Emilia Kasper f48b83b4fb Fix length checks in X509_cmp_time to avoid out-of-bounds reads.
Also tighten X509_cmp_time to reject more than three fractional
seconds in the time; and to reject trailing garbage after the offset.

CVE-2015-1789

Reviewed-by: Viktor Dukhovni <viktor@openssl.org>
Reviewed-by: Richard Levitte <levitte@openssl.org>
2015-06-11 11:06:30 +01:00
..
2015-05-28 12:54:27 -04:00
2015-05-02 14:15:00 +01:00
2015-05-28 12:54:27 -04:00
2015-03-23 18:27:04 +00:00