]> git.ipfire.org Git - thirdparty/systemd.git/commit
creds: use CLEANUP_ERASE for symmetric key
authorLuca Boccassi <luca.boccassi@gmail.com>
Mon, 23 Mar 2026 21:13:03 +0000 (21:13 +0000)
committerZbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl>
Tue, 24 Mar 2026 07:29:03 +0000 (08:29 +0100)
commit3af158759fedea440ce06d7b139dc0dcd28bab06
tree13b79ab0d514c7ffc31ddfde64f2c1cbb19c22cb
parente7a176fe461d05a68a3df6bfdcb9c330a3345671
creds: use CLEANUP_ERASE for symmetric key

Just in case, ensure the sha256 that is used as a symmetric
key for encrypted creds is safely erased from memory.

Reported on yeswehack.com as YWH-PGM9780-166

Follow-up for 21bc0b6fa1de44b520353b935bf14160f9f70591
src/shared/creds-util.c