In the Linux kernel, the following vulnerability has been resolved:
crypto: algif_aead - Revert to operating out-of-place
This mostly reverts commit 72548b093ee3 except for the copying of
the associated data.
There is no benefit in operating in-place in algif_aead since the
source and destination come from different mappings. Get rid of
all the complexity added for in-place operation and just copy the
AD directly.
Affected Platforms (CPE)
π»
Linux
Linux Kernel
>= 4.14 and < 5.10.254>= 5.11 and < 5.15.204>= 5.16 and < 6.1.170>= 6.2 and < 6.6.137>= 6.7 and < 6.12.85>= 6.13 and < 6.18.22>= 6.19 and < 6.19.12= 7.0
π¦
Redhat
Openshift Container Platform
>= 4.12 and < 4.12.89>= 4.13 and < 4.13.66>= 4.14 and < 4.14.65>= 4.15 and < 4.15.64>= 4.16 and < 4.16.61>= 4.17 and < 4.17.53>= 4.18 and < 4.18.40>= 4.19 and < 4.19.30>= 4.20 and < 4.20.21>= 4.21 and < 4.21.14= 4.0