diff --git a/src/tls.c b/src/tls.c index ceaf747db..eea75ae5f 100644 --- a/src/tls.c +++ b/src/tls.c @@ -9789,6 +9789,7 @@ int TLSX_Parse(WOLFSSL* ssl, byte* input, word16 length, byte msgType, #ifdef WOLFSSL_TLS13 if (IsAtLeastTLSv1_3(ssl->ctx->method->version) && msgType != client_hello && + msgType != server_hello && msgType != encrypted_extensions) { return EXT_NOT_ALLOWED; }