Handle max_fragment_length overflow for DTLS
authorSimon Cornish <7t9jna402@sneakemail.com>
Fri, 14 Feb 2020 22:16:09 +0000 (14:16 -0800)
committerTomas Mraz <tmraz@fedoraproject.org>
Wed, 19 Feb 2020 08:22:09 +0000 (09:22 +0100)
commitdfbaef60fe2ff95a1bc4362f2c5a39d0cf6f2513
treeb2316e9ee80531de00021f4e1d40d88a5ef1dfcf
parent218e740f850f77c9f2720d56886eab166d1a6727
Handle max_fragment_length overflow for DTLS

Allow for encryption overhead in early DTLS size check
and send overflow if validated record is too long

Reviewed-by: Matt Caswell <matt@openssl.org>
Reviewed-by: Tomas Mraz <tmraz@fedoraproject.org>
(Merged from https://github.com/openssl/openssl/pull/11096)

(cherry picked from commit cc0663f697b05ed121a728241f0502250429802d)
ssl/record/ssl3_record.c