Blame SOURCES/openssl-1.0.1e-cve-2014-3567.patch

170643
diff -up openssl-1.0.1e/ssl/t1_lib.c.ticket-leak openssl-1.0.1e/ssl/t1_lib.c
170643
--- openssl-1.0.1e/ssl/t1_lib.c.ticket-leak	2014-10-15 13:19:26.825454374 +0200
170643
+++ openssl-1.0.1e/ssl/t1_lib.c	2014-10-15 13:19:59.955202293 +0200
170643
@@ -2280,7 +2280,10 @@ static int tls_decrypt_ticket(SSL *s, co
170643
 	HMAC_Final(&hctx, tick_hmac, NULL);
170643
 	HMAC_CTX_cleanup(&hctx);
170643
 	if (CRYPTO_memcmp(tick_hmac, etick + eticklen, mlen))
170643
+		{
170643
+		EVP_CIPHER_CTX_cleanup(&ctx;;
170643
 		return 2;
170643
+		}
170643
 	/* Attempt to decrypt session data */
170643
 	/* Move p after IV to start of encrypted ticket, update length */
170643
 	p = etick + 16 + EVP_CIPHER_CTX_iv_length(&ctx;;