[openssl] openssl-3.0 update

bernd.edlinger at hotmail.de bernd.edlinger at hotmail.de
Thu Nov 4 15:46:09 UTC 2021


The branch openssl-3.0 has been updated
       via  145d5d18b5790ee8ff16d11dd1aea5a105eee0ec (commit)
      from  42dd2d1b719cad4359157f244270386ada781420 (commit)


- Log -----------------------------------------------------------------
commit 145d5d18b5790ee8ff16d11dd1aea5a105eee0ec
Author: Bernd Edlinger <bernd.edlinger at hotmail.de>
Date:   Wed Nov 3 09:40:59 2021 +0100

    Fix a memory leak in tls_parse_stoc_key_share
    
    Reviewed-by: Paul Dale <pauli at openssl.org>
    Reviewed-by: Matt Caswell <matt at openssl.org>
    (Merged from https://github.com/openssl/openssl/pull/16956)
    
    (cherry picked from commit b3c34401c088dc247b8b54ea812e7cdde6caf361)

-----------------------------------------------------------------------

Summary of changes:
 ssl/statem/extensions_clnt.c | 1 +
 1 file changed, 1 insertion(+)

diff --git a/ssl/statem/extensions_clnt.c b/ssl/statem/extensions_clnt.c
index 78cc226064..b38c9ca684 100644
--- a/ssl/statem/extensions_clnt.c
+++ b/ssl/statem/extensions_clnt.c
@@ -1830,6 +1830,7 @@ int tls_parse_stoc_key_share(SSL *s, PACKET *pkt, unsigned int context, X509 *x,
         skey = EVP_PKEY_new();
         if (skey == NULL || EVP_PKEY_copy_parameters(skey, ckey) <= 0) {
             SSLfatal(s, SSL_AD_INTERNAL_ERROR, SSL_R_COPY_PARAMETERS_FAILED);
+            EVP_PKEY_free(skey);
             return 0;
         }
 


More information about the openssl-commits mailing list