| commit | 93cab6b319e354517841ae202fb884f7e45bb48e | [log] [tgz] |
|---|---|---|
| author | Ben Laurie <ben@links.org> | Mon Jan 28 17:33:18 2013 +0000 |
| committer | Dr. Stephen Henson <steve@openssl.org> | Wed Feb 06 14:19:07 2013 +0000 |
| tree | c2a3e6bf4e09aab8adc8b9af4a16e055bb7463a0 | |
| parent | 2acc020b770920657a169bf6be4ff12b254255e6 [diff] |
Don't crash when processing a zero-length, TLS >= 1.1 record. The previous CBC patch was bugged in that there was a path through enc() in s3_pkt.c/d1_pkt.c which didn't set orig_len. orig_len would be left at the previous value which could suggest that the packet was a sufficient length when it wasn't. (cherry picked from commit 6cb19b7681f600b2f165e4adc57547b097b475fd)