PR: 2803
authorDr. Stephen Henson <steve@openssl.org>
Thu, 29 Nov 2012 19:15:14 +0000 (19:15 +0000)
committerDr. Stephen Henson <steve@openssl.org>
Thu, 29 Nov 2012 19:15:14 +0000 (19:15 +0000)
Submitted by: jean-etienne.schwartz@bull.net

In OCSP_basic_varify return an error if X509_STORE_CTX_init fails.

crypto/ocsp/ocsp_vfy.c

index 415d67e..8a5e788 100644 (file)
@@ -108,6 +108,7 @@ int OCSP_basic_verify(OCSP_BASICRESP *bs, STACK_OF(X509) *certs,
                        init_res = X509_STORE_CTX_init(&ctx, st, signer, bs->certs);
                if(!init_res)
                        {
+                       ret = -1;
                        OCSPerr(OCSP_F_OCSP_BASIC_VERIFY,ERR_R_X509_LIB);
                        goto end;
                        }