From: Bernd Edlinger Date: Sun, 17 Mar 2019 08:48:15 +0000 (+0100) Subject: Clear the secret point in ecdh_simple_compute_key X-Git-Tag: OpenSSL_1_1_0k~8 X-Git-Url: https://git.librecmc.org/?a=commitdiff_plain;h=c5bc42d7a131cf7a6a2ebd97a7a4a559d01af0f9;p=oweals%2Fopenssl.git Clear the secret point in ecdh_simple_compute_key Reviewed-by: Paul Dale (Merged from https://github.com/openssl/openssl/pull/8501) (cherry picked from commit 1ff2c992c24c330c0d40708b4169b862563d6aab) --- diff --git a/crypto/ec/ecdh_ossl.c b/crypto/ec/ecdh_ossl.c index a865145974..2d620cbc3e 100644 --- a/crypto/ec/ecdh_ossl.c +++ b/crypto/ec/ecdh_ossl.c @@ -138,7 +138,7 @@ int ecdh_simple_compute_key(unsigned char **pout, size_t *poutlen, ret = 1; err: - EC_POINT_free(tmp); + EC_POINT_clear_free(tmp); if (ctx) BN_CTX_end(ctx); BN_CTX_free(ctx);