summaryrefslogtreecommitdiffstats
path: root/crypto/md5
diff options
context:
space:
mode:
authorDr. Stephen Henson <steve@openssl.org>2014-07-31 20:56:22 +0100
committerMatt Caswell <matt@openssl.org>2014-08-06 20:36:41 +0100
commit4a23b12a031860253b58d503f296377ca076427b (patch)
tree23f11b15a67618d2cbb459d87dbc6de6ec51bb91 /crypto/md5
parent80bd7b41b30af6ee96f519e629463583318de3b0 (diff)
Fix SRP buffer overrun vulnerability.
Invalid parameters passed to the SRP code can be overrun an internal buffer. Add sanity check that g, A, B < N to SRP code. Thanks to Sean Devlin and Watson Ladd of Cryptography Services, NCC Group for reporting this issue.
Diffstat (limited to 'crypto/md5')
0 files changed, 0 insertions, 0 deletions