PT-2026-98532 · Linux · Linux Kernel

CVE-2026-97592

·

Published

2026-09-25

·

Updated

2026-09-25

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the s390 crypto implementation where temporary buffers used with AES CTR and GCM algorithms are not properly scrubbed. In the ctr aes crypt() function, a buffer used for processing remaining bytes smaller than AES BLOCK SIZE is not cleared, potentially exposing sensitive data. Similarly, the gcm aes crypt() function contains error paths where the CPACF parameter block and buffers within gcm sg walk structures, specifically the gw in and gw out variables, are not scrubbed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-97592

Affected Products

Linux Kernel