libkcapi/008-CVE-2026-71225.patch
Zoltan Fridrich 9265442016 Fix CVE-2026-71225
Fix IV reuse in libkcapi one-shot symmetric cipher chunking

Resolves: RHEL-224697

Signed-off-by: Zoltan Fridrich <zfridric@redhat.com>
2026-08-18 12:50:09 +02:00

21 lines
646 B
Diff

diff --git a/lib/kcapi-kernel-if.c b/lib/kcapi-kernel-if.c
index a54cdaa..859ecdf 100644
--- a/lib/kcapi-kernel-if.c
+++ b/lib/kcapi-kernel-if.c
@@ -1387,6 +1387,15 @@ ssize_t _kcapi_cipher_crypt_chunk(struct kcapi_handle *handle,
inlen -= inprocess;
out += ret;
outlen -= (uint32_t)ret;
+
+ /*
+ * Clear the IV so subsequent chunks do not override the
+ * kernel's chained IV via ALG_SET_IV. The kernel updates
+ * its internal IV after each operation; by not sending
+ * ALG_SET_IV for later chunks, the next chunk continues
+ * where the previous one left off.
+ */
+ handle->cipher.iv = NULL;
}
return totallen;