mirror of
git://git.gnupg.org/gnupg.git
synced 2025-07-02 22:46:30 +02:00
gpg: More check for symmetric key encryption.
* g10/dek.h (DEK): Use debugger friendly type of unsigned int. * g10/mainproc.c (symkey_decrypt_seskey): Add another check. Signed-off-by: NIIBE Yutaka <gniibe@fsij.org>
This commit is contained in:
parent
4195ce15f4
commit
44be675b75
2 changed files with 5 additions and 4 deletions
|
@ -325,7 +325,8 @@ symkey_decrypt_seskey (DEK *dek, byte *seskey, size_t slen)
|
|||
* the gnupg < 2.2 bug compatible case which would terminate the
|
||||
* process on GPG_ERR_CIPHER_ALGO. Note that with AEAD (above)
|
||||
* we will have a reliable test here. */
|
||||
if (openpgp_cipher_test_algo (seskey[0]))
|
||||
if (openpgp_cipher_test_algo (seskey[0])
|
||||
|| openpgp_cipher_get_algo_keylen (seskey[0]) != slen - 1)
|
||||
{
|
||||
err = gpg_error (GPG_ERR_CHECKSUM);
|
||||
goto leave;
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue