crypto: ccree - fix AEAD decrypt auth fail
On AEAD decryption authentication failure we are suppose to zero out the output plaintext buffer. However, we've missed skipping the optional associated data that may prefix the ciphertext. This commit fixes this issue. Signed-off-by: Gilad Ben-Yossef <gilad@benyossef.com> Fixes: e88b27c8eaa8 ("crypto: ccree - use std api sg_zero_buffer") Cc: stable@vger.kernel.org Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
This commit is contained in:
parent
684cf266eb
commit
2a6bc713f1
@ -237,7 +237,7 @@ static void cc_aead_complete(struct device *dev, void *cc_req, int err)
|
||||
* revealed the decrypted message --> zero its memory.
|
||||
*/
|
||||
sg_zero_buffer(areq->dst, sg_nents(areq->dst),
|
||||
areq->cryptlen, 0);
|
||||
areq->cryptlen, areq->assoclen);
|
||||
err = -EBADMSG;
|
||||
}
|
||||
/*ENCRYPT*/
|
||||
|
Loading…
x
Reference in New Issue
Block a user