Remove redundant length-0 checks for incoming unprotected records

This commit is contained in:
Hanno Becker 2019-07-09 17:27:32 +01:00
parent 31c3b14e37
commit 3be264e2c3

View file

@ -5027,8 +5027,7 @@ static int ssl_parse_record_header( mbedtls_ssl_context *ssl )
/* Check length against bounds of the current transform and version */ /* Check length against bounds of the current transform and version */
if( ssl->transform_in == NULL ) if( ssl->transform_in == NULL )
{ {
if( ssl->in_msglen < 1 || if( ssl->in_msglen > MBEDTLS_SSL_IN_CONTENT_LEN )
ssl->in_msglen > MBEDTLS_SSL_IN_CONTENT_LEN )
{ {
MBEDTLS_SSL_DEBUG_MSG( 1, ( "bad message length" ) ); MBEDTLS_SSL_DEBUG_MSG( 1, ( "bad message length" ) );
return( MBEDTLS_ERR_SSL_INVALID_RECORD ); return( MBEDTLS_ERR_SSL_INVALID_RECORD );