mhonek / rpms / openldap

Forked from rpms/openldap 3 years ago
Clone
Jan Vcelak 904778f
MozNSS: cipher suite selection by name may be ignored
Jan Vcelak 904778f
Jan Vcelak 904778f
Author: Tim Strobell <tim.strobell.ctr@nrl.navy.mil>
Jan Vcelak 904778f
Upstream ITS: #7289
Jan Vcelak 904778f
Upstream commit: 4b6bd2c600a79960409499f43a818aa0ca9fe463
Jan Vcelak 904778f
Resolves: #825875 (CVE-2012-2668)
Jan Vcelak 904778f
Jan Vcelak 904778f
---
Jan Vcelak 904778f
 libraries/libldap/tls_m.c |    2 +-
Jan Vcelak 904778f
 1 file changed, 1 insertion(+), 1 deletion(-)
Jan Vcelak 904778f
Jan Vcelak 904778f
diff --git a/libraries/libldap/tls_m.c b/libraries/libldap/tls_m.c
Jan Vcelak 904778f
index 4c18360..d71fec7 100644
Jan Vcelak 904778f
--- a/libraries/libldap/tls_m.c
Jan Vcelak 904778f
+++ b/libraries/libldap/tls_m.c
Jan Vcelak 904778f
@@ -624,7 +624,7 @@ nss_parse_ciphers(const char *cipherstr, int cipher_list[ciphernum])
Jan Vcelak 904778f
 			} else {
Jan Vcelak 904778f
 				for (i=0; i
Jan Vcelak 904778f
 					if (!strcmp(ciphers_def[i].ossl_name, cipher) &&
Jan Vcelak 904778f
-						cipher_list[1] != -1)
Jan Vcelak 904778f
+						cipher_list[i] != -1)
Jan Vcelak 904778f
 						cipher_list[i] = action;
Jan Vcelak 904778f
 				}
Jan Vcelak 904778f
 			}
Jan Vcelak 904778f
-- 
Jan Vcelak 904778f
1.7.10.4
Jan Vcelak 904778f