summaryrefslogtreecommitdiffstats
path: root/lib/libssl/src/ssl/ssl_sess.c
diff options
context:
space:
mode:
authortedu <tedu@openbsd.org>2014-06-04 14:10:23 +0000
committertedu <tedu@openbsd.org>2014-06-04 14:10:23 +0000
commit0fbb22b80081dae9dd04cbedeae2fa3ba34318dd (patch)
treedffb8775e5ef95187e0b23e9c49a5b1b2b103a00 /lib/libssl/src/ssl/ssl_sess.c
parentClearing the data toggle bit only makes sense for endpoints that use it, (diff)
downloadwireguard-openbsd-0fbb22b80081dae9dd04cbedeae2fa3ba34318dd.tar.xz
wireguard-openbsd-0fbb22b80081dae9dd04cbedeae2fa3ba34318dd.zip
without overthinking it, replace a few memcmp calls with CRYPTO_memcmp
where it is feasible to do so. better safe than sorry.
Diffstat (limited to 'lib/libssl/src/ssl/ssl_sess.c')
-rw-r--r--lib/libssl/src/ssl/ssl_sess.c2
1 files changed, 1 insertions, 1 deletions
diff --git a/lib/libssl/src/ssl/ssl_sess.c b/lib/libssl/src/ssl/ssl_sess.c
index 2900490ad2e..1e2bade1fbe 100644
--- a/lib/libssl/src/ssl/ssl_sess.c
+++ b/lib/libssl/src/ssl/ssl_sess.c
@@ -498,7 +498,7 @@ ssl_get_prev_session(SSL *s, unsigned char *session_id, int len,
/* Now ret is non-NULL and we own one of its reference counts. */
if (ret->sid_ctx_length != s->sid_ctx_length
- || memcmp(ret->sid_ctx, s->sid_ctx, ret->sid_ctx_length)) {
+ || CRYPTO_memcmp(ret->sid_ctx, s->sid_ctx, ret->sid_ctx_length)) {
/* We have the session requested by the client, but we don't
* want to use it in this context. */
goto err; /* treat like cache miss */