From: JiashengJiang Date: Wed, 26 Mar 2025 21:40:16 +0000 (-0400) Subject: apps/lib/apps.c: Add a check for OPENSSL_strdup() X-Git-Tag: openssl-3.2.5~104 X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=22e2b03a3d1c76b703a70154a4d92ba5731fe1da;p=thirdparty%2Fopenssl.git apps/lib/apps.c: Add a check for OPENSSL_strdup() Add a check for the return value of OPENSSL_strdup() to guarantee the success of allocation, similar to the other call sites. Fixes: c7d5ea2670 ("Prepare to detect index changes in OCSP responder.") Signed-off-by: JiashengJiang Reviewed-by: Paul Dale Reviewed-by: Tim Hudson Reviewed-by: Tomas Mraz (Merged from https://github.com/openssl/openssl/pull/27172) (cherry picked from commit 930c645e6b74a09398f6345b2d265c38ff035afe) --- diff --git a/apps/lib/apps.c b/apps/lib/apps.c index 8f5c7ce52fc..f3d0c63c0ba 100644 --- a/apps/lib/apps.c +++ b/apps/lib/apps.c @@ -1722,6 +1722,9 @@ CA_DB *load_index(const char *dbfile, DB_ATTR *db_attr) } retdb->dbfname = OPENSSL_strdup(dbfile); + if (retdb->dbfname == NULL) + goto err; + #ifndef OPENSSL_NO_POSIX_IO retdb->dbst = dbst; #endif