mirror of
https://github.com/openssl/openssl.git
synced 2025-01-18 13:44:20 +08:00
Fix off-by-one errors in ssl_cipher_get_evp()
In the ssl_cipher_get_evp() function, fix off-by-one errors in index validation before accessing arrays. PR#3375
This commit is contained in:
parent
977f32e852
commit
abfb989fe0
@ -582,7 +582,7 @@ int ssl_cipher_get_evp(const SSL_SESSION *s, const EVP_CIPHER **enc,
|
||||
break;
|
||||
}
|
||||
|
||||
if ((i < 0) || (i > SSL_ENC_NUM_IDX))
|
||||
if ((i < 0) || (i >= SSL_ENC_NUM_IDX))
|
||||
*enc=NULL;
|
||||
else
|
||||
{
|
||||
@ -616,7 +616,7 @@ int ssl_cipher_get_evp(const SSL_SESSION *s, const EVP_CIPHER **enc,
|
||||
i= -1;
|
||||
break;
|
||||
}
|
||||
if ((i < 0) || (i > SSL_MD_NUM_IDX))
|
||||
if ((i < 0) || (i >= SSL_MD_NUM_IDX))
|
||||
{
|
||||
*md=NULL;
|
||||
if (mac_pkey_type!=NULL) *mac_pkey_type = NID_undef;
|
||||
|
Loading…
Reference in New Issue
Block a user