Loading CHANGES +3 −0 Changes for CHANGES: 3 added lines, 0 removed lines. Original line number Diff line number Diff line Loading @@ -893,6 +893,9 @@ Changes between 0.9.8o and 0.9.8p [xx XXX xxxx] *) Fix for double free bug in ssl/s3_clnt.c CVE-2010-2939 [Steve Henson] *) Don't reencode certificate when calculating signature: cache and use the original encoding instead. This makes signature verification of some broken encodings work correctly. Loading ssl/s3_clnt.c +1 −0 Changes for ssl/s3_clnt.c: 1 added line, 0 removed lines. Original line number Diff line number Diff line Loading @@ -1509,6 +1509,7 @@ int ssl3_get_key_exchange(SSL *s) s->session->sess_cert->peer_ecdh_tmp=ecdh; ecdh=NULL; BN_CTX_free(bn_ctx); bn_ctx = NULL; EC_POINT_free(srvr_ecpoint); srvr_ecpoint = NULL; } Loading Loading
CHANGES +3 −0 Changes for CHANGES: 3 added lines, 0 removed lines. Original line number Diff line number Diff line Loading @@ -893,6 +893,9 @@ Changes between 0.9.8o and 0.9.8p [xx XXX xxxx] *) Fix for double free bug in ssl/s3_clnt.c CVE-2010-2939 [Steve Henson] *) Don't reencode certificate when calculating signature: cache and use the original encoding instead. This makes signature verification of some broken encodings work correctly. Loading
ssl/s3_clnt.c +1 −0 Changes for ssl/s3_clnt.c: 1 added line, 0 removed lines. Original line number Diff line number Diff line Loading @@ -1509,6 +1509,7 @@ int ssl3_get_key_exchange(SSL *s) s->session->sess_cert->peer_ecdh_tmp=ecdh; ecdh=NULL; BN_CTX_free(bn_ctx); bn_ctx = NULL; EC_POINT_free(srvr_ecpoint); srvr_ecpoint = NULL; } Loading