Thread (3 messages) 3 messages, 3 authors, 2024-07-12

Re: [PATCH] crypto: mxs-dcp: Ensure payload is zero when using key slot

From: Herbert Xu <herbert@gondor.apana.org.au>
Date: 2024-07-12 23:56:30
Also in: imx, linux-crypto, lkml

On Wed, Jul 03, 2024 at 02:49:58PM +0200, David Gstir wrote:
We could leak stack memory through the payload field when running
AES with a key from one of the hardware's key slots. Fix this by
ensuring the payload field is set to 0 in such cases.

This does not affect the common use case when the key is supplied
from main memory via the descriptor payload.

Signed-off-by: David Gstir <david@sigma-star.at>
Reported-by: kernel test robot <redacted>
Reported-by: Dan Carpenter <redacted>
Closes: https://lore.kernel.org/r/202405270146.Y9tPoil8-lkp@intel.com/ (local)
Fixes: 3d16af0b4cfa ("crypto: mxs-dcp: Add support for hardware-bound keys")
---
 drivers/crypto/mxs-dcp.c | 3 ++-
 1 file changed, 2 insertions(+), 1 deletion(-)
Patch applied.  Thanks.
-- 
Email: Herbert Xu [off-list ref]
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help