From 15f30b9bc7f07e228ac5e78a0bdcf97b084f386f Mon Sep 17 00:00:00 2001 From: Ashish Sharma Date: Tue, 30 Jun 2026 14:26:19 +0800 Subject: [PATCH] fix(esp-tls): guard against NULL PSK hint to prevent crash --- components/esp-tls/esp_tls_mbedtls.c | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/components/esp-tls/esp_tls_mbedtls.c b/components/esp-tls/esp_tls_mbedtls.c index fdf40f96007..57a47455455 100644 --- a/components/esp-tls/esp_tls_mbedtls.c +++ b/components/esp-tls/esp_tls_mbedtls.c @@ -1,5 +1,5 @@ /* - * SPDX-FileCopyrightText: 2019-2025 Espressif Systems (Shanghai) CO LTD + * SPDX-FileCopyrightText: 2019-2026 Espressif Systems (Shanghai) CO LTD * * SPDX-License-Identifier: Apache-2.0 */ @@ -805,6 +805,10 @@ esp_err_t set_client_config(const char *hostname, size_t hostlen, esp_tls_cfg_t // // PSK encryption mode is configured only if no certificate supplied and psk pointer not null ESP_LOGD(TAG, "ssl psk authentication"); + if (cfg->psk_hint_key->hint == NULL) { + ESP_LOGE(TAG, "Failed to use psk_hint_key"); + return ESP_ERR_MBEDTLS_SSL_CONF_PSK_FAILED; + } ret = mbedtls_ssl_conf_psk(&tls->conf, cfg->psk_hint_key->key, cfg->psk_hint_key->key_size, (const unsigned char *)cfg->psk_hint_key->hint, strlen(cfg->psk_hint_key->hint)); if (ret != 0) {