Merge pull request #3033 from testssl/fix_unicode_3003_3.2

Fix DN conversion when reading certificate issuer (3.2)
This commit is contained in:
Dirk Wetter
2026-04-25 11:20:40 +02:00
committed by GitHub

View File

@@ -22416,7 +22416,7 @@ print_dn() {
fi
# Use the LDAP String Representation of Distinguished Names (RFC 2253),
# The current specification is in RFC 4514.
name="$(hex2binary "$cert" | $OPENSSL x509 -issuer -noout -inform DER -nameopt RFC2253 2>/dev/null)"
name="$(hex2binary "$cert" | $OPENSSL x509 -issuer -noout -inform DER -nameopt RFC2253,-esc_msb 2>/dev/null)"
name="${name#issuer=}"
tm_out "$(strip_leading_space "$name")"
return 0