]> git.feebdaed.xyz Git - 0xmirror/openssh-portable.git/commit
upstream: pkcs11_fetch_ecdsa_pubkey: use ASN1_STRING accessors
authortb@openbsd.org <tb@openbsd.org>
Sun, 23 Nov 2025 07:04:18 +0000 (07:04 +0000)
committerDamien Miller <djm@mindrot.org>
Mon, 24 Nov 2025 23:44:06 +0000 (10:44 +1100)
commit2238c48dc90dc56af1d86b298d2cb25fa0c7ef14
tree44a656aad247b2fb597d83d680c79358448484ac
parent643222df689c95efff9e9506b76de458f69dd9c7
upstream: pkcs11_fetch_ecdsa_pubkey: use ASN1_STRING accessors

In anticipation of davidben and beck making ASN1_STRING opaque in
OpenSSL 4 with the aim of enabling surgery to make the X509 data
structure less bad [1], we need to use dumb accessors to avoid build
breakage. Fortunately only in one spot.

This is OpenSSL 1.1 API and available in all members of the fork family.

ok beck djm

[1]: https://github.com/openssl/openssl/issues/29117

OpenBSD-Commit-ID: 0bcaf691d20624ef43f3515c983cd5aa69547d4f
ssh-pkcs11.c