mirror of https://github.com/openssl/openssl.git
				
				
				
			Additional CVE-2014-0224 protection.
Return a fatal error if an attempt is made to use a zero length master secret.
This commit is contained in:
		
							parent
							
								
									bc8923b1ec
								
							
						
					
					
						commit
						006cd7083f
					
				|  | @ -1459,7 +1459,7 @@ int ssl3_do_change_cipher_spec(SSL *s) | |||
| 
 | ||||
| 	if (s->s3->tmp.key_block == NULL) | ||||
| 		{ | ||||
| 		if (s->session == NULL)  | ||||
| 		if (s->session == NULL || s->session->master_key_length == 0) | ||||
| 			{ | ||||
| 			/* might happen if dtls1_read_bytes() calls this */ | ||||
| 			SSLerr(SSL_F_SSL3_DO_CHANGE_CIPHER_SPEC,SSL_R_CCS_RECEIVED_EARLY); | ||||
|  |  | |||
		Loading…
	
		Reference in New Issue