From 6a57e676299d76f0f0189b0792b603abd74be01e Mon Sep 17 00:00:00 2001 From: Pol Henarejos Date: Tue, 6 Dec 2022 20:04:18 +0100 Subject: [PATCH] Fix importing dkek twice. It is not allowed anymore. Signed-off-by: Pol Henarejos --- src/hsm/cmd_key_domain.c | 3 +++ 1 file changed, 3 insertions(+) diff --git a/src/hsm/cmd_key_domain.c b/src/hsm/cmd_key_domain.c index 58be42c..d06eb73 100644 --- a/src/hsm/cmd_key_domain.c +++ b/src/hsm/cmd_key_domain.c @@ -51,6 +51,9 @@ int cmd_key_domain() { return SW_MEMORY_FAILURE(); if (apdu.nc < 32) return SW_WRONG_LENGTH(); + if (current_dkeks == dkeks) { + return SW_COMMAND_NOT_ALLOWED(); + } import_dkek_share(p2, apdu.data); if (++current_dkeks >= dkeks) { if (save_dkek_key(p2, NULL) != CCID_OK)