[Bug 49805] New: SSL Wildcard support is too lenient (and a bunch of SSL tests are broken under OpenSSL)
bugzilla-daemon at freedesktop.org
bugzilla-daemon at freedesktop.org
Fri May 11 18:04:50 CEST 2012
https://bugs.freedesktop.org/show_bug.cgi?id=49805
Bug #: 49805
Summary: SSL Wildcard support is too lenient (and a bunch of
SSL tests are broken under OpenSSL)
Classification: Unclassified
Product: Wocky
Version: git master
Platform: Other
URL: http://cgit.collabora.com/git/user/vivek/wocky.git/log
/?h=wildcarded-certificate-check
OS/Version: All
Status: ASSIGNED
Keywords: patch
Severity: normal
Priority: medium
Component: General
AssignedTo: vivek at collabora.co.uk
ReportedBy: vivek at collabora.co.uk
QAContact: telepathy-bugs at lists.freedesktop.org
The wildcard implementation accepted *oogle.com as well as *.whatever
style wildcards.
This is a) a time-bomb and b) only required by the HTTP SSL RFC.
Also, a bunch of the SSL tests were broken under OpenSSL,
they should all work again now.
--
Configure bugmail: https://bugs.freedesktop.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA Contact for the bug.
More information about the telepathy-bugs
mailing list