CVE-2024-42155 Information

Description

In the Linux kernel the following vulnerability has been resolved:

s390/pkey: Wipe copies of protected- and secure-keys

Although the clear-key of neither protected- nor secure-keys is accessible this key material should only be visible to the calling process. So wipe all copies of protected- or secure-keys from stack even in case of an error.

Reference

https://git.kernel.org/stable/c/c746f7ced4ad88ee48d0b6c92710e4674403185b https://git.kernel.org/stable/c/f2ebdadd85af4f4d0cae1e5d009c70eccc78c207

Share on: