[Touch-packages] [Bug 2028188] Re: Wildcard certificate broken after 7.81.0-1ubuntu1.11 / CVE-2023-28321

2023-07-19 Thread Colin Petrie
*** This bug is a duplicate of bug 2028170 *** https://bugs.launchpad.net/bugs/2028170 ** This bug has been marked a duplicate of bug 2028170 curl 7.81.0-1ubuntu1.11 fails verifying proper ssl cert w/ subj-alt-name -- You received this bug notification because you are a member of Ubuntu T

[Touch-packages] [Bug 2028188] Re: Wildcard certificate broken after 7.81.0-1ubuntu1.11 / CVE-2023-28321

2023-07-19 Thread Launchpad Bug Tracker
Status changed to 'Confirmed' because the bug affects multiple users. ** Changed in: curl (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to curl in Ubuntu. https://bugs.launchpad.net/bug

[Touch-packages] [Bug 2028188] Re: Wildcard certificate broken after 7.81.0-1ubuntu1.11 / CVE-2023-28321

2023-07-19 Thread Bjorn Neergaard
Another endpoint which is failing to validate with Jammy's curl: $ curl https://download.docker.com curl: (60) SSL: no alternative certificate subject name matches target host name 'download.docker.com' More details here: https://curl.se/docs/sslcerts.html curl failed to verify the legitimacy of

[Touch-packages] [Bug 2028188] Re: Wildcard certificate broken after 7.81.0-1ubuntu1.11 / CVE-2023-28321

2023-07-19 Thread Colin Petrie
I note some public certificates are failing too, usually services that provide a customer service on a unique subdomain. Examples: cdpjammy03# curl https://deadtous.slack.com/ curl: (60) SSL: no alternative certificate subject name matches target host name 'deadtous.slack.com' More details here: