Don't change version number if session established
authorDr. Stephen Henson <steve@openssl.org>
Tue, 24 Dec 2013 18:17:00 +0000 (18:17 +0000)
committerDr. Stephen Henson <steve@openssl.org>
Thu, 2 Jan 2014 15:12:48 +0000 (15:12 +0000)
commitf3dcc8411e518fb0835c7d72df4a58718205260d
treeb08b79e5edf73e971343f245a443b1a3b76098e1
parent1c2c5e402a757a63d690bd2390bd6b8b491ef184
Don't change version number if session established

When sending an invalid version number alert don't change the
version number to the client version if a session is already
established.

Thanks to Marek Majkowski for additional analysis of this issue.

PR#3191
ssl/s3_pkt.c
ssl/s3_srvr.c