Skip to content

Commit 47b2fef

Browse files
Nicky Mouhadavidben
Nicky Mouha
authored andcommitted
Update hkdf.c to avoid potentially vulnerable code pattern.
Change-Id: I190fcdb0b9667b0ac6f490b36edc63237af7fffb Reviewed-on: https://boringssl-review.googlesource.com/c/boringssl/+/59905 Reviewed-by: David Benjamin <davidben@google.com>
1 parent dd52194 commit 47b2fef

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

crypto/fipsmodule/hkdf/hkdf.c

+1-1
Original file line numberDiff line numberDiff line change
@@ -94,7 +94,7 @@ int HKDF_expand(uint8_t *out_key, size_t out_len, const EVP_MD *digest,
9494
}
9595

9696
todo = digest_len;
97-
if (done + todo > out_len) {
97+
if (todo > out_len - done) {
9898
todo = out_len - done;
9999
}
100100
OPENSSL_memcpy(out_key + done, previous, todo);

0 commit comments

Comments
 (0)