Skip to content

Conversation

@ekr
Copy link

@ekr ekr commented Nov 2, 2015

negotiate_ciphers assumes that the entire first ENO option is a list of ciphers, but that's not true if you are trying to resume or if a peer offers you another ENO cipher spec (i.e., not tcpcrypt) that is itself variable length. This patch trims any variable length suboptions off the end before doing the cipher negotiation

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant