From 8d8a0144303374f69f73fc944dd55c68600d15e5 Mon Sep 17 00:00:00 2001 From: Tomas Mraz Date: Fri, 12 Apr 2024 15:37:58 +0200 Subject: [PATCH] fuzz/decoder.c: Limit the EVP_PKEY_param_check on DHX keys as well Reviewed-by: Neil Horman Reviewed-by: Richard Levitte (Merged from https://github.com/openssl/openssl/pull/24126) --- fuzz/decoder.c | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/fuzz/decoder.c b/fuzz/decoder.c index c7b6d02f737..4888c5cd40e 100644 --- a/fuzz/decoder.c +++ b/fuzz/decoder.c @@ -68,7 +68,8 @@ int FuzzerTestOneInput(const uint8_t *buf, size_t len) * Param check will take too long time on large DH parameters. * Skip it. */ - if (!EVP_PKEY_is_a(pkey, "DH") || EVP_PKEY_get_bits(pkey) <= 8192) + if ((!EVP_PKEY_is_a(pkey, "DH") && !EVP_PKEY_is_a(pkey, "DHX")) + || EVP_PKEY_get_bits(pkey) <= 8192) EVP_PKEY_param_check(ctx); EVP_PKEY_public_check(ctx); -- 2.47.2