diff options
author | Matt Caswell <matt@openssl.org> | 2021-10-11 13:08:29 +0200 |
---|---|---|
committer | Matt Caswell <matt@openssl.org> | 2021-10-22 09:43:27 +0200 |
commit | 61adb6cf950b65a7bfce9a8d78a7744dfae9f978 (patch) | |
tree | 7034a9a9b0106ed17595261d445c515e7848e920 /providers | |
parent | Add an additional note to EVP_DigestSign() documentation (diff) | |
download | openssl-61adb6cf950b65a7bfce9a8d78a7744dfae9f978.tar.xz openssl-61adb6cf950b65a7bfce9a8d78a7744dfae9f978.zip |
Fix a bug in signature self tests in the FIPS module
When calling EVP_PKEY_sign(), the size of the signature buffer must
be passed in *siglen.
Reviewed-by: Tomas Mraz <tomas@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/16789)
Diffstat (limited to 'providers')
-rw-r--r-- | providers/fips/self_test_kats.c | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/providers/fips/self_test_kats.c b/providers/fips/self_test_kats.c index 81f7226ba1..94a0cf842c 100644 --- a/providers/fips/self_test_kats.c +++ b/providers/fips/self_test_kats.c @@ -446,7 +446,7 @@ static int self_test_sign(const ST_KAT_SIGN *t, EVP_PKEY *pkey = NULL; unsigned char sig[256]; BN_CTX *bnctx = NULL; - size_t siglen = 0; + size_t siglen = sizeof(sig); static const unsigned char dgst[] = { 0x7f, 0x83, 0xb1, 0x65, 0x7f, 0xf1, 0xfc, 0x53, 0xb9, 0x2d, 0xc1, 0x81, 0x48, 0xa1, 0xd6, 0x5d, 0xfc, 0x2d, 0x4b, 0x1f, 0xa3, 0xd6, 0x77, 0x28, |