]> git.ipfire.org Git - thirdparty/openssl.git/commit
tls_process_server_hello: Disallow repeated HRR
authorTomas Mraz <tomas@openssl.org>
Tue, 22 Mar 2022 11:34:07 +0000 (12:34 +0100)
committerTomas Mraz <tomas@openssl.org>
Wed, 30 Mar 2022 09:35:54 +0000 (11:35 +0200)
commitfb67978a9eb076b23ddf17f6b95f697ed526c584
treea45e465961e059bb950e9c071e788318fa0f5d2d
parent739d2bdfba536ff59e8444eb4295b53288ac5caf
tls_process_server_hello: Disallow repeated HRR

Repeated HRR must be rejected.

Fixes #17934

Reviewed-by: Todd Short <todd.short@me.com>
Reviewed-by: Matt Caswell <matt@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/17936)

(cherry picked from commit d204a50b898435fbf937316d5693008cebf62eef)
ssl/statem/statem_clnt.c