From: Tudor Ambarus Date: Tue, 20 Jul 2021 08:55:32 +0000 (+0300) Subject: crypto: atmel-tdes - Add FIPS81's zero length cryptlen constraint X-Git-Url: http://git.maquefel.me/?a=commitdiff_plain;h=031f5e00150895232e658f67e66382b6c867ba13;p=linux.git crypto: atmel-tdes - Add FIPS81's zero length cryptlen constraint FIPS81 requires for the ECB, CBC, CFB, and OFB modes that the plaintext and ciphertext to have a positive integer length. Add this constraint and just return 0 for a zero length cryptlen. Signed-off-by: Tudor Ambarus Signed-off-by: Herbert Xu --- diff --git a/drivers/crypto/atmel-tdes.c b/drivers/crypto/atmel-tdes.c index abbf1b7a75ab4..8380e0ab149aa 100644 --- a/drivers/crypto/atmel-tdes.c +++ b/drivers/crypto/atmel-tdes.c @@ -682,6 +682,9 @@ static int atmel_tdes_crypt(struct skcipher_request *req, unsigned long mode) struct atmel_tdes_reqctx *rctx = skcipher_request_ctx(req); struct device *dev = ctx->dd->dev; + if (!req->cryptlen) + return 0; + switch (mode & TDES_FLAGS_OPMODE_MASK) { case TDES_FLAGS_CFB8: if (!IS_ALIGNED(req->cryptlen, CFB8_BLOCK_SIZE)) {