On Fri, Feb 23, 2018 at 02:04:33PM +0200, Tudor Ambarus wrote:
> There are few other places in crypto where we extract the authenc keys
> in the same type of local variable, struct crypto_authenc_keys keys, and
> we don't zeroize it after use. I think we should fix those cases too.
You're right, I spotted other places where keys weren't zeroed. I
haven't got the time to do anything about it so far :)
Antoine Ténart, Bootlin (formerly Free Electrons)
Embedded Linux and Kernel engineering