From 90aea8e2a907fd71d188f9487adbe12ef51a007a Mon Sep 17 00:00:00 2001 From: Daniel Stenberg Date: Tue, 11 Apr 2023 14:40:46 +0200 Subject: [PATCH] schannel: add clarifying comment Explaining how the PVS warning in #10929 is wrong: Dereferencing of the null pointer 'backend->cred' might take place. Closes #10931 --- lib/vtls/schannel.c | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/lib/vtls/schannel.c b/lib/vtls/schannel.c index 6f94c7e349..430a41c13d 100644 --- a/lib/vtls/schannel.c +++ b/lib/vtls/schannel.c @@ -1171,9 +1171,11 @@ schannel_connect_step1(struct Curl_cfilter *cf, struct Curl_easy *data) if(!backend->cred) { char *snihost; result = schannel_acquire_credential_handle(cf, data); - if(result != CURLE_OK) { + if(result) return result; - } + /* schannel_acquire_credential_handle() sets backend->cred accordingly or + it returns error otherwise. */ + /* A hostname associated with the credential is needed by InitializeSecurityContext for SNI and other reasons. */ snihost = Curl_ssl_snihost(data, hostname, NULL);