Hi,

   I found a critical problem about openssl1.0.0c.

   reproduced steps:



   OS: Freebsd4.5

   Openssl: 1.0.0c

   Compile option: ./config shared



   openssl s_client -connect 10.3.44.6:443

   CONNECTED(00000005)

   depth=0 C = US, ST = IOWA, L = DESMOINES, O = Snake Oil Ltd, OU = Snake Oil 
Ltd

   verify error:num=18:self signed certificate

   verify return:1

   depth=0 C = US, ST = IOWA, L = DESMOINES, O = Snake Oil Ltd, OU = Snake Oil 
Ltd

   verify return:1

   Bus error (core dumped)

   

   (gdb) bt

   #0  0x1817195f in RC4_set_key () from /ca/lib/libcrypto.so.1.0.0

   #1  0x8112a00 in ?? ()

   Cannot access memory at address 0xfffffff0.

   

   It's easy to reproduce it.



Thanks.  

Best wishes

Chen Yongliang
Hi,
   I found a critical problem about openssl1.0.0c.
   reproduced steps:
 
   OS: Freebsd4.5
   Openssl: 1.0.0c
   Compile option: ./config shared
 
   openssl s_client -connect 10.3.44.6:443
   CONNECTED(00000005)
   depth=0 C = US, ST = IOWA, L = DESMOINES, O = Snake Oil Ltd, OU = Snake Oil Ltd
   verify error:num=18:self signed certificate
   verify return:1
   depth=0 C = US, ST = IOWA, L = DESMOINES, O = Snake Oil Ltd, OU = Snake Oil Ltd
   verify return:1
   Bus error (core dumped)
  
   (gdb) bt
   #0  0x1817195f in RC4_set_key () from /ca/lib/libcrypto.so.1.0.0
   #1  0x8112a00 in ?? ()
   Cannot access memory at address 0xfffffff0.
  
   It's easy to reproduce it.
 
Thanks. 
Best wishes
Chen Yongliang

Reply via email to