AnsweredAssumed Answered

SSL Labs Scan Crashes Tomcat on Debian Wheezy

Question asked by Jason Weir on Oct 17, 2014
Latest reply on Oct 17, 2014 by Jason Weir

I've got a fully patched Debian 7.6 box running Tomcat 6\jre 6.0_32  - been working through disabling SSLv3 and things crash every time I scan it here https://www.ssllabs.com/ssltest/

 

I see the following error in /var/log/tomcat6/catalina.out

 

#

# A fatal error has been detected by the Java Runtime Environment:

#

#  SIGSEGV (0xb) at pc=0xb33f9939, pid=4002, tid=2699033408

#

# JRE version: 6.0_32-b32

# Java VM: OpenJDK Server VM (23.25-b01 mixed mode linux-x86 )

# Problematic frame:

# j  sun.security.pkcs11.wrapper.PKCS11.C_GenerateKeyPair(JLsun/security/pkcs11/wrapper/CK_MECHANISM;[Lsun/security/pkcs11/wrapper/CK_ATTRIBUTE;[Lsun/security/pkcs11/wrapper/CK_ATTRIBUTE;)[J+0

#

# Failed to write core dump. Core dumps have been disabled. To enable core dumping, try "ulimit -c unlimited" before starting Java again

#

# An error report file with more information is saved as:

# /tmp/hs_err_pid4002.log

#

# If you would like to submit a bug report, please include

# instructions how to reproduce the bug and visit:

#   http://icedtea.classpath.org/bugzilla

#

 

Lots more in /tmp/hs_err_pid4002.log if that will help.

 

Thanks,

Jason

Outcomes