From d36f7a2b99edc3c3fb3ab12230d225e1dff017ec Mon Sep 17 00:00:00 2001 From: JacobBarthelmeh Date: Fri, 13 Mar 2026 15:32:46 -0600 Subject: [PATCH] fix to sanity check on importing raw session key info --- src/internal.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/internal.c b/src/internal.c index 6c5a70ecc9..7897a294bf 100644 --- a/src/internal.c +++ b/src/internal.c @@ -1169,7 +1169,7 @@ static int ImportKeyState(WOLFSSL* ssl, const byte* exp, word32 len, byte ver, XMEMCPY(keys->server_write_MAC_secret, exp + idx, sz); idx += sz; } #else - if (sz + idx > len) { + if ((sz * 2) + idx > len) { return BUFFER_E; } idx += sz; idx += sz;