Hi, Antoine,

On 02/23/2018 02:37 PM, Antoine Tenart wrote:
Hi Tudor,

On Fri, Feb 23, 2018 at 02:04:33PM +0200, Tudor Ambarus wrote:

There are few other places in crypto where we extract the authenc keys
in the same type of local variable, struct crypto_authenc_keys keys, and
we don't zeroize it after use. I think we should fix those cases too.

You're right, I spotted other places where keys weren't zeroed. I
haven't got the time to do anything about it so far :)


Will you send a patch to fix those cases? We will forget about it.
I can do it myself, but it's better to ask first.

best,
ta

Reply via email to