ssl3_read_bytes bug fix

Submitted by: D P Chang <dpc@qualys.com>
Reviewed by: Bodo
This commit is contained in:
Ulf Möller 2001-12-28 17:14:35 +00:00
parent 3c89d78dba
commit dcbbf83dba
2 changed files with 5 additions and 0 deletions

View file

@ -12,6 +12,10 @@
*) applies to 0.9.6a/0.9.6b/0.9.6c and 0.9.7
+) applies to 0.9.7 only
*) Fix ssl3_read_bytes (ssl/s3_pkt.c): To ignore messages of unknown
type, we must throw them away by setting rr->length to 0.
[D P Chang <dpc@qualys.com>]
-) OpenSSL 0.9.6c released [21 dec 2001]
+) SECURITY: remove unsafe setjmp/signal interaction from ui_openssl.c.

View file

@ -1087,6 +1087,7 @@ start:
/* TLS just ignores unknown message types */
if (s->version == TLS1_VERSION)
{
rr->length = 0;
goto start;
}
#endif