]> git.ipfire.org Git - thirdparty/openssl.git/commit
Fix error handling in x509v3_cache_extensions and related functions
authorBernd Edlinger <bernd.edlinger@hotmail.de>
Sat, 4 Jan 2020 14:54:53 +0000 (15:54 +0100)
committerBernd Edlinger <bernd.edlinger@hotmail.de>
Sat, 21 Mar 2020 17:46:36 +0000 (18:46 +0100)
commit7e06a6758bef584deabc9cb4b0d21b3e664b25c9
tree8c0c5b3fbc427eb8f8b82570d3f88a1fa7032b3b
parentd3b2f8760a56da3e70c30e5614181f3798e4ad54
Fix error handling in x509v3_cache_extensions and related functions

Basically we use EXFLAG_INVALID for all kinds of out of memory and
all kinds of parse errors in x509v3_cache_extensions.

[extended tests]

Reviewed-by: Tomas Mraz <tmraz@fedoraproject.org>
(Merged from https://github.com/openssl/openssl/pull/10755)
apps/rehash.c
crypto/ess/ess_lib.c
crypto/pkcs12/p12_crt.c
crypto/ts/ts_rsp_verify.c
crypto/x509/v3_purp.c
crypto/x509/x509_cmp.c
crypto/x509/x509_trs.c
crypto/x509/x509_vfy.c
crypto/x509/x_all.c
crypto/x509/x_crl.c
doc/man3/X509_get_extension_flags.pod