Bug#642357: Solution implemented upstream, please upgrade gnutls!

2013-06-08 Thread Rui Miguel Silva Seabra
From http://rutschle.net/pipermail/sslh/2012-March/000189.html we learn
that...

The maintainer of mod_gnutls just gave me the solution. The
problem is a bug in mod_gnutls 0.5.10 that causes mod_gnutls to
answer in plain text if the connection comes from localhost.
The bug has already been fixed and will be gone in the next
version.

Now... in current Debian:

rms@bernie:/etc/apache2/alias$ dpkg -l | grep mod-gnutls
ii  libapache2-mod-gnutls0.5.10-1.1
i386 Apache module for SSL and TLS encryption with GnuTLS


Oopsie! Can the maintainer please upgrade!?


--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org



Bug#642357: Ok, new release not out yet and the log isn't very clear what the patch is

2013-06-08 Thread Rui Miguel Silva Seabra
Ok, nevermind. There is no new version out *yet*.

I digged through the logs https://mod.gnutls.org/log/mod_gnutls/ and
it's possible that this is the patch:

@33826c520 months   neuromancer mod_proxy
support 

https://mod.gnutls.org/changeset/33826c53d7991024eeed255f860e9818188e2bcb/mod_gnutls/
 

I'm totally not currently able to tell whether it can be applied
directly or not.

Sigh, uninstalling libapache2-mod-gnutls as I need to answer https from
localhost connections.

Rui


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org