crypto: caam - use print_hex_dump_devel to guard key hex dumps
Summary
| CVE | CVE-2026-64316 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-07-25 10:17:12 UTC |
| Updated | 2026-07-25 10:17:12 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: crypto: caam - use print_hex_dump_devel to guard key hex dumps Use print_hex_dump_devel() for dumping sensitive key material in *_setkey() and gen_split_key() to avoid leaking secrets at runtime when CONFIG_DYNAMIC_DEBUG is enabled. |
Risk And Classification
EPSS: 0.001770000 probability, percentile 0.074970000 (date 2026-07-28)
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 45c0e3615e5bca5f1fc93357af8d19975c092d4f git | Not specified |
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 8b56ba10105ca34a4b75f7e33d41d96a63815591 git | Not specified |
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 9a53dc0a0ae0486e164e5af3de5f99ab42c5a23e git | Not specified |
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 ebd37eef6e4f435e18829c0c0c9ba3a6618cb2dd git | Not specified |
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 cea7302d5d05df74cfb4107897b1ca34163c06b9 git | Not specified |
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 6f7b8e0321f3a8fbbd267d2ac15c671ab59e919e git | Not specified |
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 8cf5fb0503129e53052fe29302379cf83891d0fb git | Not specified |
| CNA | Linux | Linux | affected 6e005503199b9bf1b385949c05897fd6567b5af4 3f57657b6ea23f933371f2c2846322f441773cee git | Not specified |
| CNA | Linux | Linux | affected 5.3 | Not specified |
| CNA | Linux | Linux | unaffected 5.3 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.261 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.212 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.178 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.145 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.96 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.39 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.1.4 7.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.2-rc1 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/6f7b8e0321f3a8fbbd267d2ac15c671ab59e919e | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/8cf5fb0503129e53052fe29302379cf83891d0fb | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/ebd37eef6e4f435e18829c0c0c9ba3a6618cb2dd | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/45c0e3615e5bca5f1fc93357af8d19975c092d4f | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/8b56ba10105ca34a4b75f7e33d41d96a63815591 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/cea7302d5d05df74cfb4107897b1ca34163c06b9 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/3f57657b6ea23f933371f2c2846322f441773cee | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/9a53dc0a0ae0486e164e5af3de5f99ab42c5a23e | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.