It turns out that debian/patches/91_CVE-2008-4989.diff is missing an "add" 
chunk. Compare it with the gnutls advisory at 
http://article.gmane.org/gmane.comp.encryption.gpg.gnutls.devel/3215

I rebuilt it locally with that missing chunk added to the patch and then
it started to work.


** CVE added: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-4989

-- 
gnutls regression: failure in certificate chain validation
https://bugs.launchpad.net/bugs/305264
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to