libssl broken by gcc4.2 import [Was: Re: PINE: SIG 6]

Harald Schmalzbauer h.schmalzbauer at omnisec.de
Sat May 19 23:06:00 UTC 2007


Am Samstag, 19. Mai 2007 21:51 schrieb Pieter de Goeje:
[...]
> I believe libssl is broken if not compiled with -DOPENSSL_NO_DH. Gcc will
> warn that the program will abort if the code reaches any call to
> DHparams_dup() when compiling libssl.
>
> ssl3_send_client_key_exchange calls this (macro) at s3_clnt.c:1856. There
> are other places too.

I can confirm that many applications don't work with SSL protocolls any more, 
like kmail and opera.
Your solution sounds reasonable.
How is -DOPENSSL_NO_DH best implemented?

Best regards,

-Harry

>
> - Pieter de Goeje
> _______________________________________________
> freebsd-current at freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-current
> To unsubscribe, send any mail to "freebsd-current-unsubscribe at freebsd.org"


More information about the freebsd-current mailing list