If anybody needs a workaround, disable the CHACHA20 cipher suites which
use Poly1305:

$ openssl s_client -debug -showcerts -connect graph.facebook.com:443
-ciphersuites TLS_AES_256_GCM_SHA384:TLS_AES_128_GCM_SHA256 -cipher
'ALL:!CHACHA20'

Unfortunately, it appears this can't be done system wide from
/etc/ssl/openssl.conf - it needs to be done in a tool specific way for
each tool using openssl (such as curl: https://curl.se/docs/ssl-
ciphers.html).

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1951279

Title:
  OpenSSL 1.1.1f raise a segmentation faults on Arm64 builds

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssl/+bug/1951279/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to