-

CVE-2026-43077

crypto: algif_aead - Fix minimum RX size check for decryption

In the Linux kernel, the following vulnerability has been resolved:

crypto: algif_aead - Fix minimum RX size check for decryption

The check for the minimum receive buffer size did not take the
tag size into account during decryption.  Fix this by adding the
required extra length.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < 74a66fdb5282d89e348b00c42cfca3a936946d94
Status affected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < fd427dd84f224309afbcc2cb67c7bb770a01265c
Status affected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < 1c76b5675119f694458293a2a81f40731c69bd32
Status affected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < e86ab1e5661386a874fbb8551f0c04b8e9f8ad22
Status affected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < af2fa2fbbced26129813274b8b3f7705f280e174
Status affected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < 78cea133daf721698876e56135049a96d39d610a
Status affected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < 3afdc15d6173614d7d834517d9b65e7aa5a08548
Status affected
Version d887c52d6ae43aeebd249b5f2f1333e60236aa60
Version < 3d14bd48e3a77091cbce637a12c2ae31b4a1687c
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 4.14
Status affected
Version 0
Version < 4.14
Status unaffected
Version <= 5.10.*
Version 5.10.254
Status unaffected
Version <= 5.15.*
Version 5.15.204
Status unaffected
Version <= 6.1.*
Version 6.1.170
Status unaffected
Version <= 6.6.*
Version 6.6.136
Status unaffected
Version <= 6.12.*
Version 6.12.83
Status unaffected
Version <= 6.18.*
Version 6.18.24
Status unaffected
Version <= 6.19.*
Version 6.19.14
Status unaffected
Version <= *
Version 7.0
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.093
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.