Changeset 82745d1 in mod_gnutls for src/gnutls_util.h

Timestamp:
Jun 14, 2016, 3:38:18 PM (4 years ago)
Author:
Thomas Klute <thomas2.klute@…>
Branches:
debian/master, debian/stretch-backports, master, upstream
Children:
894efd0
Parents:
16ad0eb
Message:

Fix memory usage issues

  • Use-after-free of the OCSP request in mgs_cache_ocsp_response()
  • Missing error return in mgs_cache_ocsp_response() if request creation fails
  • Initialize fplen in mgs_get_cert_fingerprint() before requesting the fingerprint length. Valgrind indicates that the control flow of gnutls_x509_crt_get_fingerprint() depends on it.
(No files)

Note: See TracChangeset for help on using the changeset viewer.