https://bugs.openldap.org/show_bug.cgi?id=10498
--- Comment #5 from Simon Pichugin simon.pichugin@gmail.com --- Thanks Howard for the follow up, and thanks Ondřej and Quanah for the review and merge! And the follow-up fix is a reasonable compromise given X509V3_EXT_d2i and X509_NAME_dup take non-const on both OpenSSL 3 and 4 :)