Bug#912532: stunnel4: "Internal error: double free attempt" with OpenSSL 1.1.1-1 and 1.1.1-2

2018-11-13 Thread Peter Pentchev
On Tue, Nov 13, 2018 at 11:25:05AM +0800, Frank Chung wrote: > Dear maintainer, > > Another quick update: on another machine running stunnel4 3:5.49-1 as > server, I tried upgrading openssl to 1.1.1-2 and then adding "options = > NO_TLSv1.3" to stunnel.conf, thus forcing the two ends (both

Bug#912532: stunnel4: "Internal error: double free attempt" with OpenSSL 1.1.1-1 and 1.1.1-2

2018-11-12 Thread Frank Chung
Dear maintainer, Another quick update: on another machine running stunnel4 3:5.49-1 as server, I tried upgrading openssl to 1.1.1-2 and then adding "options = NO_TLSv1.3" to stunnel.conf, thus forcing the two ends (both running stunnel4 3:5.49-1 and openssl 1.1.1-2) to negotiate TLS 1.2. This

Bug#912532: stunnel4: "Internal error: double free attempt" with OpenSSL 1.1.1-1 and 1.1.1-2

2018-11-08 Thread Frank Chung
Dear maintainer, Here's some additional info I've only noticed today that might be relevant: My stunnel4 client side has OpenSSL 1.1.1-2. When the stunnel4 server side has OpenSSL 1.1.1-1 or 1.1.1-2, the two sides negotiate TLS 1.3. This is when the internal error and subsequent kernel general

Bug#912532: stunnel4: "Internal error: double free attempt" with OpenSSL 1.1.1-1 and 1.1.1-2

2018-10-31 Thread Frank Chung
Package: stunnel4 Version: 3:5.49-1 Severity: important Dear Maintainer, My stunnel4 is set up as a SOCKS VPN with configuration that is similar to My default Debian release is "testing", but in order to try TLS 1.3 early, I installed openssl