+1
−2
+1
−2
Loading
mainline inclusion from mainline-v6.10-rc1 commit 23e4099bdc3c8381992f9eb975c79196d6755210 category: bugfix bugzilla: https://gitee.com/src-openeuler/kernel/issues/IAHJG9 CVE: CVE-2024-42229 Reference: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=23e4099bdc3c8381992f9eb975c79196d6755210 -------------------------------- I.G 9.7.B for FIPS 140-3 specifies that variables temporarily holding cryptographic information should be zeroized once they are no longer needed. Accomplish this by using kfree_sensitive for buffers that previously held the private key. Signed-off-by:Hailey Mothershead <hailmo@amazon.com> Signed-off-by:
Herbert Xu <herbert@gondor.apana.org.au> Conflicts: crypto/aead.c crypto/cipher.c [Use kzfree instead of kfree_sensitive because commit 453431a5 ("mm, treewide: rename kzfree() to kfree_sensitive()") not merged] Signed-off-by:
Yi Yang <yiyang13@huawei.com>