Index: net/third_party/nss/patches/tls12chromium.patch |
diff --git a/net/third_party/nss/patches/tls12chromium.patch b/net/third_party/nss/patches/tls12chromium.patch |
index 14e8bd317eea792684f7143a7045919c74d9849c..b6e168b53ccac25cfa03599be4f3fef01618b250 100644 |
--- a/net/third_party/nss/patches/tls12chromium.patch |
+++ b/net/third_party/nss/patches/tls12chromium.patch |
@@ -1,8 +1,8 @@ |
-diff --git a/ssl/ssl3con.c b/ssl/ssl3con.c |
-index 7c06815..1167d6d 100644 |
---- a/ssl/ssl3con.c |
-+++ b/ssl/ssl3con.c |
-@@ -31,6 +31,15 @@ |
+diff --git a/lib/ssl/ssl3con.c b/lib/ssl/ssl3con.c |
+index ce92cf1..c5cb1eb 100644 |
+--- a/lib/ssl/ssl3con.c |
++++ b/lib/ssl/ssl3con.c |
+@@ -33,6 +33,15 @@ |
#include "blapi.h" |
#endif |
@@ -18,10 +18,10 @@ index 7c06815..1167d6d 100644 |
#include <stdio.h> |
#ifdef NSS_ENABLE_ZLIB |
#include "zlib.h" |
-diff --git a/ssl/ssl3ecc.c b/ssl/ssl3ecc.c |
-index dac7a9e..9b91270 100644 |
---- a/ssl/ssl3ecc.c |
-+++ b/ssl/ssl3ecc.c |
+diff --git a/lib/ssl/ssl3ecc.c b/lib/ssl/ssl3ecc.c |
+index 6d89bbe..cf8e741 100644 |
+--- a/lib/ssl/ssl3ecc.c |
++++ b/lib/ssl/ssl3ecc.c |
@@ -31,6 +31,12 @@ |
#include <stdio.h> |
@@ -35,16 +35,17 @@ index dac7a9e..9b91270 100644 |
#ifndef NSS_DISABLE_ECC |
#ifndef PK11_SETATTRS |
-diff --git a/ssl/sslsock.c b/ssl/sslsock.c |
-index 14ff328..6a6c8d1 100644 |
---- a/ssl/sslsock.c |
-+++ b/ssl/sslsock.c |
-@@ -17,8 +17,15 @@ |
+diff --git a/lib/ssl/sslsock.c b/lib/ssl/sslsock.c |
+index c9a4493..6d700a7 100644 |
+--- a/lib/ssl/sslsock.c |
++++ b/lib/ssl/sslsock.c |
+@@ -17,9 +17,16 @@ |
#ifndef NO_PKCS11_BYPASS |
#include "blapi.h" |
#endif |
+#include "pk11pub.h" |
#include "nss.h" |
+ #include "pk11pqg.h" |
+/* This is a bodge to allow this code to be compiled against older NSS headers |
+ * that don't contain the TLS 1.2 changes. */ |
@@ -55,7 +56,7 @@ index 14ff328..6a6c8d1 100644 |
#define SET_ERROR_CODE /* reminder */ |
static const sslSocketOps ssl_default_ops = { /* No SSL. */ |
-@@ -1878,6 +1885,24 @@ SSL_VersionRangeGet(PRFileDesc *fd, SSLVersionRange *vrange) |
+@@ -2133,6 +2140,24 @@ SSL_VersionRangeGet(PRFileDesc *fd, SSLVersionRange *vrange) |
return SECSuccess; |
} |
@@ -80,7 +81,7 @@ index 14ff328..6a6c8d1 100644 |
SECStatus |
SSL_VersionRangeSet(PRFileDesc *fd, const SSLVersionRange *vrange) |
{ |
-@@ -1898,6 +1923,20 @@ SSL_VersionRangeSet(PRFileDesc *fd, const SSLVersionRange *vrange) |
+@@ -2153,6 +2178,20 @@ SSL_VersionRangeSet(PRFileDesc *fd, const SSLVersionRange *vrange) |
ssl_GetSSL3HandshakeLock(ss); |
ss->vrange = *vrange; |