Bug#770508: iceweasel: cannot override certificate validation problems with mozilla::pkix, connection hangs

Mike Hommey mh at glandium.org
Fri Nov 21 22:51:53 UTC 2014


On Fri, Nov 21, 2014 at 03:49:06PM -0500, Peter Amstutz wrote:
> Package: iceweasel
> Version: 31.2.0esr-3
> Severity: important
> Tags: upstream
> 
> Dear Maintainer,
> 
> Firefox 31 introduced a new certificate validation library "mozilla::pkix".
> This introduced regressions, where previously the user could override the
> validation error and connect anyway ("this connection is untrusted!"), in
> jessie iceweasel attempting to connect to the same sites results in a silent
> hang (it appears to be loading forever with no feedback as to what is wrong).
> 
> (Subjectively, when this happens it also appears to affect the overall
> stability of the browser, as it seems like other sites become slow to load or
> fail to load entirely until the browser is restarted).
> 
> Based on the following discussion, it appears that this behavior is addressed
> Firefox 33, and in the Enterprise Support Release (ESR) of Firefox 31:
> 
> https://bugzilla.mozilla.org/show_bug.cgi?id=1042889

That bug is fixed in 33 and 31.2, both of which are in Debian already.
Are you saying the versions in Debian are still affected?

Mike



More information about the pkg-mozilla-maintainers mailing list