aboutsummaryrefslogtreecommitdiffstats
path: root/engines/e_ubsec.c
diff options
context:
space:
mode:
authorBodo Möller <bodo@openssl.org>2010-02-23 10:36:35 +0000
committerBodo Möller <bodo@openssl.org>2010-02-23 10:36:35 +0000
commit2d9dcd4ff0923347fab727ac90e8526dd65e4e07 (patch)
tree2aaf576cf8d78dec215500be1e79d15db67bcf94 /engines/e_ubsec.c
parenta8397553295bca838e082b959b4b8efe5d3b1256 (diff)
downloadopenssl-2d9dcd4ff0923347fab727ac90e8526dd65e4e07.tar.gz
Always check bn_wexpend() return values for failure (CVE-2009-3245).
(The CHANGES entry covers the change from PR #2111 as well, submitted by Martin Olsson.) Submitted by: Neel Mehta
Diffstat (limited to 'engines/e_ubsec.c')
-rw-r--r--engines/e_ubsec.c4
1 files changed, 2 insertions, 2 deletions
diff --git a/engines/e_ubsec.c b/engines/e_ubsec.c
index fe6bdba25b..b685410836 100644
--- a/engines/e_ubsec.c
+++ b/engines/e_ubsec.c
@@ -935,7 +935,7 @@ static int ubsec_dh_generate_key(DH *dh)
priv_key = BN_new();
if (priv_key == NULL) goto err;
priv_key_len = BN_num_bits(dh->p);
- bn_wexpand(priv_key, dh->p->top);
+ if(bn_wexpand(priv_key, dh->p->top) == NULL) goto err;
do
if (!BN_rand_range(priv_key, dh->p)) goto err;
while (BN_is_zero(priv_key));
@@ -950,7 +950,7 @@ static int ubsec_dh_generate_key(DH *dh)
{
pub_key = BN_new();
pub_key_len = BN_num_bits(dh->p);
- bn_wexpand(pub_key, dh->p->top);
+ if(bn_wexpand(pub_key, dh->p->top) == NULL) goto err;
if(pub_key == NULL) goto err;
}
else