<div dir="auto">Thanks. I'll try that. <div dir="auto"><br></div><div dir="auto">Regards, </div><div dir="auto">Sanjaya </div></div><div class="gmail_extra"><br><div class="gmail_quote">On 18 Apr 2017 15:27, "Matt Caswell" <<a href="mailto:matt@openssl.org">matt@openssl.org</a>> wrote:<br type="attribution"><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><br>
<br>
On 16/04/17 20:17, Sanjaya Joshi wrote:<br>
> Hello,<br>
><br>
> I use openldap_2.3.39 to initiate secure LDAP connection (starttls) to<br>
> external LDAP server. The used openssl version is 1.0.2k.<br>
><br>
> While establishing the secure connection from client, i observe the<br>
> following segmentation fault occasionally (Not always reproducible).<br>
><br>
> Any pointers please ?<br>
><br>
<br>
Are you able to compile openssl with debug symbols? That's not a lot to<br>
go on.<br>
<br>
Matt<br>
<br>
> "<br>
> [Thread debugging using libthread_db enabled]<br>
> Using host libthread_db library "/lib64/libthread_db.so.1".<br>
> Core was generated by `/opt/nsn/pac_bor_qx_e1/bin/<wbr>border'.<br>
> Program terminated with signal SIGSEGV, Segmentation fault.<br>
> #0  0x00007fd6b8271bd9 in sk_value () from /usr/lib64/libcrypto.so.1.0.0<br>
> (gdb) bt<br>
> #0  0x00007fd6b8271bd9 in sk_value () from /usr/lib64/libcrypto.so.1.0.0<br>
> #1  0x00007fd6b3495516 in ssl23_connect () from /usr/lib64/libssl.so.1.0.0<br>
> #2  0x00007fd6b7d2d6cf in ldap_int_tls_connect (ld=0x7fd6880486d0,<br>
> conn=0x7fd68802d9e0) at tls.c:805<br>
> #3  0x00007fd6b7d2ece0 in ldap_int_tls_start (ld=0x7fd6880486d0,<br>
> conn=0x7fd68802d9e0, srv=0x0) at tls.c:1511<br>
> #4  0x00007fd6b7d2f6e9 in ldap_install_tls (ld=0x7fd6880486d0) at tls.c:1935<br>
> #5  0x00007fd6bb46c6c1 in open_connection_as<br>
> (ldap_host_address=<wbr>0x7fd68805de90 "10.55.433.1", port=389, client_access=0,<br>
>     user_dn=0x7fd6880543c8<br>
> "uid=user1,ou=people,ou=<wbr>accounts,dc=sasa,dc=test,dc=<wbr>net",<br>
>     user_pwd=0x7fd6962d3c70 "saaadh45sks", ldap_handle=0x7fd6962d2838,<br>
> network_timeout=5000, request_id=0x7fd6962d144c,<br>
>     error_string=0x7fd6962d1440, isSecure=2, cacertFile=0x7fd688048bf8<br>
> "/etc/certs/cacert.pem",<br>
>     ciphers=0x7fd68805e138<br>
> "DHE-RSA-AES256-SHA:AES256-<wbr>SHA:DHE-RSA-AES128-SHA:AES128-<wbr>SHA",<br>
> reqCert=0x7fd6962d2558) at ../src/api.c:1048<br>
> #6  0x00007fd6bb46ca97 in open_secure_connection_<wbr>starttls_request<br>
> (ldap_host_address=<wbr>0x7fd68805de90 "10.55.433.1", port=389,<br>
>     client_access=0, user_dn=0x7fd6880543c8<br>
> "uid=user1,ou=people,ou=<wbr>accounts,dc=sasa,dc=test,dc=<wbr>net",<br>
>     user_pwd=0x7fd6962d3c70 "saaadh45sks", ldap_handle=0x7fd6962d2838,<br>
> network_timeout=5000, request_id=0x7fd6962d144c,<br>
>     error_string=0x7fd6962d1440, cacertFile=0x7fd688048bf8<br>
> "/etc/certs/cacert.pem",<br>
>     ciphers=0x7fd68805e138<br>
> "DHE-RSA-AES256-SHA:AES256-<wbr>SHA:DHE-RSA-AES128-SHA:AES128-<wbr>SHA",<br>
> reqCert=0x7fd6962d2558) at ../src/api.c:1258<br>
> #7  0x00007fd6b9c899c8 in tryConnectExtLdap (host=0x7fd68805de90<br>
> "10.55.433.1", port=389,<br>
>     binddn=0x7fd6962d3380<br>
> "uid=user1,ou=people,ou=<wbr>accounts,dc=sasa,dc=test,dc=<wbr>net",<br>
> pwd=0x7fd6962d3c70 "saaadh45sks",<br>
>     _extHandle=@0x7fd6962d2838: 0x7fd6880486d0, peopledn=0x7fd6880495b0<br>
> "ou=people,ou=accounts,dc=<wbr>sasa,dc=test,dc=net", secureMode=0,<br>
>     cacertFile=..., ciphers=..., reqCert=5, timeout_ms=5000)<br>
>     at ../../src/acct.cpp:1694<br>
> #8  0x00007fd6b9c88df1 in validate_account (accountName=0x7fd6962d3380<br>
> "uid=user1,ou=people,ou=<wbr>accounts,dc=sasa,dc=test,dc=<wbr>net",<br>
>     accountPassword=0x7fd6962d3c70 "saaadh45sks") at ../../src/acct.cpp:1623<br>
> #9  0x0000000000479d3a in set_acc<br>
> (userName=userName@entry=<wbr>0x7fd6962d3870 "user1",<br>
>     password=password@entry=<wbr>0x7fd6962d3c70 "saaadh45sks") at<br>
> ../src/borfunc_cou.c:4066<br>
> #10 0x000000000045217b in _71571_2 (_T=0x42907000) at<br>
> ../src/bor7qxqx.sdl:600<br>
> #11 0x000000000044fd45 in _s71571_ACTIVE (_T=<optimized out>) at<br>
> _Sborha7ACTIVE.c:33<br>
> #12 0x00007fd6b6ec8a65 in call_transition (msg=0x7fd6bc0d8948, process=96)<br>
>     at /home/core/threadmain.c:656<br>
> #13 call_transition_with_fatal_<wbr>sig_catching (thread=<optimized out>,<br>
> thread@entry=0x25d7d90, process=process@entry=96,<br>
>     msg=msg@entry=0x7fd6bc0d8948) at /home/core/threadmain.c:669<br>
> #14 0x00007fd6b6ec9499 in execute_user_code (msg=0x7fd6bc0d8948,<br>
> process=96, thread=0x25d7d90)<br>
>     at /home/core/threadmain.c:687<br>
> #15 exec_main_loop (thread=0x25d7d90) at /home/core/threadmain.c:882<br>
> #16 thread_context_main (arg=<optimized out>) at /home/core/threadmain.c:592<br>
> #17 0x00007fd6b64f2f50 in ?? () from /lib64/libc.so.6<br>
> #18 0x0000000000000000 in ?? ()<br>
> (gdb)<br>
> "<br>
><br>
> Regards,<br>
> Sanjaya<br>
><br>
><br>
--<br>
openssl-users mailing list<br>
To unsubscribe: <a href="https://mta.openssl.org/mailman/listinfo/openssl-users" rel="noreferrer" target="_blank">https://mta.openssl.org/<wbr>mailman/listinfo/openssl-users</a><br>
</blockquote></div></div>