From 3ce2fdabe6e33952bf3011acf5b68107e6352603 Mon Sep 17 00:00:00 2001 From: Matt Caswell Date: Fri, 24 Jun 2016 23:37:27 +0100 Subject: Convert memset calls to OPENSSL_cleanse Ensure things really do get cleared when we intend them to. Addresses an OCAP Audit issue. Reviewed-by: Andy Polyakov --- crypto/buffer/buffer.c | 1 - 1 file changed, 1 deletion(-) (limited to 'crypto/buffer') diff --git a/crypto/buffer/buffer.c b/crypto/buffer/buffer.c index 7caa215092..6b0bd4a404 100644 --- a/crypto/buffer/buffer.c +++ b/crypto/buffer/buffer.c @@ -46,7 +46,6 @@ void BUF_MEM_free(BUF_MEM *a) return; if (a->data != NULL) { - memset(a->data, 0, (unsigned int)a->max); if (a->flags & BUF_MEM_FLAG_SECURE) OPENSSL_secure_free(a->data); else -- cgit v1.2.3