From 28271061993266a333e3ca5935448668ab164e50 Mon Sep 17 00:00:00 2001 From: Ronald Cron Date: Fri, 10 Jun 2022 14:43:55 +0200 Subject: [PATCH] tls13: Add missing buffer overread check Signed-off-by: Ronald Cron --- library/ssl_tls13_client.c | 1 + 1 file changed, 1 insertion(+) diff --git a/library/ssl_tls13_client.c b/library/ssl_tls13_client.c index ead0db835..9281e6eb8 100644 --- a/library/ssl_tls13_client.c +++ b/library/ssl_tls13_client.c @@ -667,6 +667,7 @@ static int ssl_tls13_is_supported_versions_ext_present( * - cipher_suite 2 bytes * - legacy_compression_method 1 byte */ + MBEDTLS_SSL_CHK_BUF_READ_PTR( p, end, legacy_session_id_echo_len + 4 ); p += legacy_session_id_echo_len + 4; /* Case of no extension */