[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread gail
** Changed in: curl (Ubuntu) Status: Invalid => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1258366 Title: curl -k breaks for some certificates after USN-2048-1 To manage noti

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread Pierre Carrier
** Description changed: The bug: - $ curl -sS -v -k https://jenkins.musta.ch//job/monorail_build_flow/4940/api/json - * About to connect() to jenkins.musta.ch port 443 (#0) - * Trying 10.147.129.217... connected - * successfully set certificate verify locations: - * CAfile: none - CApa

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread Launchpad Bug Tracker
This bug was fixed in the package curl - 7.22.0-3ubuntu4.5 --- curl (7.22.0-3ubuntu4.5) precise-security; urgency=low * SECURITY REGRESSION: can't disable cert checking in command line tool (LP: #1258366) - debian/patches/CVE-2013-4545.patch: properly disable host veri

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread Launchpad Bug Tracker
This bug was fixed in the package curl - 7.19.7-1ubuntu1.5 --- curl (7.19.7-1ubuntu1.5) lucid-security; urgency=low * SECURITY REGRESSION: can't disable cert checking in command line tool (LP: #1258366) - debian/patches/CVE-2013-4545.patch: properly disable host verifi

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread Launchpad Bug Tracker
This bug was fixed in the package curl - 7.27.0-1ubuntu1.6 --- curl (7.27.0-1ubuntu1.6) quantal-security; urgency=low * SECURITY REGRESSION: can't disable cert checking in command line tool (LP: #1258366) - debian/patches/CVE-2013-4545.patch: properly disable host veri

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread Bug Watch Updater
** Changed in: curl (Debian) Status: Unknown => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1258366 Title: curl -k breaks for some certificates after USN-2048-1 To manage noti

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread Marc Deslauriers
** Bug watch added: Debian Bug tracker #729965 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=729965 ** Also affects: curl (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=729965 Importance: Unknown Status: Unknown ** Also affects: curl (Ubuntu Lucid) Importance:

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-06 Thread Launchpad Bug Tracker
Status changed to 'Confirmed' because the bug affects multiple users. ** Changed in: curl (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1258366 Title: curl

[Bug 1258366] Re: curl -k breaks for some certificates after USN-2048-1

2013-12-05 Thread Pierre Carrier
Fix was tested and is being deployed to our production infrastructure (all precise amd64): $ curl -sSk https://jenkins.musta.ch/>/dev/null && dpkg -i curl_7.22.0-3ubuntu4.4-airbnb1_amd64.deb && curl -sSk https://jenkins.musta.ch/>/dev/null curl: (51) SSL peer certificate or SSH remote key was no