Bug #69882 [Csd]: OpenSSL error “key values mismatch” after openssl_pkcs12_read with extra cer

From: Date: Sun, 19 Jun 2016 16:35:42 +0000
Subject: Bug #69882 [Csd]: OpenSSL error “key values mismatch” after openssl_pkcs12_read with extra cer
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-201733@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=69882&edit=1

 ID:                 69882
 Updated by:         bukka@php.net
 Reported by:        falundir at gmail dot com
 Summary:            OpenSSL error “key values mismatch” after
                     openssl_pkcs12_read with extra cer
 Status:             Closed
 Type:               Bug
 Package:            OpenSSL related
 Operating System:   Debian 8.0
 PHP Version:        5.6.7
-Assigned To:        
+Assigned To:        bukka
 Block user comment: N
 Private report:     N

 New Comment:

The fix for this bug was very incomplete as it addresses issue just for PKCS#12 but it would likely
failed if there was any other error in the queue. It also just dropped the error (cleared the queue)
without saving it so it wasn't possibly get that error from openssl_error_string.

The more complete fix is more complex and requires storing errors to the queue which won't
affect openssl_error_string. Due to the size it will land in 7.1. The test was also removed because
it was relying on the empty queue which is not needed.

I assigned it to myself and kept it closed just to be notified if there are any further questions.


Previous Comments:
------------------------------------------------------------------------
[2015-07-07 23:37:08] ab@php.net

Automatic comment on behalf of datibbaw
Revision: http://git.php.net/?p=php-src.git;a=commit;h=2ff3dafccfa4fd0bc031d5165f84593d092148d2
Log: Fixed #69882: OpenSSL error "key values mismatch" after openssl_pkcs12_read
with extra certs

------------------------------------------------------------------------
[2015-06-25 22:04:23] datibbaw@php.net

Automatic comment on behalf of datibbaw
Revision: http://git.php.net/?p=php-src.git;a=commit;h=2ff3dafccfa4fd0bc031d5165f84593d092148d2
Log: Fixed #69882: OpenSSL error "key values mismatch" after openssl_pkcs12_read
with extra certs

------------------------------------------------------------------------
[2015-06-24 10:00:34] falundir at gmail dot com

The workaround is to call openssl_error_string() after 
openssl_pkcs12_read().

------------------------------------------------------------------------
[2015-06-23 09:42:02] falundir at gmail dot com

Reported as bug in OpenSSL:
https://rt.openssl.org/Ticket/Display.html?id=3923

------------------------------------------------------------------------
[2015-06-23 08:28:14] falundir at gmail dot com

Changed summary to properly reflect source of problem.

------------------------------------------------------------------------


The remainder of the comments for this report are too long. To view
the rest of the comments, please view the bug report online at

    https://bugs.php.net/bug.php?id=69882


--
Edit this bug report at https://bugs.php.net/bug.php?id=69882&edit=1


Thread (11 messages)

« previous php.bugs (#201733) next »