[gnutls-devel] GnuTLS | GnuTLS cannot parse the extension Freshest CRL (#1156)

Read-only notification of GnuTLS library development activities gnutls-devel at lists.gnutls.org
Mon Jan 25 14:26:39 CET 2021



GOODPWDCETCSZ created an issue: https://gitlab.com/gnutls/gnutls/-/issues/1156



## Description of problem:
GnuTLS cannot parse the extension Freshest CRL

## Version of gnutls used:
3.5.5, 3.6.13

## Distributor of gnutls (e.g., Ubuntu, Fedora, RHEL)
Ubuntu x64

## How reproducible:

Steps to Reproduce:

 * certtool -i --infile seed-7s35-9s14-10s18-26s21.pem

## Actual results:
Unknown extension 2.5.29.46 (not critical):
	ASCII: 0K0I....0...U....kioxia.com......+..g at h.com..www.example.com..www.b.com/c.ext
	Hexdump: 304b3049a015a113301106035504030c0a6b696f7869612e636f6d8103077f80a22b81076740682e636f6d820f7777772e6578616d706c652e636f6d860f7777772e622e636f6d2f632e657874

## Expected results:

similar to the following:

        X509v3 Freshest CRL: 
[seed-7s35-9s14-10s18-26s21.zip](/uploads/4e0e35777ef5d4417a010a0051cc63bb/seed-7s35-9s14-10s18-26s21.zip)
                Relative Name:
                  CN = kioxia.com
                Reasons:
                  Key Compromise, CA Compromise, Affiliation Changed, Superseded, Cessation Of Operation, Certificate Hold, Privilege Withdrawn, AA Compromise
                CRL Issuer:
                  email:g at h.com
                  DNS:www.example.com
                  URI:www.b.com/c.ext

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/issues/1156
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20210125/3e0bac90/attachment.html>


More information about the Gnutls-devel mailing list