CVSROOT: /cvs Module name: src Changes by: [email protected] 2026/01/27 07:14:20
Modified files:
lib/libcrypto/pkcs12: p12_kiss.c
Log message:
Avoid type confusion in PKCS#12 parsing
A type confusion can lead to a 1-byte read at address 0x00-0xff, so a
crash.
Reported by Luigino Camastra, fix by Bob Beck, via OpenSSL, CVE 2025-22795
ok jsing
