[openssl/openssl] b8d80f: ssl: set tmp.pkey only after successful derive

0 views
Skip to first unread message

Joshua Rogers

unread,
Oct 17, 2025, 1:31:35 PM (3 days ago) Oct 17
to openssl...@openssl.org
Branch: refs/heads/master
Home: https://github.com/openssl/openssl
Commit: b8d80f0e9346ef7645dbc71a3e44b8087b70f3f2
https://github.com/openssl/openssl/commit/b8d80f0e9346ef7645dbc71a3e44b8087b70f3f2
Author: Joshua Rogers <MegaM...@users.noreply.github.com>
Date: 2025-10-17 (Fri, 17 Oct 2025)

Changed paths:
M ssl/statem/extensions_srvr.c

Log Message:
-----------
ssl: set tmp.pkey only after successful derive

Assign s->s3.tmp.pkey after ssl_derive succeeds and free skey on failure
to avoid a dangling state.

Signed-off-by: Joshua Rogers <MegaM...@users.noreply.github.com>

Reviewed-by: Saša Nedvědický <sas...@openssl.org>
Reviewed-by: Tomas Mraz <to...@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/28878)



To unsubscribe from these emails, change your notification settings at https://github.com/openssl/openssl/settings/notifications
Reply all
Reply to author
Forward
0 new messages