Hi Tudor, On Fri, Feb 23, 2018 at 02:04:33PM +0200, Tudor Ambarus wrote: > > There are few other places in crypto where we extract the authenc keys > in the same type of local variable, struct crypto_authenc_keys keys, and > we don't zeroize it after use. I think we should fix those cases too. You're right, I spotted other places where keys weren't zeroed. I haven't got the time to do anything about it so far :) Thanks, Antoine -- Antoine Ténart, Bootlin (formerly Free Electrons) Embedded Linux and Kernel engineering https://bootlin.com