Closed
Bug 291542
Opened 20 years ago
Closed 20 years ago
regression crash in certutil when request has no attributes
Categories
(NSS :: Tools, defect, P1)
Tracking
(Not tracked)
RESOLVED
FIXED
3.10
People
(Reporter: nelson, Assigned: nelson)
References
Details
Attachments
(2 files)
344 bytes,
application/octet-stream
|
Details | |
1.22 KB,
patch
|
julien.pierre
:
review+
|
Details | Diff | Splinter Review |
A cert request that is encoded with an empty set of attributes will cause
certutil -C to crash. I will attach a cert request that causes this.
This is a regression in 3.10. Prior to 3.10, certutil completely ignored
the cert attributes in a request. Now it honors them, but doesn't like
an empty set.
The command
certutil -C -c local_ca -v 240 -i certreq -o agent.cert -d localca
where local_ca is the nickname of a cacert for which we have the priv key
will crash.
Patch forthcoming.
Julien and I think that we should respin 3.10 RTM for this.
(Please send any objections to that plan to the mozilla-nssdev-ext list!)
We may also want to take fixes for a couple other bugs at this time.
Those were bugs that were not bad enough to warrant a respin on their
own, but are bad enough to warrant including the fix if we're going to
respin for other reasons.
Assignee | ||
Comment 2•20 years ago
|
||
certreq that triggers the crash
Assignee | ||
Comment 3•20 years ago
|
||
Julien, please review
Assignee | ||
Updated•20 years ago
|
Attachment #181590 -
Flags: review?(julien.pierre.bugs)
Updated•20 years ago
|
Attachment #181590 -
Flags: review?(julien.pierre.bugs) → review+
Comment 4•20 years ago
|
||
*** Bug 291545 has been marked as a duplicate of this bug. ***
Comment 5•20 years ago
|
||
Seems to do the trick. I ran the test suite with this patch and all is green.
As an aside https://bugzilla.mozilla.org/show_bug.cgi?id=291545 (marked as a dup
of this) also noted that this version of certutil creates CSRs with an extension
request sequence even when there are none specified. I'll look into this and
open another bug if it seems to be a real bug.
Assignee | ||
Comment 6•20 years ago
|
||
Checking in certutil.c; new revision: 1.94; previous revision: 1.93
Status: NEW → RESOLVED
Closed: 20 years ago
Resolution: --- → FIXED
You need to log in
before you can comment on or make changes to this bug.
Description
•