e_aes_cbc_hmac_sha1.c: cleanse temporary copy of HMAC secret.
(cherry picked from commit 529d27ea472fc2c7ba9190a15a58cb84012d4ec6)
This commit is contained in:
parent
5966f4d973
commit
af010edd55
@ -474,6 +474,8 @@ static int aesni_cbc_hmac_sha1_ctrl(EVP_CIPHER_CTX *ctx, int type, int arg, void
|
|||||||
SHA1_Init(&key->tail);
|
SHA1_Init(&key->tail);
|
||||||
SHA1_Update(&key->tail,hmac_key,sizeof(hmac_key));
|
SHA1_Update(&key->tail,hmac_key,sizeof(hmac_key));
|
||||||
|
|
||||||
|
OPENSSL_cleanse(hmac_key,sizeof(hmac_key));
|
||||||
|
|
||||||
return 1;
|
return 1;
|
||||||
}
|
}
|
||||||
case EVP_CTRL_AEAD_TLS1_AAD:
|
case EVP_CTRL_AEAD_TLS1_AAD:
|
||||||
|
Loading…
x
Reference in New Issue
Block a user