提交 c844eb46 编写于 作者: S Sabrina Dubroca 提交者: David S. Miller

tls: clear key material from kernel memory when do_tls_setsockopt_conf fails

Fixes: 3c4d7559 ("tls: kernel TLS support")
Signed-off-by: NSabrina Dubroca <sd@queasysnail.net>
Signed-off-by: NSabrina Dubroca <sd@queasysnail.net>
Signed-off-by: NDavid S. Miller <davem@davemloft.net>
上级 86029d10
......@@ -509,7 +509,7 @@ static int do_tls_setsockopt_conf(struct sock *sk, char __user *optval,
goto out;
err_crypto_info:
memset(crypto_info, 0, sizeof(*crypto_info));
memzero_explicit(crypto_info, sizeof(union tls_crypto_context));
out:
return rc;
}
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册