[openssl/openssl] d53d79: EVP_CIPHER_CTX_get_iv_length can not return a nega...

0 views
Skip to first unread message

Bob Beck

unread,
May 8, 2026, 8:18:38 AM (16 hours ago) May 8
to openssl...@openssl.org
Branch: refs/heads/master
Home: https://github.com/openssl/openssl
Commit: d53d79377100b63378ab08e9006843a4fad10a09
https://github.com/openssl/openssl/commit/d53d79377100b63378ab08e9006843a4fad10a09
Author: Bob Beck <be...@openssl.org>
Date: 2026-05-08 (Fri, 08 May 2026)

Changed paths:
M crypto/cms/cms_enc.c

Log Message:
-----------
EVP_CIPHER_CTX_get_iv_length can not return a negative value

but it can return 0. Remove dead code and handle this
correctly - memcpy of 0 bytes from NULL is UB.

Reviewed-by: Saša Nedvědický <sas...@openssl.org>
Reviewed-by: Norbert Pocs <norb...@openssl.org>
Reviewed-by: Neil Horman <nho...@openssl.org>
MergeDate: Fri May 8 12:15:17 2026
(Merged from https://github.com/openssl/openssl/pull/30609)



To unsubscribe from these emails, change your notification settings at https://github.com/openssl/openssl/settings/notifications
Reply all
Reply to author
Forward
0 new messages