is  libssl
  1.0.1-4ubuntu5.21.  The problem causes, that it is impossible to
  establish DTLS session with Chrome or Firefox when trying to perform a
  SIP call via WebRTC.

  The problem is fixed in OpenSSL upstream by commit https://github.com/openssl/openssl/commit/a20152bdaf7a99b006ff5a0eef081502e0e11553
  committed April 4th 2012.

  32bit version of Ubuntu 12.04 is not affected by this issue, because
  it doesn't support HMAC ciphers, which cause the problem.

  I've checked other distributions (Centos6, Centos7, Ubuntu 14.04 and
  especially Debian 7 - which should be close to Ubuntu 12.04) and all
  has this patch applied and thus WebRTC calls work.

  Please merge this upstream fix to Ubuntu 12.04 x86_64 libssl package.

  Thanks

To manage notifications about this bug go to:
https://bugs.launchpad.net/openssl/+bug/1425914/+subscriptions


References