From 97652f0b3a557876462ef30373ac5eeeaa88b295 Mon Sep 17 00:00:00 2001 From: Matt Caswell Date: Wed, 29 Nov 2017 13:56:15 +0000 Subject: Add a test for CVE-2017-3737 Test reading/writing to an SSL object after a fatal error has been detected. This CVE only affected 1.0.2, but we should add it to other branches for completeness. Reviewed-by: Viktor Dukhovni --- test/build.info | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) (limited to 'test/build.info') diff --git a/test/build.info b/test/build.info index 3d7af31ab6..3c92c80593 100644 --- a/test/build.info +++ b/test/build.info @@ -46,7 +46,7 @@ INCLUDE_MAIN___test_libtestutil_OLB = /INCLUDE=MAIN x509_time_test x509_dup_cert_test x509_check_cert_pkey_test \ recordlentest drbgtest sslbuffertest \ time_offset_test pemtest ssl_cert_table_internal_test ciphername_test \ - servername_test ocspapitest rsa_mp_test + servername_test ocspapitest rsa_mp_test fatalerrtest SOURCE[aborttest]=aborttest.c INCLUDE[aborttest]=../include @@ -156,6 +156,10 @@ INCLUDE_MAIN___test_libtestutil_OLB = /INCLUDE=MAIN INCLUDE[rsa_mp_test]=.. ../include DEPEND[rsa_mp_test]=../libcrypto libtestutil.a + SOURCE[fatalerrtest]=fatalerrtest.c ssltestlib.c + INCLUDE[fatalerrtest]=../include .. + DEPEND[fatalerrtest]=../libcrypto ../libssl libtestutil.a + SOURCE[evp_test]=evp_test.c INCLUDE[evp_test]=../include DEPEND[evp_test]=../libcrypto libtestutil.a -- cgit v1.2.3