]> git.ipfire.org Git - thirdparty/openssl.git/commit
Correct return values for tls_construct_stoc_next_proto_neg
authorMatt Caswell <matt@openssl.org>
Fri, 21 Jun 2024 09:41:55 +0000 (10:41 +0100)
committerMatt Caswell <matt@openssl.org>
Thu, 27 Jun 2024 09:37:54 +0000 (10:37 +0100)
commit087501b4f572825e27ca8cc2c5874fcf6fd47cf7
tree637c7d503882abde9e9fc967a7da2d0e0053c487
parentc54e56fc8ab19e9d07c284d6c7c6bf293f7520d2
Correct return values for tls_construct_stoc_next_proto_neg

Return EXT_RETURN_NOT_SENT in the event that we don't send the extension,
rather than EXT_RETURN_SENT. This actually makes no difference at all to
the current control flow since this return value is ignored in this case
anyway. But lets make it correct anyway.

Follow on from CVE-2024-5535

Reviewed-by: Neil Horman <nhorman@openssl.org>
Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/24718)
ssl/statem/extensions_srvr.c