From: Tomas Mraz Date: Tue, 21 Jan 2025 13:42:28 +0000 (+0100) Subject: eddsa_signverify_init(): Avoid memory leak on error X-Git-Tag: openssl-3.5.0-alpha1~695 X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=abbc4073145cb6b2ea221f3e34809e9aefece9ab;p=thirdparty%2Fopenssl.git eddsa_signverify_init(): Avoid memory leak on error Add missing WPACKET_cleanup() call. Fixes Coverity 1638693 Reviewed-by: Neil Horman Reviewed-by: Shane Lontis (Merged from https://github.com/openssl/openssl/pull/26500) --- diff --git a/providers/implementations/signature/eddsa_sig.c b/providers/implementations/signature/eddsa_sig.c index b045f6642ad..feb6e80347f 100644 --- a/providers/implementations/signature/eddsa_sig.c +++ b/providers/implementations/signature/eddsa_sig.c @@ -277,6 +277,7 @@ static int eddsa_signverify_init(void *vpeddsactx, void *vedkey) ERR_raise(ERR_LIB_PROV, ERR_R_INTERNAL_ERROR); ossl_ecx_key_free(edkey); peddsactx->key = NULL; + WPACKET_cleanup(&pkt); return 0; } if (ret && WPACKET_finish(&pkt)) {