From 54c3f0124d3c0055bc2bcc55c0c47db3620da274 Mon Sep 17 00:00:00 2001 From: tb <> Date: Tue, 15 Aug 2023 11:20:57 +0000 Subject: Avoid memcmp() with NULL pointer and 0 length --- src/regress/lib/libssl/ssl/ssltest.c | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) (limited to 'src/regress/lib/libssl/ssl/ssltest.c') diff --git a/src/regress/lib/libssl/ssl/ssltest.c b/src/regress/lib/libssl/ssl/ssltest.c index f50824d242..f95ea44a91 100644 --- a/src/regress/lib/libssl/ssl/ssltest.c +++ b/src/regress/lib/libssl/ssl/ssltest.c @@ -1,4 +1,4 @@ -/* $OpenBSD: ssltest.c,v 1.42 2023/07/27 07:08:09 tb Exp $ */ +/* $OpenBSD: ssltest.c,v 1.43 2023/08/15 11:20:57 tb Exp $ */ /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com) * All rights reserved. * @@ -281,8 +281,8 @@ verify_alpn(SSL *client, SSL *server) free(alpn_selected); alpn_selected = NULL; - if (client_proto_len != server_proto_len || - memcmp(client_proto, server_proto, client_proto_len) != 0) { + if (client_proto_len != server_proto_len || (client_proto_len > 0 && + memcmp(client_proto, server_proto, client_proto_len) != 0)) { BIO_printf(bio_stdout, "ALPN selected protocols differ!\n"); goto err; } -- cgit v1.2.3-55-g6feb