Handle max_fragment_length overflow for DTLS
authorSimon Cornish <7t9jna402@sneakemail.com>
Fri, 14 Feb 2020 22:16:09 +0000 (14:16 -0800)
committerTomas Mraz <tmraz@fedoraproject.org>
Wed, 19 Feb 2020 08:21:10 +0000 (09:21 +0100)
commitcc0663f697b05ed121a728241f0502250429802d
treec7c7af0d58b3bbb717a9f62b3c56aa91a5b674d3
parentce82b892e8b86d68d02096554b4e07af7f095368
Handle max_fragment_length overflow for DTLS

Allow for encryption overhead in early DTLS size check
and send overflow if validated record is too long

Reviewed-by: Matt Caswell <matt@openssl.org>
Reviewed-by: Tomas Mraz <tmraz@fedoraproject.org>
(Merged from https://github.com/openssl/openssl/pull/11096)
ssl/record/ssl3_record.c