CVSROOT:        /cvs
Module name:    src
Changes by:     t...@cvs.openbsd.org    2023/08/12 01:50:47

Modified files:
        lib/libcrypto/dh: dh_ameth.c 
        lib/libcrypto/dsa: dsa_ameth.c 

Log message:
Free {priv,pub}_key before assigning to it

While it isn't the case for the default implementations, custom DH and DSA
methods could conceivably populate private and public keys, which in turn
would result in leaks in the pub/priv decode methods.

ok jsing

Reply via email to