crypto: caam - use print_hex_dump_devel to guard key hex dumps

Summary

CVECVE-2026-64316
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-07-25 10:17:12 UTC
Updated2026-07-25 10:17:12 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: crypto: caam - use print_hex_dump_devel to guard key hex dumps Use print_hex_dump_devel() for dumping sensitive key material in *_setkey() and gen_split_key() to avoid leaking secrets at runtime when CONFIG_DYNAMIC_DEBUG is enabled.

Risk And Classification

EPSS: 0.001770000 probability, percentile 0.074970000 (date 2026-07-28)

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 45c0e3615e5bca5f1fc93357af8d19975c092d4f git Not specified
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 8b56ba10105ca34a4b75f7e33d41d96a63815591 git Not specified
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 9a53dc0a0ae0486e164e5af3de5f99ab42c5a23e git Not specified
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 ebd37eef6e4f435e18829c0c0c9ba3a6618cb2dd git Not specified
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 cea7302d5d05df74cfb4107897b1ca34163c06b9 git Not specified
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 6f7b8e0321f3a8fbbd267d2ac15c671ab59e919e git Not specified
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 8cf5fb0503129e53052fe29302379cf83891d0fb git Not specified
CNA Linux Linux affected 6e005503199b9bf1b385949c05897fd6567b5af4 3f57657b6ea23f933371f2c2846322f441773cee git Not specified
CNA Linux Linux affected 5.3 Not specified
CNA Linux Linux unaffected 5.3 semver Not specified
CNA Linux Linux unaffected 5.10.261 5.10.* semver Not specified
CNA Linux Linux unaffected 5.15.212 5.15.* semver Not specified
CNA Linux Linux unaffected 6.1.178 6.1.* semver Not specified
CNA Linux Linux unaffected 6.6.145 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.96 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.39 6.18.* semver Not specified
CNA Linux Linux unaffected 7.1.4 7.1.* semver Not specified
CNA Linux Linux unaffected 7.2-rc1 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/6f7b8e0321f3a8fbbd267d2ac15c671ab59e919e 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/8cf5fb0503129e53052fe29302379cf83891d0fb 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/ebd37eef6e4f435e18829c0c0c9ba3a6618cb2dd 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/45c0e3615e5bca5f1fc93357af8d19975c092d4f 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/8b56ba10105ca34a4b75f7e33d41d96a63815591 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/cea7302d5d05df74cfb4107897b1ca34163c06b9 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/3f57657b6ea23f933371f2c2846322f441773cee 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/9a53dc0a0ae0486e164e5af3de5f99ab42c5a23e 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report