OPNsense - FreeBSD source
Find a file
Mark Johnston 90ffac35b7 eli: Zero pad bytes that arise when certain auth algorithms are used
When authentication is configured, GELI ensures that the amount of data
per sector is a multiple of 16 bytes.  This is done in
eli_metadata_softc().  When the digest size is not a multiple of 16
bytes, this leaves some extra pad bytes at the end of every sector, and
they were not being zeroed before being written to disk.  In particular,
this happens with the HMAC/SHA1, HMAC/RIPEMD160 and HMAC/SHA384 data
authentication algorithms.

This change ensures that they are zeroed before being written to disk.

Reported by:	KMSAN
Reviewed by:	delphij, asomers
Sponsored by:	The FreeBSD Foundation

(cherry picked from commit 0fcafe8516)
2021-07-29 08:12:22 -04:00
.cirrus-ci Cirrus-CI: retry pkg installation on failure 2021-06-10 08:54:52 -04:00
.github/workflows Don't direct to freenode in issue template 2021-06-09 13:05:34 -07:00
bin df: remove the unused fstype var 2021-07-25 07:00:42 +00:00
cddl zfsd: Check for error from zpool_vdev_online 2021-07-13 15:44:32 +00:00
contrib tcpdump: decode packets on pfsync interfaces 2021-07-20 08:48:02 +02:00
crypto kerberos.8: Replace dead link 2021-05-19 17:22:44 -04:00
etc zfs: attach zpool_influxdb to build 2021-07-10 12:26:42 +02:00
gnu Bump shared library versions after ncurses bump in 13. 2021-02-04 17:51:45 -08:00
include libc: add mempcpy(3) and wmempcpy(3) 2021-07-22 13:33:10 +03:00
kerberos5 kerberos5: Silence compiler warnings 2021-03-17 09:53:08 +00:00
lib [skip ci] correct a few SPDX license tags 2021-07-27 11:57:17 -06:00
libexec Fix the 'linux' rc script on aarch64. 2021-07-27 15:57:55 -04:00
release pkgbase: Create a FreeBSD-nfs package 2021-06-30 09:24:32 +02:00
rescue ping: add a ping6 hard link for backwards compatibility 2020-11-26 18:33:04 +00:00
sbin [skip ci] correct a few SPDX license tags 2021-07-27 11:57:17 -06:00
secure pkgbase: Put openssl in its own package 2021-06-30 09:24:31 +02:00
share man9: Update guarantees for userspace fetch/store operations 2021-07-29 08:11:39 -04:00
stand Revert "loader: support.4th resets the read buffer incorrectly" 2021-07-26 20:37:40 -06:00
sys eli: Zero pad bytes that arise when certain auth algorithms are used 2021-07-29 08:12:22 -04:00
targets targets: no longer depend on bt3cfw(8) 2021-01-16 23:53:13 +01:00
tests fusefs: correctly set lock owner during FUSE_SETLK 2021-07-27 11:44:28 -06:00
tools nanobsd: Bump rescue size to 8GB 2021-07-21 10:13:11 -06:00
usr.bin freebsd-tips: Use a fetchable URL as example 2021-07-28 03:24:51 +08:00
usr.sbin bsdinstall: Only show menu if there are more items to be installed 2021-07-27 16:05:41 -04:00
.arcconfig arcconfig: add callsign again 2020-11-23 04:39:29 +00:00
.arclint arc lint: ignore /tests/ in chmod 2017-12-19 03:38:06 +00:00
.cirrus.yml Cirrus-CI: retry pkg installation on failure 2021-06-10 08:54:52 -04:00
.clang-format clang-format: Avoid breaking after the opening paren of function definitions 2020-10-28 11:54:00 +00:00
.gitattributes Add a basic clang-format configuration file 2019-06-07 15:23:52 +00:00
.gitignore Revert "bc: Vendor import of Gavin Howard's bc version 3.2.6" 2021-02-05 20:53:34 +01:00
COPYRIGHT copyrights: Happy New Year 2021 2020-12-31 10:29:44 -05:00
LOCKS LOCKS: update current locks 2018-06-09 03:08:04 +00:00
MAINTAINERS Add a pointer to csprng@ for the CSPRNG driver. This is enforced anyway by 2020-09-01 08:02:12 +00:00
Makefile Rename NO_WERROR -> MK_WERROR=no 2021-01-07 09:31:03 +00:00
Makefile.inc1 Makefile.inc1: unbreak bootstrap when kbdcontrol does not exist 2021-03-28 13:49:34 -04:00
Makefile.libcompat libcompat: remove redundant path for ncurses 2021-01-07 15:14:52 +01:00
Makefile.sys.inc AUTO_OBJ: For all top-level targets enforce using an OBJDIR. 2017-12-05 21:29:47 +00:00
ObsoleteFiles.inc zfs: merge openzfs/zfs@c3b60eded (zfs-2.1-release) into stable/13 2021-06-13 05:43:03 +02:00
README Mark the repository has been converted to Git 2020-12-23 12:27:27 +08:00
README.md Revert "bc: Vendor import of Gavin Howard's bc version 3.2.6" 2021-02-05 20:53:34 +01:00
RELNOTES RELNOTES: Add an entry for commit 8a04edfdcb 2021-07-11 15:45:00 -07:00
UPDATING Bump __FreeBSD_version to 1300512 for LinuxKPI changes and OFED cleanup 2021-07-18 00:35:04 +00:00

FreeBSD Source:

This is the top level of the FreeBSD source directory. This file was last revised on: FreeBSD

FreeBSD is an operating system used to power modern servers, desktops, and embedded platforms. A large community has continually developed it for more than thirty years. Its advanced networking, security, and storage features have made FreeBSD the platform of choice for many of the busiest web sites and most pervasive embedded networking and storage devices.

For copyright information, please see the file COPYRIGHT in this directory. Additional copyright information also exists for some sources in this tree - please see the specific source directories for more information.

The Makefile in this directory supports a number of targets for building components (or all) of the FreeBSD source tree. See build(7), config(8), https://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/makeworld.html, and https://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/kernelconfig.html for more information, including setting make(1) variables.

Source Roadmap:

bin		System/user commands.

cddl		Various commands and libraries under the Common Development
		and Distribution License.

contrib		Packages contributed by 3rd parties.

crypto		Cryptography stuff (see crypto/README).

etc		Template files for /etc.

gnu		Various commands and libraries under the GNU Public License.
		Please see gnu/COPYING* for more information.

include		System include files.

kerberos5	Kerberos5 (Heimdal) package.

lib		System libraries.

libexec		System daemons.

release		Release building Makefile & associated tools.

rescue		Build system for statically linked /rescue utilities.

sbin		System commands.

secure		Cryptographic libraries and commands.

share		Shared resources.

stand		Boot loader sources.

sys		Kernel sources.

sys/<arch>/conf Kernel configuration files. GENERIC is the configuration
		used in release builds. NOTES contains documentation of
		all possible entries.

tests		Regression tests which can be run by Kyua.  See tests/README
		for additional information.

tools		Utilities for regression testing and miscellaneous tasks.

usr.bin		User commands.

usr.sbin	System administration commands.

For information on synchronizing your source tree with one or more of the FreeBSD Project's development branches, please see:

https://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/current-stable.html