Validate ClientHello session_id field length and send alert on failure
authorAlessandro Ghedini <alessandro@ghedini.me>
Wed, 13 Jan 2016 12:49:24 +0000 (12:49 +0000)
committerMatt Caswell <matt@openssl.org>
Tue, 19 Jan 2016 15:42:23 +0000 (15:42 +0000)
commit51223748e5527db0e08049925bc2e9f430154d97
tree36fc94f04d980534b4d6059f1b8bd6a418317878
parent4c33d583f5f691d354b58ca27d5e2108cd890a9c
Validate ClientHello session_id field length and send alert on failure

RT#4080

Reviewed-by: Rich Salz <rsalz@openssl.org>
Reviewed-by: Matt Caswell <matt@openssl.org>
ssl/s2_srvr.c
ssl/s3_srvr.c
ssl/ssl_sess.c