[openssl] OpenSSL_1_1_1-stable update

tomas at openssl.org tomas at openssl.org
Wed Aug 25 15:24:39 UTC 2021


The branch OpenSSL_1_1_1-stable has been updated
       via  cf2b1d6f11aa7ec4aa909ff1ecb9bee6892285d9 (commit)
      from  801abbe01ebd380a9b66f08d59fcc5e8738134a5 (commit)


- Log -----------------------------------------------------------------
commit cf2b1d6f11aa7ec4aa909ff1ecb9bee6892285d9
Author: Bernd Edlinger <bernd.edlinger at hotmail.de>
Date:   Mon Aug 23 11:11:29 2021 +0200

    Avoid using undefined value in generate_stateless_cookie_callback
    
    Reviewed-by: Paul Yang <kaishen.yy at antfin.com>
    Reviewed-by: Paul Dale <pauli at openssl.org>
    Reviewed-by: Tomas Mraz <tomas at openssl.org>
    (Merged from https://github.com/openssl/openssl/pull/16381)

-----------------------------------------------------------------------

Summary of changes:
 apps/s_cb.c | 4 +++-
 1 file changed, 3 insertions(+), 1 deletion(-)

diff --git a/apps/s_cb.c b/apps/s_cb.c
index dee1b2e5b4..d066a423de 100644
--- a/apps/s_cb.c
+++ b/apps/s_cb.c
@@ -819,7 +819,9 @@ int generate_stateless_cookie_callback(SSL *ssl, unsigned char *cookie,
 {
     unsigned int temp;
     int res = generate_cookie_callback(ssl, cookie, &temp);
-    *cookie_len = temp;
+
+    if (res != 0)
+        *cookie_len = temp;
     return res;
 }
 


More information about the openssl-commits mailing list