[openssl/openssl] 6945c4: ssl: use BAD_KEY_SHARE for invalid key share encoding

0 views
Skip to first unread message

Joshua Rogers

unread,
Oct 17, 2025, 1:30:36 PM (3 days ago) Oct 17
to openssl...@openssl.org
Branch: refs/heads/master
Home: https://github.com/openssl/openssl
Commit: 6945c416bb86c85079840789a2e09102818e57b3
https://github.com/openssl/openssl/commit/6945c416bb86c85079840789a2e09102818e57b3
Author: Joshua Rogers <MegaM...@users.noreply.github.com>
Date: 2025-10-17 (Fri, 17 Oct 2025)

Changed paths:
M ssl/statem/extensions_clnt.c
M ssl/statem/extensions_srvr.c

Log Message:
-----------
ssl: use BAD_KEY_SHARE for invalid key share encoding

Replace BAD_ECPOINT with BAD_KEY_SHARE in tls_accept_ksgroup so alerts
are correct for non EC groups too.

Signed-off-by: Joshua Rogers <MegaM...@users.noreply.github.com>

Reviewed-by: Saša Nedvědický <sas...@openssl.org>
Reviewed-by: Matt Caswell <ma...@openssl.org>
Reviewed-by: Tomas Mraz <to...@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/28876)



To unsubscribe from these emails, change your notification settings at https://github.com/openssl/openssl/settings/notifications
Reply all
Reply to author
Forward
0 new messages