« Volver al listado

CVE-2026-80832

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

crypto: qce - fix CCM AAD buffer underallocation

The AAD buffer allocated in qce_aead_ccm_prepare_buf_assoclen() can be smaller than the length later programmed into the DMA scatterlist.

The allocation size is currently calculated as:

while the DMA length is set to:

Since ALIGN() does not distribute over addition, the allocation can be smaller than the DMA length. For example, when assoclen = 32 and adata_header_len = 2:

As a result, the QCE hardware can read beyond the allocated buffer while computing the CBC-MAC over the associated data. The extra bytes are folded into the authentication tag, resulting in an incorrect tag and causing CCM self-test failures such as:

Leer descripción completaMostrar menos

Fix the allocation by adding the maximum possible AAD header length before alignment:

This guarantees that the allocated buffer is large enough for the fully padded AAD data for all supported header sizes.

Detalles técnicos trazas, registros y código del informe original
  ALIGN(assoclen, 16) + MAX_CCM_ADATA_HEADER_LEN

  ALIGN(assoclen + adata_header_len, 16)

  allocation = ALIGN(32, 16) + 6 = 38
  DMA length = ALIGN(32 + 2, 16) = 48

  alg: aead: ccm-aes-qce encryption test failed (wrong result)
  on test vector 8

  ALIGN(assoclen + MAX_CCM_ADATA_HEADER_LEN, 16)

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-80832",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "11775b35ce9f27e73d62188d7d38aa0dc0a219aa",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "c9e0f06a023107694698a7930616aeb460d91816",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "cc56d2b0d77cfeea061e98114992ee687d5eb4dd",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "002f1f99aef7ea631cb687fc17bce64e4963f6aa",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "2f65718b9c1095eef1ae9b374aa0384b1b083f3c",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "46a84efe2dbaddde89073a3c00c694486937c34b",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "4839f4c21f9c577eedef2919ced878a3057c7fc3",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "9363efb4181c5e0fbf86bdfa759262aa29f0eb50",
              "lessThan": "7f2345f47dd189625f657cd72437179ab4170ee1",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "drivers/crypto/qce/aead.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "5.14"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "5.14",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "5.15.220",
              "versionType": "semver",
              "lessThanOrEqual": "5.15.*"
            },
            {
              "status": "unaffected",
              "version": "6.1.187",
              "versionType": "semver",
              "lessThanOrEqual": "6.1.*"
            },
            {
              "status": "unaffected",
              "version": "6.6.156",
              "versionType": "semver",
              "lessThanOrEqual": "6.6.*"
            },
            {
              "status": "unaffected",
              "version": "6.12.108",
              "versionType": "semver",
              "lessThanOrEqual": "6.12.*"
            },
            {
              "status": "unaffected",
              "version": "6.18.49",
              "versionType": "semver",
              "lessThanOrEqual": "6.18.*"
            },
            {
              "status": "unaffected",
              "version": "7.1.13",
              "versionType": "semver",
              "lessThanOrEqual": "7.1.*"
            },
            {
              "status": "unaffected",
              "version": "7.2.3",
              "versionType": "semver",
              "lessThanOrEqual": "7.2.*"
            },
            {
              "status": "unaffected",
              "version": "7.3-rc1",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "drivers/crypto/qce/aead.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-09-04T16:18:11.433",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/002f1f99aef7ea631cb687fc17bce64e4963f6aa",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/11775b35ce9f27e73d62188d7d38aa0dc0a219aa",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/2f65718b9c1095eef1ae9b374aa0384b1b083f3c",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/46a84efe2dbaddde89073a3c00c694486937c34b",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/4839f4c21f9c577eedef2919ced878a3057c7fc3",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/7f2345f47dd189625f657cd72437179ab4170ee1",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/c9e0f06a023107694698a7930616aeb460d91816",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/cc56d2b0d77cfeea061e98114992ee687d5eb4dd",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: qce - fix CCM AAD buffer underallocation\n\nThe AAD buffer allocated in qce_aead_ccm_prepare_buf_assoclen()\ncan be smaller than the length later programmed into the DMA\nscatterlist.\n\nThe allocation size is currently calculated as:\n\n  ALIGN(assoclen, 16) + MAX_CCM_ADATA_HEADER_LEN\n\nwhile the DMA length is set to:\n\n  ALIGN(assoclen + adata_header_len, 16)\n\nSince ALIGN() does not distribute over addition, the allocation\ncan be smaller than the DMA length. For example, when\nassoclen = 32 and adata_header_len = 2:\n\n  allocation = ALIGN(32, 16) + 6 = 38\n  DMA length = ALIGN(32 + 2, 16) = 48\n\nAs a result, the QCE hardware can read beyond the allocated\nbuffer while computing the CBC-MAC over the associated data.\nThe extra bytes are folded into the authentication tag,\nresulting in an incorrect tag and causing CCM self-test\nfailures such as:\n\n  alg: aead: ccm-aes-qce encryption test failed (wrong result)\n  on test vector 8\n\nFix the allocation by adding the maximum possible AAD header\nlength before alignment:\n\n  ALIGN(assoclen + MAX_CCM_ADATA_HEADER_LEN, 16)\n\nThis guarantees that the allocated buffer is large enough\nfor the fully padded AAD data for all supported header sizes."
    }
  ],
  "lastModified": "2026-09-04T16:18:11.433",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}