From fe64245aa1b1f5519ddfe11e3c9d7ad49ae4de95 Mon Sep 17 00:00:00 2001 From: Adam Langley Date: Fri, 12 Jun 2015 08:05:49 +0100 Subject: [PATCH] Allow a zero length extension block It is valid for an extension block to be present in a ClientHello, but to be of zero length. Reviewed-by: Richard Levitte Reviewed-by: Matt Caswell --- ssl/t1_lib.c | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/ssl/t1_lib.c b/ssl/t1_lib.c index d811d3fdb8..210a5e8743 100644 --- a/ssl/t1_lib.c +++ b/ssl/t1_lib.c @@ -2016,12 +2016,12 @@ static int ssl_scan_clienthello_tlsext(SSL *s, unsigned char **p, s->srtp_profile = NULL; - if (data >= (d + n - 2)) { - if (data != d + n) - goto err; - else - goto ri_check; - } + if (data == d + n) + goto ri_check; + + if (data > (d + n - 2)) + goto err; + n2s(data, len); if (data > (d + n - len)) -- 2.25.1