commit | 407d34ef294727bdc200934c38d9a8241f4a5547 | [log] [tgz] |
---|---|---|
author | Herbert Xu <herbert@gondor.apana.org.au> | Thu May 21 00:38:12 2015 +0800 |
committer | Steffen Klassert <steffen.klassert@secunet.com> | Thu May 21 06:56:23 2015 +0200 |
tree | 8f9bb35f6eb5634de61412f8a83a5b212078dfde | |
parent | 6d7258ca937027ae86d6d5938d7ae10b6d68f4a4 [diff] |
xfrm: Always zero high-order sequence number bits As we're now always including the high bits of the sequence number in the IV generation process we need to ensure that they don't contain crap. This patch ensures that the high sequence bits are always zeroed so that we don't leak random data into the IV. Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au> Signed-off-by: Steffen Klassert <steffen.klassert@secunet.com>