]> git.ipfire.org Git - thirdparty/openssl.git/commit
Update rsasve_recover to properly store outlen on success
authorNeil Horman <nhorman@openssl.org>
Mon, 23 Sep 2024 18:14:18 +0000 (14:14 -0400)
committerTomas Mraz <tomas@openssl.org>
Mon, 7 Oct 2024 15:47:49 +0000 (17:47 +0200)
commit9432935b7a4599ce410e0dedc26f00915a42e857
tree6c9db97aabce431b3ab3e715a6f6ca5078b9b1fa
parent0f6ff92e67f2bbb1cda222dbe333cdf3cbaf4989
Update rsasve_recover to properly store outlen on success

Outlen was never validated in this function prior to use, nor is it set
to the decrypted value on sucess.  Add both of those operations

Fixes #25509

Reviewed-by: Shane Lontis <shane.lontis@oracle.com>
Reviewed-by: Viktor Dukhovni <viktor@openssl.org>
Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/25522)

(cherry picked from commit 0f9516855e3139ef999b58f2fa551afb3b6c2b15)
providers/implementations/kem/rsa_kem.c