Skip to content
Commit 99d97842 authored by Richard Levitte's avatar Richard Levitte Committed by Matt Caswell
Browse files

chacha20/poly1305: make sure to clear the buffer at correct position



The offset to the memory to clear was incorrect, causing a heap buffer
overflow.

CVE-2016-7054

Thanks to Robert Święcki for reporting this

Reviewed-by: default avatarRich Salz <rsalz@openssl.org>
(cherry picked from commit b8e4011fb26364e44230946b87ab38cc1c719aae)
parent 53c6cbf6
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment