Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1482170

Re: Kernel panic - encryption/decryption failed when open file on Arm64

From Herbert Xu <herbert@gondor.apana.org.au>
Newsgroups linux.kernel
Subject Re: Kernel panic - encryption/decryption failed when open file on Arm64
Date 2016-09-13 08:50 +0200
Message-ID <sgPHz-6Bw-5@gated-at.bofh.it> (permalink)
References (2 earlier) <sfrei-1AG-41@gated-at.bofh.it> <sfrnY-1F2-3@gated-at.bofh.it> <sfrHj-1Mf-5@gated-at.bofh.it> <sgp0J-5JZ-1@gated-at.bofh.it> <sgDwL-6qC-61@gated-at.bofh.it>
Organization linux.* mail to news gateway

Show all headers | View raw


On Mon, Sep 12, 2016 at 06:40:15PM +0100, Ard Biesheuvel wrote:
>
> So to me, it seems like we should be taking the blkcipher_next_slow()
> path, which does a kmalloc() and bails with -ENOMEM if that fails.

Indeed.  This was broken a long time ago.  It does seem to be
fixed in the new skcipher_walk code but here is a patch to fix
it for older kernels.

---8<---
Subject: crypto: skcipher - Fix blkcipher walk OOM crash

When we need to allocate a temporary blkcipher_walk_next and it
fails, the code is supposed to take the slow path of processing
the data block by block.  However, due to an unrelated change
we instead end up dereferencing the NULL pointer.

This patch fixes it by moving the unrelated bsize setting out
of the way so that we enter the slow path as inteded.

Fixes: 7607bd8ff03b ("[CRYPTO] blkcipher: Added blkcipher_walk_virt_block")
Cc: stable@vger.kernel.org
Reported-by: xiakaixu <xiakaixu@huawei.com>
Reported-by: Ard Biesheuvel <ard.biesheuvel@linaro.org>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>

diff --git a/crypto/blkcipher.c b/crypto/blkcipher.c
index 3699995..a832426 100644
--- a/crypto/blkcipher.c
+++ b/crypto/blkcipher.c
@@ -233,6 +233,8 @@ static int blkcipher_walk_next(struct blkcipher_desc *desc,
 		return blkcipher_walk_done(desc, walk, -EINVAL);
 	}
 
+	bsize = min(walk->walk_blocksize, n);
+
 	walk->flags &= ~(BLKCIPHER_WALK_SLOW | BLKCIPHER_WALK_COPY |
 			 BLKCIPHER_WALK_DIFF);
 	if (!scatterwalk_aligned(&walk->in, walk->alignmask) ||
@@ -245,7 +247,6 @@ static int blkcipher_walk_next(struct blkcipher_desc *desc,
 		}
 	}
 
-	bsize = min(walk->walk_blocksize, n);
 	n = scatterwalk_clamp(&walk->in, n);
 	n = scatterwalk_clamp(&walk->out, n);
 
-- 
Email: Herbert Xu <herbert@gondor.apana.org.au>
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt

Back to linux.kernel | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

RE: Kernel panic - encryption/decryption failed when open file on  Arm64 liushuoran <liushuoran@huawei.com> - 2016-09-12 04:20 +0200
  Re: Kernel panic - encryption/decryption failed when open file on Arm64 Ard Biesheuvel <ard.biesheuvel@linaro.org> - 2016-09-12 19:50 +0200
    Re: Kernel panic - encryption/decryption failed when open file on  Arm64 xiakaixu <xiakaixu@huawei.com> - 2016-09-13 04:10 +0200
    Re: Kernel panic - encryption/decryption failed when open file on  Arm64 Herbert Xu <herbert@gondor.apana.org.au> - 2016-09-13 08:50 +0200
      Re: Kernel panic - encryption/decryption failed when open file on Arm64 Ard Biesheuvel <ard.biesheuvel@linaro.org> - 2016-09-13 10:00 +0200

csiph-web