lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Fri, 04 Feb 2022 10:40:12 +0000 From: patchwork-bot+netdevbpf@...nel.org To: Jakub Kicinski <kuba@...nel.org> Cc: davem@...emloft.net, netdev@...r.kernel.org, viro@...iv.linux.org.uk, borisp@...dia.com, john.fastabend@...il.com, daniel@...earbox.net, vfedorenko@...ek.ru, kernel-team@...com, axboe@...nel.dk Subject: Re: [PATCH net-next] tls: cap the output scatter list to something reasonable Hello: This patch was applied to netdev/net-next.git (master) by David S. Miller <davem@...emloft.net>: On Wed, 2 Feb 2022 14:20:31 -0800 you wrote: > TLS recvmsg() passes user pages as destination for decrypt. > The decrypt operation is repeated record by record, each > record being 16kB, max. TLS allocates an sg_table and uses > iov_iter_get_pages() to populate it with enough pages to > fit the decrypted record. > > Even though we decrypt a single message at a time we size > the sg_table based on the entire length of the iovec. > This leads to unnecessarily large allocations, risking > triggering OOM conditions. > > [...] Here is the summary with links: - [net-next] tls: cap the output scatter list to something reasonable https://git.kernel.org/netdev/net-next/c/b93235e68921 You are awesome, thank you! -- Deet-doot-dot, I am a bot. https://korg.docs.kernel.org/patchwork/pwbot.html
Powered by blists - more mailing lists