We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 6f8fa90 commit 15efa42Copy full SHA for 15efa42
conn.go
@@ -762,7 +762,7 @@ func (c *Conn) readRecordOrCCS(expectChangeCipherSpec bool) error {
762
// 5, a server can send a ChangeCipherSpec before its ServerHello, when
763
// c.vers is still unset. That's not useful though and suspicious if the
764
// server then selects a lower protocol version, so don't allow that.
765
- if c.vers == VersionTLS13 {
+ if c.vers == VersionTLS13 && !handshakeComplete {
766
return c.retryReadRecord(expectChangeCipherSpec)
767
}
768
if !expectChangeCipherSpec {
0 commit comments