crypto: aead,cipher - zeroize key buffer after use
authorHailey Mothershead <hailmo@amazon.com>
Mon, 15 Apr 2024 22:19:15 +0000 (22:19 +0000)
committerHerbert Xu <herbert@gondor.apana.org.au>
Fri, 26 Apr 2024 09:26:09 +0000 (17:26 +0800)
commit23e4099bdc3c8381992f9eb975c79196d6755210
tree8dd796204b3ab2ac7637559cc89fbeb51b1bebe9
parent571e557cbaf748124aaf0f0ac26772d7380e78fc
crypto: aead,cipher - zeroize key buffer after use

I.G 9.7.B for FIPS 140-3 specifies that variables temporarily holding
cryptographic information should be zeroized once they are no longer
needed. Accomplish this by using kfree_sensitive for buffers that
previously held the private key.

Signed-off-by: Hailey Mothershead <hailmo@amazon.com>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
crypto/aead.c
crypto/cipher.c