HomeFreeBSD

OpenSSL: Fix Null pointer deref in X509_issuer_and_serial_hash()

Description

OpenSSL: Fix Null pointer deref in X509_issuer_and_serial_hash()

Note it is backported from OpenSSL 1.1.1j to fix CVE-2021-23841.

https://github.com/openssl/openssl/commit/122a19ab48091c657f7cb1fb3af9fc07bd557bbf

Details

Provenance
jkimAuthored on Feb 18 2021, 5:46 PM
Parents
rG9e94eac9765f: OpenSSL: Don't overflow the output length in EVP_CipherUpdate calls
Branches
Unknown
Tags
Unknown