Files
linux/include/linux/ceph
Ilya Dryomov 18a23fb263 libceph: implement CEPHX_V2 calculation mode
commit cc255c76c7 upstream.

Derive the signature from the entire buffer (both AES cipher blocks)
instead of using just the first half of the first block, leaving out
data_crc entirely.

This addresses CVE-2018-1129.

Link: http://tracker.ceph.com/issues/24837
Signed-off-by: Ilya Dryomov <idryomov@gmail.com>
Reviewed-by: Sage Weil <sage@redhat.com>
[bwh: Backported to 4.9:
 - Define and test the feature bit in the old way
 - Don't change any other feature bits in ceph_features.h]
Signed-off-by: Ben Hutchings <ben.hutchings@codethink.co.uk>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
2018-12-08 13:05:10 +01:00
..
2018-12-08 13:05:10 +01:00
2014-12-17 20:09:50 +03:00
2018-11-21 09:25:59 +01:00
2018-12-08 13:05:10 +01:00
2016-07-28 02:55:35 +02:00
2018-12-08 13:05:10 +01:00
2016-05-26 01:15:28 +02:00