Store verify_result with sessions to avoid potential security hole.
[openssl.git] / ssl / s3_clnt.c
index 62040f9f1d01ba340a3d184113539eb2dc396bf1..eec45cfa485d0d0a7ae6a4f06a3f3abf430d15b4 100644 (file)
@@ -815,6 +815,7 @@ static int ssl3_get_server_certificate(SSL *s)
                X509_free(s->session->peer);
        CRYPTO_add(&x->references,1,CRYPTO_LOCK_X509);
        s->session->peer=x;
+       s->session->verify_result = s->verify_result;
 
        x=NULL;
        ret=1;