[openssl-dev] [openssl.org #3592] bug report. Crash. Critical? Security bug?

Вячеслав Бадалян via RT rt at openssl.org
Thu Dec 18 03:54:58 UTC 2014


Thanks! Great!
6000 calls. No crashes or leaks.... only messages like this in asterisk
[2014-12-18 04:59:20] ERROR[31074][C-000013d4] res_rtp_asterisk.c: DTLS
failure occurred on RTP instance '0x298c1d68' due to reason 'digest check
failed', terminating
[2014-12-18 04:59:28] ERROR[31081][C-000013d7] res_rtp_asterisk.c: DTLS
failure occurred on RTP instance '0x29d16508' due to reason 'digest check
failed', terminating
[2014-12-18 05:04:07] ERROR[31881][C-0000142d] res_rtp_asterisk.c: DTLS
failure occurred on RTP instance '0x29fe0ac8' due to reason 'digest check
failed', terminating

But 99% call go normal. We will test on production server and high load.
Thanks!

2014-12-16 14:46 GMT+03:00 Matt Caswell via RT <rt at openssl.org>:
>
> On Mon Dec 15 13:39:43 2014, v.badalyan at open-bs.ru wrote:
> > Got assert
> > d1_both.c(296): OpenSSL internal error, assertion failed: s->init_num ==
> > (int)s->d1->w_msg_hdr.msg_len + DTLS1_HM_HEADER_LENGTH
> >
>
> To confirm: you did retain your change to check the return value from
> dtls1_output_cert_chain?
>
> The official patch for that issue is here:
>
> https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=9beb948c0dae6056caddf46a9aa099e18905d184
>
> Matt
>
>

-- 
С уважением,
Бадалян Вячеслав Борисович

ООО "Открытые бизнес-решения"
Технический директор
+7 (495) 666-0-111
http://www.open-bs.ru



More information about the openssl-dev mailing list