1. 01 8月, 2012 1 次提交
  2. 16 2月, 2010 1 次提交
  3. 24 7月, 2009 1 次提交
    • P
      crypto: aes - Undefined behaviour in crypto_aes_expand_key · 7b4ffcf9
      Phil Carmody 提交于
      It's undefined behaviour in C to write outside the bounds of an array.
      The key expansion routine takes a shortcut of creating 8 words at a
      time, but this creates 4 additional words which don't fit in the array.
      
      As everyone is hopefully now aware, GCC is at liberty to make any
      assumptions and optimisations it likes in situations where it can
      detect that UB has occured, up to and including nasal demons, and
      as the indices being accessed in the array are trivially calculable,
      it's rash to invite gcc to do take any liberties at all.
      Signed-off-by: NPhil Carmody <ext-phil.2.carmody@nokia.com>
      Signed-off-by: NHerbert Xu <herbert@gondor.apana.org.au>
      7b4ffcf9
  4. 25 12月, 2008 1 次提交
    • H
      crypto: aes - Precompute tables · 0ee4a969
      Herbert Xu 提交于
      The tables used by the various AES algorithms are currently
      computed at run-time.  This has created an init ordering problem
      because some AES algorithms may be registered before the tables
      have been initialised.
      
      This patch gets around this whole thing by precomputing the tables.
      Signed-off-by: NHerbert Xu <herbert@gondor.apana.org.au>
      0ee4a969
  5. 21 4月, 2008 1 次提交
  6. 11 1月, 2008 3 次提交
  7. 11 10月, 2007 1 次提交
  8. 21 9月, 2006 1 次提交
    • H
      [CRYPTO] api: Get rid of flags argument to setkey · 560c06ae
      Herbert Xu 提交于
      Now that the tfm is passed directly to setkey instead of the ctx, we no
      longer need to pass the &tfm->crt_flags pointer.
      
      This patch also gets rid of a few unnecessary checks on the key length
      for ciphers as the cipher layer guarantees that the key length is within
      the bounds specified by the algorithm.
      
      Rather than testing dia_setkey every time, this patch does it only once
      during crypto_alloc_tfm.  The redundant check from crypto_digest_setkey
      is also removed.
      Signed-off-by: NHerbert Xu <herbert@gondor.apana.org.au>
      560c06ae
  9. 26 6月, 2006 1 次提交
    • H
      [CRYPTO] all: Pass tfm instead of ctx to algorithms · 6c2bb98b
      Herbert Xu 提交于
      Up until now algorithms have been happy to get a context pointer since
      they know everything that's in the tfm already (e.g., alignment, block
      size).
      
      However, once we have parameterised algorithms, such information will
      be specific to each tfm.  So the algorithm API needs to be changed to
      pass the tfm structure instead of the context pointer.
      
      This patch is basically a text substitution.  The only tricky bit is
      the assembly routines that need to get the context pointer offset
      through asm-offsets.h.
      Signed-off-by: NHerbert Xu <herbert@gondor.apana.org.au>
      6c2bb98b
  10. 21 3月, 2006 1 次提交
    • D
      [CRYPTO] aes: Fixed array boundary violation · 55e9dce3
      David McCullough 提交于
      The AES setkey routine writes 64 bytes to the E_KEY area even though
      there are only 60 bytes there.  It is in fact safe since E_KEY is
      immediately follwed by D_KEY which is initialised afterwards.  However,
      doing this may trigger undefined behaviour and makes Coverity unhappy.
      
      So by combining E_KEY and D_KEY into one array we sidestep this issue
      altogether.
      
      This problem was reported by Adrian Bunk.
      Signed-off-by: NHerbert Xu <herbert@gondor.apana.org.au>
      55e9dce3
  11. 10 1月, 2006 3 次提交
  12. 28 7月, 2005 1 次提交
  13. 17 4月, 2005 1 次提交
    • L
      Linux-2.6.12-rc2 · 1da177e4
      Linus Torvalds 提交于
      Initial git repository build. I'm not bothering with the full history,
      even though we have it. We can create a separate "historical" git
      archive of that later if we want to, and in the meantime it's about
      3.2GB when imported into git - space that would just make the early
      git days unnecessarily complicated, when we don't have a lot of good
      infrastructure for it.
      
      Let it rip!
      1da177e4