From: JiashengJiang Date: Wed, 26 Mar 2025 21:40:16 +0000 (-0400) Subject: apps/lib/apps.c: Add a check for OPENSSL_strdup() X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=930c645e6b74a09398f6345b2d265c38ff035afe;p=thirdparty%2Fopenssl.git apps/lib/apps.c: Add a check for OPENSSL_strdup() Add a check for the return value of OPENSSL_strdup() to guarantee the success of allocation, similar to the other call sites. Fixes: c7d5ea2670 ("Prepare to detect index changes in OCSP responder.") Signed-off-by: JiashengJiang Reviewed-by: Paul Dale Reviewed-by: Tim Hudson Reviewed-by: Tomas Mraz (Merged from https://github.com/openssl/openssl/pull/27172) --- diff --git a/apps/lib/apps.c b/apps/lib/apps.c index 9b2986c78b8..d4e72307de5 100644 --- a/apps/lib/apps.c +++ b/apps/lib/apps.c @@ -1758,6 +1758,9 @@ CA_DB *load_index(const char *dbfile, DB_ATTR *db_attr) } retdb->dbfname = OPENSSL_strdup(dbfile); + if (retdb->dbfname == NULL) + goto err; + #ifndef OPENSSL_NO_POSIX_IO retdb->dbst = dbst; #endif