Add bounds check for OCSP nocheck parsing in X509

This commit is contained in:
Andres Amaya Garcia
2017-08-23 09:52:31 +01:00
parent b3cb72d72e
commit 4cfdb54e2c

View File

@@ -370,6 +370,10 @@ static int x509_get_ocsp_nocheck( unsigned char **p,
return( MBEDTLS_ERR_X509_INVALID_EXTENSIONS +
MBEDTLS_ERR_ASN1_LENGTH_MISMATCH );
if( *p != end )
return( MBEDTLS_ERR_X509_INVALID_EXTENSIONS +
MBEDTLS_ERR_ASN1_LENGTH_MISMATCH );
return( 0 );
}