The pandemic of incomplete OpenSSL error handling

· Julian Andres Klode · July 3, 2026, 4:36 p.m.
Summary
The blog post discusses a reported bug in APT related to TLS failing on FIPS systems due to MD5 errors. The author argues against the suggested solution of using ERR_clear_error() to handle errors, emphasizing that not all errors should be discarded and that programs should fail correctly to highlight critical issues.
AUTHOR
Sponsored
Zulip logo Zulip
Organized team chat for people who take work seriously. Topic-based threading keeps conversations focused.
Try Zulip
Become a sponsor →
BLOG POST FEATURED ON

Add this plugin to your blog