[Bug 49805] New: SSL Wildcard support is too lenient (and a bunch of SSL tests are broken under OpenSSL)

bugzilla-daemon at freedesktop.org bugzilla-daemon at freedesktop.org
Fri May 11 18:04:50 CEST 2012


https://bugs.freedesktop.org/show_bug.cgi?id=49805

             Bug #: 49805
           Summary: SSL Wildcard support is too lenient (and a bunch of
                    SSL tests are broken under OpenSSL)
    Classification: Unclassified
           Product: Wocky
           Version: git master
          Platform: Other
               URL: http://cgit.collabora.com/git/user/vivek/wocky.git/log
                    /?h=wildcarded-certificate-check
        OS/Version: All
            Status: ASSIGNED
          Keywords: patch
          Severity: normal
          Priority: medium
         Component: General
        AssignedTo: vivek at collabora.co.uk
        ReportedBy: vivek at collabora.co.uk
         QAContact: telepathy-bugs at lists.freedesktop.org


The wildcard implementation accepted *oogle.com as well as *.whatever
style wildcards. 

This is a) a time-bomb and b) only required by the HTTP SSL RFC.

Also, a bunch of the SSL tests were broken under OpenSSL,
they should all work again now.

-- 
Configure bugmail: https://bugs.freedesktop.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA Contact for the bug.



More information about the telepathy-bugs mailing list