Security fixes brought forward from 0.9.7.
[openssl.git] / ssl / s3_enc.c
index 888a9a28684fe0a45dd1b1827901b83888092b03..cec8fcd3762fedbaf3fb29ceda16f7b32f7b5849 100644 (file)
@@ -192,7 +192,7 @@ int ssl3_change_cipher_state(SSL *s, int which)
        {
        unsigned char *p,*key_block,*mac_secret;
        unsigned char exp_key[EVP_MAX_KEY_LENGTH];
-       unsigned char exp_iv[EVP_MAX_KEY_LENGTH];
+       unsigned char exp_iv[EVP_MAX_IV_LENGTH];
        unsigned char *ms,*key,*iv,*er1,*er2;
        EVP_CIPHER_CTX *dd;
        const EVP_CIPHER *c;