Move certificate validity flags out of CERT.
Reviewed-by: Rich Salz <rsalz@openssl.org>
diff --git a/ssl/s3_clnt.c b/ssl/s3_clnt.c
index 9b83a05..3b49fa4 100644
--- a/ssl/s3_clnt.c
+++ b/ssl/s3_clnt.c
@@ -2164,7 +2164,7 @@
/* Clear certificate digests and validity flags */
for (i = 0; i < SSL_PKEY_NUM; i++) {
s->s3->tmp.md[i] = NULL;
- s->cert->pkeys[i].valid_flags = 0;
+ s->s3->tmp.valid_flags[i] = 0;
}
if ((llen & 1) || !tls1_save_sigalgs(s, p, llen)) {
ssl3_send_alert(s, SSL3_AL_FATAL, SSL_AD_DECODE_ERROR);