Blame SOURCES/httpd-2.4.18-CVE-2016-4979.patch

f5da3f
# ./pullrev.sh 1750808
f5da3f
http://svn.apache.org/viewvc?view=revision&revision=1750808
f5da3f
f5da3f
--- httpd-2.4.18/modules/ssl/ssl_engine_kernel.c
f5da3f
+++ httpd-2.4.18/modules/ssl/ssl_engine_kernel.c
f5da3f
@@ -727,6 +727,7 @@
f5da3f
                      * on this connection.
f5da3f
                      */
f5da3f
                     apr_table_setn(r->notes, "ssl-renegotiate-forbidden", "verify-client");
f5da3f
+                    SSL_set_verify(ssl, verify_old, ssl_callback_SSLVerify);
f5da3f
                     return HTTP_FORBIDDEN;
f5da3f
                 }
f5da3f
                 /* optimization */