Use correct port when redirected

If server redirects from http to https, libfetch detects this, but
wrongly uses the old url scheme to determine the port. This subsequently
leads to the following OpenSSL error:

139741541575496:error:1408F10B:SSL routines:ssl3_get_record:wrong version number:ssl/record/ssl3_record.c:331:

Using the new scheme fixes this.  This error message comes from trying
to connect to port 80 with TLS, it can also be observed by issuing
  $ openssl s_client -connect alpinelinux.org:80

This bug was introduced in commit:
7158474 libfetch: keep http auth only if redirect is for the same host
cute-signatures
Martin Vahlensieck 2021-03-12 17:08:15 +01:00 committed by Timo Teräs
parent 361eb063c6
commit 8e993fe969
1 changed files with 1 additions and 1 deletions

View File

@ -1065,7 +1065,7 @@ http_request(struct url *URL, const char *op, struct url_stat *us,
goto ouch; goto ouch;
} }
if (!new->port) if (!new->port)
new->port = fetch_default_port(url->scheme); new->port = fetch_default_port(new->scheme);
if (!new->user[0] && !new->pwd[0] && if (!new->user[0] && !new->pwd[0] &&
new->port == url->port && new->port == url->port &&
strcmp(new->scheme, url->scheme) == 0 && strcmp(new->scheme, url->scheme) == 0 &&