Bug#1033805: opendmarc: Segmentation fault with 3072-bit key signatures in ARC-Seal headers

2023-04-02 Thread Scott Kitterman
I'm not running it myself. I thought people on postfix-users reported the problem with our package. If you're confident it's already addressed, please close the bug and sorry for the noise. Scott K On April 2, 2023 7:43:15 AM UTC, "David Bürgin" wrote: >Also note that we have been shipping

Bug#1033805: opendmarc: Segmentation fault with 3072-bit key signatures in ARC-Seal headers

2023-04-02 Thread David Bürgin
Also note that we have been shipping the linked patch in Debian’s opendmarc for a while now. It is included in stable, testing, unstable as ‘arcseal-segfaults.patch’.

Bug#1033805: opendmarc: Segmentation fault with 3072-bit key signatures in ARC-Seal headers

2023-04-02 Thread David Bürgin
See the report at #1007926, and the proposed stable update in #1033591. Debian testing/1.4.2-2 is not affected as far as I have seen – do you use 1.4.2-2 and it crashes for you?

Bug#1033805: opendmarc: Segmentation fault with 3072-bit key signatures in ARC-Seal headers

2023-04-01 Thread Scott Kitterman
Package: opendmarc Version: 1.4.0~beta1+dfsg-6+deb11u1 Severity: serious Tags: upstream patch Justification: Maintainer designation Currently opendmarc in Stable, Testing, and Unstable will crash if they key used in an ARC header field is 3072 bit RSA or longer. This really needs to be fixed