Skip to content

linuxkm ecdh: force zero shared secret buffer, and clear old key.#8685

Merged
douzzer merged 1 commit intowolfSSL:masterfrom
philljj:linuxkm_ecdh_forcezero
Apr 17, 2025
Merged

linuxkm ecdh: force zero shared secret buffer, and clear old key.#8685
douzzer merged 1 commit intowolfSSL:masterfrom
philljj:linuxkm_ecdh_forcezero

Conversation

@philljj
Copy link
Copy Markdown
Contributor

@philljj philljj commented Apr 17, 2025

Description

  • ForceZero shared_secret buffer in km_ecdh_compute_shared_secret().
  • clear previously set key in km_ecdh_set_secret().

Testing

  • linuxkm-noasm-insmod-kmemleak
  • linuxkm-noasm-ksanitize-insmod

@philljj philljj self-assigned this Apr 17, 2025
@philljj philljj added the For This Release Release version 5.9.1 label Apr 17, 2025
@philljj
Copy link
Copy Markdown
Contributor Author

philljj commented Apr 17, 2025

retest this please

@philljj philljj requested a review from douzzer April 17, 2025 13:17
@philljj philljj assigned douzzer and unassigned philljj Apr 17, 2025
@douzzer douzzer merged commit 28091e8 into wolfSSL:master Apr 17, 2025
186 checks passed
@philljj philljj deleted the linuxkm_ecdh_forcezero branch April 17, 2025 16:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

For This Release Release version 5.9.1

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants