From f206c1493b2aac55c2b601029dae729dc8532874 Mon Sep 17 00:00:00 2001 From: Yanray Wang Date: Fri, 3 Feb 2023 13:51:59 +0800 Subject: [PATCH] Remove duplicate mbedtls_platform_zeroize for tls13_early_secrets Signed-off-by: Yanray Wang --- library/ssl_tls13_keys.c | 4 ---- 1 file changed, 4 deletions(-) diff --git a/library/ssl_tls13_keys.c b/library/ssl_tls13_keys.c index c951a36b2e..10effa285f 100644 --- a/library/ssl_tls13_keys.c +++ b/library/ssl_tls13_keys.c @@ -1178,10 +1178,6 @@ static int ssl_tls13_generate_early_key(mbedtls_ssl_context *ssl, traffic_keys->key_len = key_len; traffic_keys->iv_len = iv_len; - /* Erase early secrets */ - mbedtls_platform_zeroize( - &tls13_early_secrets, sizeof(mbedtls_ssl_tls13_early_secrets)); - MBEDTLS_SSL_DEBUG_BUF(4, "client early write_key", traffic_keys->client_write_key, traffic_keys->key_len);