Update from 0.9.7-stable.
authorDr. Stephen Henson <steve@openssl.org>
Wed, 21 Feb 2007 13:49:35 +0000 (13:49 +0000)
committerDr. Stephen Henson <steve@openssl.org>
Wed, 21 Feb 2007 13:49:35 +0000 (13:49 +0000)
CHANGES
crypto/pem/pem_lib.c
crypto/pem/pem_pkey.c

diff --git a/CHANGES b/CHANGES
index 837cce49810eb3c2586453ddffc727541c08624c..49cdf5dcf53e950427aaba21c74e272c32864905 100644 (file)
--- a/CHANGES
+++ b/CHANGES
 
  Changes between 0.9.7l and 0.9.7m  [xx XXX xxxx]
 
+  *) Cleanse PEM buffers before freeing them since they may contain 
+     sensitive data.
+     [Benjamin Bennett <ben@psc.edu>]
+
   *) Include "!eNULL" in SSL_DEFAULT_CIPHER_LIST to make sure that
      a ciphersuite string such as "DEFAULT:RSA" cannot enable
      authentication-only ciphersuites.
index 20db5013f6d491cf083ed49f6a0bb2afbbefd393..c0bd099d2c5f0e30048cabc047ba64fa18b95de6 100644 (file)
@@ -619,6 +619,7 @@ int PEM_write_bio(BIO *bp, const char *name, char *header, unsigned char *data,
                }
        EVP_EncodeFinal(&ctx,buf,&outl);
        if ((outl > 0) && (BIO_write(bp,(char *)buf,outl) != outl)) goto err;
+       OPENSSL_cleanse(buf, PEM_BUFSIZE*8);
        OPENSSL_free(buf);
        buf = NULL;
        if (    (BIO_write(bp,"-----END ",9) != 9) ||
@@ -627,8 +628,10 @@ int PEM_write_bio(BIO *bp, const char *name, char *header, unsigned char *data,
                goto err;
        return(i+outl);
 err:
-       if (buf)
+       if (buf) {
+               OPENSSL_cleanse(buf, PEM_BUFSIZE*8);
                OPENSSL_free(buf);
+       }
        PEMerr(PEM_F_PEM_WRITE_BIO,reason);
        return(0);
        }
index 6cca60cb8d4d8d0ac3a9547033ccf7decb0b7f69..452e24cc762f0ee9d266755b82072164eb987c19 100644 (file)
@@ -132,6 +132,7 @@ p8err:
                PEMerr(PEM_F_PEM_READ_BIO_PRIVATEKEY,ERR_R_ASN1_LIB);
 err:
        OPENSSL_free(nm);
+       OPENSSL_cleanse(data, len);
        OPENSSL_free(data);
        return(ret);
        }