Home

Description

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Fix minimum RX size check for decryption The check for the minimum receive buffer size did not take the tag size into account during decryption. Fix this by adding the required extra length.

PUBLISHED Reserved 2026-05-01 | Published 2026-05-06 | Updated 2026-05-06 | Assigner Linux

Product status

Default status
unaffected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before 74a66fdb5282d89e348b00c42cfca3a936946d94
affected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before fd427dd84f224309afbcc2cb67c7bb770a01265c
affected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before 1c76b5675119f694458293a2a81f40731c69bd32
affected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before e86ab1e5661386a874fbb8551f0c04b8e9f8ad22
affected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before af2fa2fbbced26129813274b8b3f7705f280e174
affected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before 78cea133daf721698876e56135049a96d39d610a
affected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before 3afdc15d6173614d7d834517d9b65e7aa5a08548
affected

d887c52d6ae43aeebd249b5f2f1333e60236aa60 (git) before 3d14bd48e3a77091cbce637a12c2ae31b4a1687c
affected

Default status
affected

4.14
affected

Any version before 4.14
unaffected

5.10.254 (semver)
unaffected

5.15.204 (semver)
unaffected

6.1.170 (semver)
unaffected

6.6.136 (semver)
unaffected

6.12.83 (semver)
unaffected

6.18.24 (semver)
unaffected

6.19.14 (semver)
unaffected

7.0 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/74a66fdb5282d89e348b00c42cfca3a936946d94

git.kernel.org/...c/fd427dd84f224309afbcc2cb67c7bb770a01265c

git.kernel.org/...c/1c76b5675119f694458293a2a81f40731c69bd32

git.kernel.org/...c/e86ab1e5661386a874fbb8551f0c04b8e9f8ad22

git.kernel.org/...c/af2fa2fbbced26129813274b8b3f7705f280e174

git.kernel.org/...c/78cea133daf721698876e56135049a96d39d610a

git.kernel.org/...c/3afdc15d6173614d7d834517d9b65e7aa5a08548

git.kernel.org/...c/3d14bd48e3a77091cbce637a12c2ae31b4a1687c

cve.org (CVE-2026-43077)

nvd.nist.gov (CVE-2026-43077)

Download JSON