From f34cf855343a106515274ea416cc73f1be0fb1bb Mon Sep 17 00:00:00 2001
From: Paul Bakker
Date: Tue, 10 Apr 2012 07:48:40 +0000
Subject: [PATCH] - Fixed too restrictive test
---
library/ssl_tls.c | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/library/ssl_tls.c b/library/ssl_tls.c
index 64012e54f8..5a81f8b23a 100644
--- a/library/ssl_tls.c
+++ b/library/ssl_tls.c
@@ -880,7 +880,7 @@ static int ssl_decrypt_buf( ssl_context *ssl )
/*
* Always compute the MAC (RFC4346, CBCTIME).
*/
- if( ssl->in_msglen <= ssl->maclen + padlen )
+ if( ssl->in_msglen < ssl->maclen + padlen )
{
SSL_DEBUG_MSG( 1, ( "msglen (%d) < maclen (%d) + padlen (%d)",
ssl->in_msglen, ssl->maclen, padlen ) );