From c54a116b266c232d9e0ffad482eb5f8b98130ac4 Mon Sep 17 00:00:00 2001 From: markus <> Date: Tue, 30 Jul 2002 11:08:06 +0000 Subject: apply patches from OpenSSL Security Advisory [30 July 2002], http://marc.theaimsgroup.com/?l=openssl-dev&m=102802395104110&w=2 --- src/lib/libssl/s3_srvr.c | 1 + 1 file changed, 1 insertion(+) (limited to 'src/lib/libssl/s3_srvr.c') diff --git a/src/lib/libssl/s3_srvr.c b/src/lib/libssl/s3_srvr.c index 99b6a86983..3748cd7c24 100644 --- a/src/lib/libssl/s3_srvr.c +++ b/src/lib/libssl/s3_srvr.c @@ -964,6 +964,7 @@ static int ssl3_send_server_hello(SSL *s) s->session->session_id_length=0; sl=s->session->session_id_length; + die(sl <= sizeof s->session->session_id); *(p++)=sl; memcpy(p,s->session->session_id,sl); p+=sl; -- cgit v1.2.3-55-g6feb