From eaef83249412ce65c358d6612e9a9ccd66e94939 Mon Sep 17 00:00:00 2001 From: Juliusz Sosinowicz Date: Fri, 6 Mar 2026 08:55:34 +0100 Subject: [PATCH] Use ConstantCompare in EchCheckAcceptance F-357 --- src/tls13.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/tls13.c b/src/tls13.c index db5659cd052..0c3b20affeb 100644 --- a/src/tls13.c +++ b/src/tls13.c @@ -4945,7 +4945,7 @@ static int EchCheckAcceptance(WOLFSSL* ssl, byte* label, word16 labelSz, } if (ret == 0) { /* last 8 bytes should match our expand output */ - ret = XMEMCMP(acceptConfirmation, input + acceptOffset, + ret = ConstantCompare(acceptConfirmation, input + acceptOffset, ECH_ACCEPT_CONFIRMATION_SZ); /* ech accepted */ if (ret == 0) {