Harden check for valid SSL SNI hostname

This commit is contained in:
Jamie Cameron
2026-05-13 20:56:18 -07:00
parent 236c5cf489
commit 96dd0ef65d

View File

@@ -2594,7 +2594,8 @@ if (&get_type($full) eq "internal/cgi" && $validated != 4) {
if ($use_ssl) {
$ENV{"SSL_CN"} = $ssl_cn;
$ENV{"SSL_CN_CERT"} =
&ssl_hostname_match($header{'host'}, $ssl_alts);
&ssl_hostname_match($header{'host'}, $ssl_alts) &&
&ssl_hostname_match($ssl_cn, $ssl_alts);
}
$ENV{"MINISERV_PID"} = $miniserv_main_pid;
if ($use_ssl) {