Summary: | Missing check for the return value of BIO_new() | ||
---|---|---|---|
Product: | Apache httpd-2 | Reporter: | Xiaoke Wang <xkernel.wang> |
Component: | mod_ssl | Assignee: | Apache HTTPD Bugs Mailing List <bugs> |
Status: | RESOLVED FIXED | ||
Severity: | normal | Keywords: | FixedInTrunk |
Priority: | P2 | ||
Version: | 2.5-HEAD | ||
Target Milestone: | --- | ||
Hardware: | PC | ||
OS: | All | ||
Attachments: | check BIO_new allocations |
Description
Xiaoke Wang
2021-12-01 14:54:55 UTC
Another one: In the version of 2.4.51: httpd-2.4.51/modules/ssl/ssl_util_ocsp.c:38:11. In current Github repository: https://github.com/apache/httpd/blob/c9f1a0a3010032e666bd6fecbad0c66d427d3f67/modules/ssl/ssl_util_ocsp.c#L38 Though this seems like a test file, it is worth fixing it with the other locations together. Created attachment 38135 [details]
check BIO_new allocations
Check for memory allocations from BIO_new.
|