]> git.ipfire.org Git - thirdparty/openssl.git/commit
check_sig_alg_match(): weaken sig nid comparison to base alg
authorDr. David von Oheimb <David.von.Oheimb@siemens.com>
Tue, 26 Jan 2021 10:53:15 +0000 (11:53 +0100)
committerDr. David von Oheimb <David.von.Oheimb@siemens.com>
Thu, 28 Jan 2021 18:27:42 +0000 (19:27 +0100)
commitc2fc1115eac53d2043e09bfa43ac5407f87fe417
tree6745e75c02a5c38854166a838c8666f14fb27804
parenta7222fc14d5977210d2b4673a68039824a039dc2
check_sig_alg_match(): weaken sig nid comparison to base alg

This (re-)allows RSA-PSS signers

Fixes #13931

Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/13982)
crypto/x509v3/v3_purp.c
test/certs/ca-pss-cert.pem [new file with mode: 0644]
test/certs/ca-pss-key.pem [new file with mode: 0644]
test/certs/ee-pss-cert.pem [new file with mode: 0644]
test/certs/mkcert.sh
test/certs/setup.sh
test/recipes/25-test_verify.t