Bug#785411: iceweasel: negotiates RC4 despite RFC 7465

Sylvestre Ledru sylvestre at mozilla.com
Sun May 17 09:14:25 UTC 2015


forwarded 785411 https://bugzilla.mozilla.org/show_bug.cgi?id=999544
thanks

Hello,


On 16/05/2015 00:16, brian m. carlson wrote:
>
> However, when loading https://www.starbucks.com/card, opening the page
> info dialog displays that Iceweasel is using TLS_RSA_WITH_RC4_128_SHA.
> Because Iceweasel cannot have successfully negotiated RC4 without
> including it in the ClientHello message, it is violating RFC 7465.
>
Yes, this has not been done on purpose for 38. Too many websites were
broken
because of this. It has been decided to postpone it to 39.

Cheers,
Sylvestre


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-mozilla-maintainers/attachments/20150517/12370169/attachment.sig>


More information about the pkg-mozilla-maintainers mailing list