s390/pkey: Wipe copies of protected- and secure-keys
authorHolger Dengler <dengler@linux.ibm.com>
Tue, 7 May 2024 15:03:20 +0000 (17:03 +0200)
committerAlexander Gordeev <agordeev@linux.ibm.com>
Tue, 14 May 2024 18:16:34 +0000 (20:16 +0200)
commitf2ebdadd85af4f4d0cae1e5d009c70eccc78c207
tree0ee5398366e62a4b228715f2829d48aa573b948e
parentd65d76a44ffe74c73298ada25b0f578680576073
s390/pkey: Wipe copies of protected- and secure-keys

Although the clear-key of neither protected- nor secure-keys is
accessible, this key material should only be visible to the calling
process. So wipe all copies of protected- or secure-keys from stack,
even in case of an error.

Reviewed-by: Harald Freudenberger <freude@linux.ibm.com>
Reviewed-by: Ingo Franzki <ifranzki@linux.ibm.com>
Acked-by: Heiko Carstens <hca@linux.ibm.com>
Signed-off-by: Holger Dengler <dengler@linux.ibm.com>
Signed-off-by: Alexander Gordeev <agordeev@linux.ibm.com>
drivers/s390/crypto/pkey_api.c