Bug#929907: libgnutls30: Connections to older GnUTLS servers break

2019-06-08 Thread Andreas Metzler
On 2019-06-04 Andreas Metzler wrote: > On 2019-06-03 Dominik George wrote: [...] > >pwgen 16383 | gnutls-cli --no-ca-verification --port 5556 localhost > > From a size of 16383 bytes onwards, I get: > > |<1>| Received packet with illegal length: 16385 > > |<1>| Discarded message[1] due to

Bug#929907: libgnutls30: Connections to older GnUTLS servers break

2019-06-04 Thread Andreas Metzler
On 2019-06-03 Dominik George wrote: > Hi, >> Is this reproducile with gnutls-cli or is the respective server >> publically accessible? > It is reproducible. > 1. Create a buster chroot for the server, or something >similar. > 2. Install gnutls-bin 3.6.6-3 and ssl-cert. > 3. Start

Bug#929907: libgnutls30: Connections to older GnUTLS servers break

2019-06-03 Thread Dominik George
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi, > Is this reproducile with gnutls-cli or is the respective server > publically accessible? It is reproducible. 1. Create a buster chroot for the server, or something similar. 2. Install gnutls-bin 3.6.6-3 and ssl-cert. 3. Start something

Bug#929907: libgnutls30: Connections to older GnUTLS servers break

2019-06-03 Thread Andreas Metzler
Control: severity -1 serious On 2019-06-03 Dominik George wrote: > Package: libgnutls30 > Version: 3.6.7-3 > Severity: grave > Justification: renders package unusable > The update to 3.6.7-3 reproducibly breaks ldap-utils (or, maybe,the ldap > client library) when connecting to a server with

Bug#929907: libgnutls30: Connections to older GnUTLS servers break

2019-06-02 Thread Dominik George
Package: libgnutls30 Version: 3.6.7-3 Severity: grave Justification: renders package unusable The update to 3.6.7-3 reproducibly breaks ldap-utils (or, maybe,the ldap client library) when connecting to a server with the previous 3.6.6-2 version. I am afraid it breaks more than that.