7.8
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
In the Linux kernel, the following vulnerability has been resolved:
crypto: ccp - copy IV using skcipher ivsize
AF_ALG rfc3686-ctr-aes-ccp requests pass an 8-byte IV to the driver.
ccp_aes_complete() restores AES_BLOCK_SIZE bytes into the caller's IV
buffer while RFC3686 skciphers expose an 8-byte IV, so the restore
overruns the provided buffer.
Use crypto_skcipher_ivsize() to copy only the algorithm's IV length.
crypto: ccp - copy IV using skcipher ivsize
AF_ALG rfc3686-ctr-aes-ccp requests pass an 8-byte IV to the driver.
ccp_aes_complete() restores AES_BLOCK_SIZE bytes into the caller's IV
buffer while RFC3686 skciphers expose an 8-byte IV, so the restore
overruns the provided buffer.
Use crypto_skcipher_ivsize() to copy only the algorithm's IV length.
Basic Information
ID
CVE-2026-53016
Source
Linux
Published
Jun 24, 2026 at 16:29
Modified
Jun 28, 2026 at 06:38
Affected Product
Vendor
Linux
Product
Linux
Version
2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Affected Versions
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 3.14
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 2b789435d7f36ed918d92db647f3a2f3fec9bb1f
Linux Linux 3.14
References
- git.kernel.org /stable/c/939061b2d0f7f15114e34b4ce878ef50ff4089c3
- git.kernel.org /stable/c/798d409a8949f3f495f238549b86de2886b129bd
- git.kernel.org /stable/c/dfb2cf434829819268fe50f41542aad318ad62b2
- git.kernel.org /stable/c/eecee15e263ccb8cd77170a56ab6c969cb54dd6a
- git.kernel.org /stable/c/bb01d8f1f385bc9034ca114d3508c7fdea24fc9a
- git.kernel.org /stable/c/df9784bb5b637ac80f4a2768a58ca9a50bef28a9
- git.kernel.org /stable/c/227c1e1d9e2aa4cfc65ba446d5690da1f546cda4
- git.kernel.org /stable/c/a7a1f3cdd64d8a165d9b8c9e9ad7fb46ac19dfc4