openssl upgrade makes sasl unusable

Bug #393817 reported by Szabolcs Parragh
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
openssl (Ubuntu)
Invalid
Undecided
Unassigned

Bug Description

In Ubuntu 6.06 (Dapper) a new upgrade has been released that upgrades the openssl package and the corresponding libssl0.9.8 library:

Preparing to replace libssl0.9.8 0.9.8a-7ubuntu0.7 (using .../libssl0.9.8_0.9.8a-7ubuntu0.9_amd64.deb) ...
Unpacking replacement libssl0.9.8 ...
Preparing to replace openssl 0.9.8a-7ubuntu0.7 (using .../openssl_0.9.8a-7ubuntu0.9_amd64.deb) ...
Unpacking replacement openssl ...

This upgrade makes the SASL authentication (for postfix) unusable, and so a whole postfix SMTP installation using that. That is a VERY serious problem. (Downgrading the two packages can be a temporary fix.)

The following "auth.log" segment shows the details of the problem:

Jun 30 12:49:28 mester saslauthd[22542]: PAM unable to dlopen(/lib/security/pam_pgsql.so)
Jun 30 12:49:28 mester saslauthd[22542]: PAM [dlerror: /usr/lib/libssl.so.0.9.8: symbol pqueue_size, version OPENSSL_0.9.8 not defined in file libcrypto.so.0.9.8 with link time reference]
Jun 30 12:49:28 mester saslauthd[22542]: PAM adding faulty module: /lib/security/pam_pgsql.so
Jun 30 12:49:28 mester saslauthd[22542]: DEBUG: auth_pam: pam_authenticate failed: Module is unknown
Jun 30 12:49:28 mester saslauthd[22542]: do_auth : auth failure: [user=************] [service=smtp] [realm=nir.hu] [mech=pam] [reason=PAM auth error]

Revision history for this message
Szabolcs Parragh (parszab) wrote :

Noone? Seriously: is this not a real enough issue? Or am I doing something wrong to see this happen?

Revision history for this message
dino99 (9d9) wrote :

outdated report & no more maintained distro; please send a new one if that issue still exist (using ubuntu-bug)

Changed in openssl (Ubuntu):
status: New → Invalid
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.