diff options
author | tedu <> | 2014-06-04 14:10:23 +0000 |
---|---|---|
committer | tedu <> | 2014-06-04 14:10:23 +0000 |
commit | f1af6a0fd89c7819b589f8168a570bcd35c0f727 (patch) | |
tree | 2239b639d15116fcc235465d6e2d18383e6f7ce1 /src/lib/libssl/t1_lib.c | |
parent | 3968230a0022bbdf64e7caf8e2e998f8299a5add (diff) | |
download | openbsd-f1af6a0fd89c7819b589f8168a570bcd35c0f727.tar.gz openbsd-f1af6a0fd89c7819b589f8168a570bcd35c0f727.tar.bz2 openbsd-f1af6a0fd89c7819b589f8168a570bcd35c0f727.zip |
without overthinking it, replace a few memcmp calls with CRYPTO_memcmp
where it is feasible to do so. better safe than sorry.
Diffstat (limited to '')
-rw-r--r-- | src/lib/libssl/t1_lib.c | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/src/lib/libssl/t1_lib.c b/src/lib/libssl/t1_lib.c index 3546a45df1..a18032b9c8 100644 --- a/src/lib/libssl/t1_lib.c +++ b/src/lib/libssl/t1_lib.c | |||
@@ -2083,7 +2083,7 @@ tls_decrypt_ticket(SSL *s, const unsigned char *etick, int eticklen, | |||
2083 | renew_ticket = 1; | 2083 | renew_ticket = 1; |
2084 | } else { | 2084 | } else { |
2085 | /* Check key name matches */ | 2085 | /* Check key name matches */ |
2086 | if (memcmp(etick, tctx->tlsext_tick_key_name, 16)) | 2086 | if (CRYPTO_memcmp(etick, tctx->tlsext_tick_key_name, 16)) |
2087 | return 2; | 2087 | return 2; |
2088 | HMAC_Init_ex(&hctx, tctx->tlsext_tick_hmac_key, 16, | 2088 | HMAC_Init_ex(&hctx, tctx->tlsext_tick_hmac_key, 16, |
2089 | tlsext_tick_md(), NULL); | 2089 | tlsext_tick_md(), NULL); |