Bug #69524 [Csd]: openssl-pkey-get-public() kill mysql(i) connection with ssl

From: Date: Thu, 26 Jan 2017 20:42:57 +0000
Subject: Bug #69524 [Csd]: openssl-pkey-get-public() kill mysql(i) connection with ssl
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-206971@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=69524&edit=1

 ID:                 69524
 Updated by:         bukka@php.net
 Reported by:        js at xim dot de
 Summary:            openssl-pkey-get-public() kill mysql(i) connection
                     with ssl
 Status:             Closed
 Type:               Bug
 Package:            OpenSSL related
 Operating System:   Linux Debian
 PHP Version:        5.6.8
 Assigned To:        bukka
 Block user comment: N
 Private report:     N

 New Comment:

5.6 is closed and only security bugs are accepted so no it won't be merged to 5.6

In addition the patch was quite big and required some refactoring so there is no plan to port it to
7.0 either atm. Only 7.1 has the fix though.

As a workaround for older versions, please call openssl_error_string() after openssl_pkey_get_public
in your app / script.


Previous Comments:
------------------------------------------------------------------------
[2017-01-26 03:57:16] jarkkohyvarinen at hotmail dot com

Is this patch going to be merged to 5.6 also?

------------------------------------------------------------------------
[2017-01-25 19:59:00] bukka@php.net

This has been resolved in PHP 7.1 and should not be longer a problem.

------------------------------------------------------------------------
[2017-01-25 14:30:26] jarkkohyvarinen at hotmail dot com

If I call openssl_error_string() after openssl_pkey_get_public() the issue does not occur and
queries through PDO object works fine. But if I put an invalid string to openssl_pkey_get_public the
issue still occurs even if I call openssl_error_string.

------------------------------------------------------------------------
[2017-01-25 07:39:33] requinix@php.net

https://bugs.php.net/bug.php?id=73978 looks like
the same issue.

@jarkkohyvarinen or anyone: What happens if you put
  openssl_error_string();
after your call to openssl_pkey_get_public or whatever other OpenSSL function?

------------------------------------------------------------------------
[2017-01-25 07:37:58] requinix@php.net

Related To: Bug #73978

------------------------------------------------------------------------


The remainder of the comments for this report are too long. To view
the rest of the comments, please view the bug report online at

    https://bugs.php.net/bug.php?id=69524


--
Edit this bug report at https://bugs.php.net/bug.php?id=69524&edit=1


Thread (9 messages)

« previous php.bugs (#206971) next »