On Thu, Mar 28, 2013 at 09:54:03PM +0200, Jussi Kivilinna wrote: > rfc4543(gcm(*)) code for GMAC assumes that assoc scatterlist always contains > only one segment and only makes use of this first segment. However ipsec passes > assoc with three segments when using 'extended sequence number' thus in this > case rfc4543(gcm(*)) fails to function correctly. Patch fixes this issue. > > Reported-by: Chaoxing Lin <Chaoxing.Lin@xxxxxxxxxxxxxx> > Tested-by: Chaoxing Lin <Chaoxing.Lin@xxxxxxxxxxxxxx> > Cc: stable@xxxxxxxxxxxxxxx > Signed-off-by: Jussi Kivilinna <jussi.kivilinna@xxxxxx> Patch applied. Thanks! -- Email: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt -- To unsubscribe from this list: send the line "unsubscribe linux-crypto" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html