In the Linux kernel, the following vulnerability has been resolved:
s390/pkey: Wipe copies of clear-key structures on failure
Wipe all sensitive data from stack for all IOCTLs, which convert a clear-key into a protected- or secure-key.
[
{
"digest": {
"line_hashes": [
"83301331220114475114358867940074279184",
"33191386586701710819242294567873579571",
"29638033960167935243700769245597974810",
"141586126004318648061474782474530750984",
"269372676781452895148528969532641306634",
"214974166498124460924592039912525169909",
"68954807485080211931566029160019469185",
"34363832755281868126765185556167870295",
"286733477664388526024745240369943852142",
"159603646230610785744918034498557002257",
"141178448314783196383401570502225111905",
"185393591899761336694705343590929213702",
"119257089052197034828931006508414003695",
"70297167575332217044312456399102428510",
"153005782742181618611037044125110887220",
"18887467116218890484426742078519009289",
"24016904001630859770381952773941498367",
"205542313014638955433099053817198496208",
"227960073306559556803958094732424761810",
"10665398197532087596435460990170288721",
"337577449481908677425797325865945861711",
"143631274862320302658419550475015119577",
"39002277631609889392019158113237980571",
"54489902989587692826136099359896003162",
"289344374659331335448399843484890247016",
"236276480588451789053380885703758379194",
"31126981628539861613876096202037511441",
"111387174876160298604593036477796914266",
"249959924291577047487979951339862832296",
"46087737547208711910575108156360892203",
"16873284053601136292005071157404352177",
"165483450071743142687130206660447521513",
"156604399686263318300090818466105110592"
],
"threshold": 0.9
},
"target": {
"file": "drivers/s390/crypto/pkey_api.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7f6243edd901b75aaece326c90a1cc0dcb60cc3d",
"id": "CVE-2024-42156-3e3a64ea",
"signature_version": "v1",
"signature_type": "Line",
"deprecated": false
},
{
"digest": {
"line_hashes": [
"83301331220114475114358867940074279184",
"33191386586701710819242294567873579571",
"29638033960167935243700769245597974810",
"141586126004318648061474782474530750984",
"269372676781452895148528969532641306634",
"214974166498124460924592039912525169909",
"68954807485080211931566029160019469185",
"34363832755281868126765185556167870295",
"286733477664388526024745240369943852142",
"159603646230610785744918034498557002257",
"141178448314783196383401570502225111905",
"185393591899761336694705343590929213702",
"119257089052197034828931006508414003695",
"70297167575332217044312456399102428510",
"153005782742181618611037044125110887220",
"18887467116218890484426742078519009289",
"24016904001630859770381952773941498367",
"205542313014638955433099053817198496208",
"227960073306559556803958094732424761810",
"10665398197532087596435460990170288721",
"337577449481908677425797325865945861711",
"143631274862320302658419550475015119577",
"39002277631609889392019158113237980571",
"54489902989587692826136099359896003162",
"289344374659331335448399843484890247016",
"236276480588451789053380885703758379194",
"31126981628539861613876096202037511441",
"111387174876160298604593036477796914266",
"249959924291577047487979951339862832296",
"46087737547208711910575108156360892203",
"16873284053601136292005071157404352177",
"165483450071743142687130206660447521513",
"156604399686263318300090818466105110592"
],
"threshold": 0.9
},
"target": {
"file": "drivers/s390/crypto/pkey_api.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d65d76a44ffe74c73298ada25b0f578680576073",
"id": "CVE-2024-42156-84d7795e",
"signature_version": "v1",
"signature_type": "Line",
"deprecated": false
},
{
"digest": {
"length": 10709.0,
"function_hash": "162689083918842177645462129310904362763"
},
"target": {
"file": "drivers/s390/crypto/pkey_api.c",
"function": "pkey_unlocked_ioctl"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a891938947f4427f98cb1ce54f27223501efe750",
"id": "CVE-2024-42156-ae4bd83b",
"signature_version": "v1",
"signature_type": "Function",
"deprecated": false
},
{
"digest": {
"length": 10607.0,
"function_hash": "290467139302587668411142378448088691459"
},
"target": {
"file": "drivers/s390/crypto/pkey_api.c",
"function": "pkey_unlocked_ioctl"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d65d76a44ffe74c73298ada25b0f578680576073",
"id": "CVE-2024-42156-d610429f",
"signature_version": "v1",
"signature_type": "Function",
"deprecated": false
},
{
"digest": {
"length": 10607.0,
"function_hash": "290467139302587668411142378448088691459"
},
"target": {
"file": "drivers/s390/crypto/pkey_api.c",
"function": "pkey_unlocked_ioctl"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7f6243edd901b75aaece326c90a1cc0dcb60cc3d",
"id": "CVE-2024-42156-dbb1d6cc",
"signature_version": "v1",
"signature_type": "Function",
"deprecated": false
},
{
"digest": {
"line_hashes": [
"273164732483514071228056042183040894455",
"159847717737915787633965535225330336704",
"130740704922624809825985371968671095022",
"141586126004318648061474782474530750984",
"269372676781452895148528969532641306634",
"214974166498124460924592039912525169909",
"92541331498468814840964863880337824131",
"284437323465812812439164395592711794671",
"181579590812657598945105134280555310797",
"159603646230610785744918034498557002257",
"141178448314783196383401570502225111905",
"185393591899761336694705343590929213702",
"119257089052197034828931006508414003695",
"70297167575332217044312456399102428510",
"153005782742181618611037044125110887220",
"18887467116218890484426742078519009289",
"24016904001630859770381952773941498367",
"205542313014638955433099053817198496208",
"227960073306559556803958094732424761810",
"10665398197532087596435460990170288721",
"1716877062955146707858014075243193799",
"143631274862320302658419550475015119577",
"39002277631609889392019158113237980571",
"54489902989587692826136099359896003162",
"289344374659331335448399843484890247016",
"236276480588451789053380885703758379194",
"31126981628539861613876096202037511441",
"111387174876160298604593036477796914266",
"249959924291577047487979951339862832296",
"46087737547208711910575108156360892203",
"16873284053601136292005071157404352177",
"165483450071743142687130206660447521513",
"156604399686263318300090818466105110592"
],
"threshold": 0.9
},
"target": {
"file": "drivers/s390/crypto/pkey_api.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a891938947f4427f98cb1ce54f27223501efe750",
"id": "CVE-2024-42156-e0a1374e",
"signature_version": "v1",
"signature_type": "Line",
"deprecated": false
}
]