From a46c705214004358c8e7b1b5c3eb1c45615d3b21 Mon Sep 17 00:00:00 2001 From: Bodo Moeller Date: Wed, 15 Oct 2014 04:04:55 +0200 Subject: Support TLS_FALLBACK_SCSV. Reviewed-by: Rich Salz --- ssl/s23_clnt.c | 3 +++ 1 file changed, 3 insertions(+) (limited to 'ssl/s23_clnt.c') diff --git a/ssl/s23_clnt.c b/ssl/s23_clnt.c index 5177f060c2..ca6dcd343c 100644 --- a/ssl/s23_clnt.c +++ b/ssl/s23_clnt.c @@ -748,6 +748,9 @@ static int ssl23_get_server_hello(SSL *s) goto err; } + /* ensure that TLS_MAX_VERSION is up-to-date */ + OPENSSL_assert(s->version <= TLS_MAX_VERSION); + if (p[0] == SSL3_RT_ALERT && p[5] != SSL3_AL_WARNING) { /* fatal alert */ -- cgit v1.2.3