Skip to content
Commit b4e4bf29 authored by Viktor Dukhovni's avatar Viktor Dukhovni Committed by Tomas Mraz
Browse files

Check for excess data in CertificateVerify



As reported by Alicja Kario, we ignored excess bytes after the
signature payload in TLS CertificateVerify Messages.  These
should not be present.

Fixes: #25298

Reviewed-by: default avatarMatt Caswell <matt@openssl.org>
Reviewed-by: default avatarTomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/25302)
parent 25f5d7b8
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment