When processing ClientHello.cipher_suites, don't ignore cipher suites
authorBodo Moeller <bodo@openssl.org>
Tue, 21 Oct 2014 20:32:09 +0000 (22:32 +0200)
committerBodo Moeller <bodo@openssl.org>
Tue, 21 Oct 2014 20:32:09 +0000 (22:32 +0200)
listed after TLS_FALLBACK_SCSV.

RT: 3575
Reviewed-by: Emilia Kasper <emilia@openssl.org>
ssl/ssl_lib.c

index 27819b452f52f58e44c08c74f6489be019503d0d..e336a56dbe7c32e17b65a72bc18de77743bcc7e6 100644 (file)
@@ -1593,6 +1593,7 @@ STACK_OF(SSL_CIPHER) *ssl_bytes_to_cipher_list(SSL *s,unsigned char *p,int num,
                                        ssl3_send_alert(s,SSL3_AL_FATAL,SSL_AD_INAPPROPRIATE_FALLBACK);
                                goto err;
                                }
+                       p += n;
                        continue;
                        }