Bug#348838: gnutls: gnutls exits with error code 2 breaks postfix

2006-01-20 Thread Rudy Gevaert

Steve Langasek wrote:


First, this is not unrelated software.  Please don't abuse bug severities
in this way.


sorry about that


Second, how is anything here a gnutls bug, *at all*?  gnutls itself does not
exit, it's a library; if it's returning errors due to the bug described in
348835, that is a perfectly reasonable thing to do -- what the heck do you
expect a cryptography library to do in the abscence of entropy?


It is not a question about what to do in abscence of entropy it's about 
the exit code.  Because Debian compiles some other libraries with gnutls 
instead of openssl and gnutls returns a non standard exit code, in this 
case it can break other software.


In my case postfix fails to return the error message from gnutls because 
it expects a 0 or 1 exit code.


I assumed that this was the way to report this.  So that you can take 
action if you think it is necessary.


Kind regards
--
-- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- --
Rudy Gevaert e-mail: [EMAIL PROTECTED]
Directie ICT, Afdeling Infrastructuur
Groep Systemen  tel: +32 9 264 4734
Universiteit Gent   fax: +32 9 264 4994
Krijgslaan 281, gebouw S9, 9000 Gent, Belgie   www.UGent.be
-- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- -- --


--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#348838: gnutls: gnutls exits with error code 2 breaks postfix

2006-01-19 Thread rudy gevaert
Package: libgnutls11
Version: 1.0.16-13.1
Severity: critical
File: gnutls
Justification: breaks unrelated software

Please see
http://archives.neohapsis.com/archives/postfix/2006-01/1025.html

Short summary: gnutls exits with error code 2 and postfix doesn't handle
such exit codes (because openssl doesn't)

I also filled a bug on the postfix package 348835

-- System Information:
Debian Release: 3.1
Architecture: i386 (i686)
Kernel: Linux 2.4.31-ugent-pe
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages libgnutls11 depends on:
ii  libc6  2.3.2.ds1-22  GNU C Library: Shared libraries an
ii  libgcrypt111.2.0-11.1LGPL Crypto library - runtime libr
ii  libgpg-error0  1.0-1 library for common error values an
ii  liblzo11.08-1.2  A real-time data compression libra
ii  libopencdk80.5.5-10  Open Crypto Development Kit (OpenC
ii  libtasn1-2 0.2.10-3  Manage ASN.1 structures (runtime)
ii  zlib1g 1:1.2.2-4.sarge.2 compression library - runtime

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#348838: gnutls: gnutls exits with error code 2 breaks postfix

2006-01-19 Thread Steve Langasek
severity 348838 normal
tags 348838 moreinfo
thanks

On Thu, Jan 19, 2006 at 11:26:42AM +0100, rudy gevaert wrote:
 Package: libgnutls11
 Version: 1.0.16-13.1
 Severity: critical
 File: gnutls
 Justification: breaks unrelated software

 Please see
 http://archives.neohapsis.com/archives/postfix/2006-01/1025.html

 Short summary: gnutls exits with error code 2 and postfix doesn't handle
 such exit codes (because openssl doesn't)

 I also filled a bug on the postfix package 348835

First, this is not unrelated software.  Please don't abuse bug severities
in this way.

Second, how is anything here a gnutls bug, *at all*?  gnutls itself does not
exit, it's a library; if it's returning errors due to the bug described in
348835, that is a perfectly reasonable thing to do -- what the heck do you
expect a cryptography library to do in the abscence of entropy?

-- 
Steve Langasek   Give me a lever long enough and a Free OS
Debian Developer   to set it on, and I can move the world.
[EMAIL PROTECTED]   http://www.debian.org/


signature.asc
Description: Digital signature