Merge pull request #1152 from thomaswhiteway/ecdsa_sig_set0_leak

Free r and s on ECDSA_SIG before overwriting them in ECDSA_SIG_set0
This commit is contained in:
Steven Fackler 2019-09-06 09:20:33 -04:00 committed by GitHub
commit 9780fd6ba2
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 7 additions and 2 deletions

View File

@ -138,6 +138,11 @@ cfg_if! {
r: *mut ffi::BIGNUM, r: *mut ffi::BIGNUM,
s: *mut ffi::BIGNUM, s: *mut ffi::BIGNUM,
) -> c_int { ) -> c_int {
if r.is_null() || s.is_null() {
return 0;
}
ffi::BN_clear_free((*sig).r);
ffi::BN_clear_free((*sig).s);
(*sig).r = r; (*sig).r = r;
(*sig).s = s; (*sig).s = s;
1 1