[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: (ITS#4583) TLS concurrency issues



At 05:25 PM 6/13/2006, hyc@symas.com wrote:
>hyc@symas.com wrote:
>> hyc@OpenLDAP.org wrote:
>>   
>>> I haven't checked to see if it still occurs in 0.9.8, and it does not appear to
>>> have been a problem in 0.9.6.
>>>   
>>>     
>Actually, I've reproduced the problem with 0.9.6m as well.
>> The same problem exists in the current 0.9.8b OpenSSL as well. The patch 
>> in HEAD appears to resolve the problem.
>
>I've been working with one of the OpenSSL guys (Bodo Moeller) to track 
>down what's going on. We've identified 3 issues in 0.9.6/0.9.7, of which 
>one appears to be fixed in 0.9.8. It looks like we have a solution for 
>one of the two remaining issues already, so it's likely that the overall 
>problems in OpenSSL will be fixed in an upcoming release. When the fixes 
>in OpenSSL become available, I will revert the mutex I added in HEAD 
>libldap/tls.c.

We'd then should require the fixed version of OpenSSL
via a configure test...