Don't change version number if session established
authorDr. Stephen Henson <steve@openssl.org>
Tue, 24 Dec 2013 18:17:00 +0000 (18:17 +0000)
committerDr. Stephen Henson <steve@openssl.org>
Thu, 2 Jan 2014 15:05:44 +0000 (15:05 +0000)
commitb77b58a398c8b9b4113f3fb6b48e162a3b8d4527
treed9b6f28c6763e40f396e40ed35587bdf2e76c162
parentf6dfbeed3c82e3bfc9cda2f4cd80f1e1b5515ba9
Don't change version number if session established

When sending an invalid version number alert don't change the
version number to the client version if a session is already
established.

Thanks to Marek Majkowski for additional analysis of this issue.

PR#3191
ssl/s3_pkt.c
ssl/s3_srvr.c