CVE-2026-52972
Description
In the Linux kernel, the following vulnerability has been resolved:
crypto: af_alg - Cap AEAD AD length to 0x80000000
In order to prevent arithmetic overflows when checking the TX
buffer size, cap the associated data length to 0x80000000.
Metadata
Severity & Metrics
No CVSS data available.
Affected products (2)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Linux | Linux | — | 400c40cf78da00c16e561a3a253ca272455c42ef < f8a5203596797f394ff3f9aa4005597a92249802, 400c40cf78da00c16e561a3a253ca272455c42ef < a9f68d9ed38dd6e5a6c6d75b03d25c1c133e321d, 400c40cf78da00c16e561a3a253ca272455c42ef < a4fe4eb580bbc7439f649a496d4cf38415a4021c, 400c40cf78da00c16e561a3a253ca272455c42ef < e4c4a5074532eaaa14951994a3aad0d479aa7431 … |
| Linux | Linux | — | 4.1, 0 < 4.1, 5.10.258 ≤ 5.10.*, 5.15.209 ≤ 5.15.* … |
References (7)
- https://git.kernel.org/stable/c/f8a5203596797f394ff3f9aa4005597a92249802
- https://git.kernel.org/stable/c/a9f68d9ed38dd6e5a6c6d75b03d25c1c133e321d
- https://git.kernel.org/stable/c/a4fe4eb580bbc7439f649a496d4cf38415a4021c
- https://git.kernel.org/stable/c/e4c4a5074532eaaa14951994a3aad0d479aa7431
- https://git.kernel.org/stable/c/265ac26d1c5e17b34d497cbda1f754a1ec8552bc
- https://git.kernel.org/stable/c/a1c5672faf8e93e38c2deac3979cc767ca5cf918
- https://git.kernel.org/stable/c/97948906dc8e0ea84775e03e35b60a2063c70193