crypto: caam - guard HMAC key hex dumps in hash_digest_key
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.1%
exploitation probability
0.1%top 98% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
crypto: caam - guard HMAC key hex dumps in hash_digest_key
Use print_hex_dump_devel() for dumping sensitive HMAC key bytes in
hash_digest_key() to avoid leaking secrets at runtime when
CONFIG_DYNAMIC_DEBUG is enabled.
Affected products
Linux · LinuxReferences
https://git.kernel.org/stable/c/177730a273b18e195263ed953853273e901b5064https://git.kernel.org/stable/c/2adbfca7452eeac45117b8e803288a2767f7075fhttps://git.kernel.org/stable/c/5cffe3c136891aa4d579bf5c079a68f7cb371b0chttps://git.kernel.org/stable/c/a9207798fe619cbc85c8744a9b9e2af1db2b6e1ahttps://git.kernel.org/stable/c/b8f12d9b00c1950779e5679b9c13908584682bb6https://git.kernel.org/stable/c/c7e52fe3f7901ccb9cd29b3f7c683d809ba87e48https://git.kernel.org/stable/c/cd849c07b8d706425e60a4dfcef54b7b67c967cehttps://git.kernel.org/stable/c/e8e72fdf47bd5ef7abe642b034c6178a61a8580a