Skip to content

Conversation

@ancapdev
Copy link

@ancapdev ancapdev commented Oct 8, 2025

OpenSSL v1.5.0 uses illegal operations in a finalizer, leading to errors or crashes from corrupting the task runtime state.

See

The OpenSSL issue has been open for over 3 months without engagement from maintainers.

@giordano
Copy link
Member

There's upstream work ongoing in JuliaWeb/OpenSSL.jl#46, yanking the latest release of a somewhat widely used package 5 months after release is going to be hugely disruptive. Yanking may be useful right after a version is released, but like this it'll only create pain to users.

@giordano giordano closed this Oct 12, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants