libkcapi-1.4.0-3.el8_10

エラータID: AXSA:2026-1835:01

Release date: 
Tuesday, September 15, 2026 - 18:37
Subject: 
libkcapi-1.4.0-3.el8_10
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

libkcapi allows user-space to access the Linux kernel crypto API. This library uses the netlink interface and exports easy to use APIs so that a developer does not need to consider the low-level netlink interface handling. The library does not implement any cipher algorithms. All consumer requests are sent to the kernel for processing. Results from the kernel crypto API are returned to the consumer via the library API. The kernel interface and therefore this library can be used by unprivileged processes.

Security Fix(es):

* libkcapi: IV reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries (CVE-2026-71225)
* libkcapi: Memory corruption via uncanceled AIO requests on error in libkcapi's one-shot AIO path (CVE-2026-71226)
* libkcapi: Infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return (CVE-2026-71227)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2026-71225
A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (CTR) or Cipher Block Chaining (CBC), the library improperly reuses the Initialization Vector (IV) for each internal data chunk. A remote attacker could potentially exploit this by making an application that uses libkcapi process specially crafted large inputs. This can lead to a significant weakening of data confidentiality, as the repeated IV use can expose relationships in encrypted plaintext, and may also affect data integrity by causing incorrect cryptographic processing.
CVE-2026-71226
Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allowing later kernel writes into caller-owned output buffers.
CVE-2026-71227
A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-terminating wait loop. This can lead to a persistent denial of service, making the affected application or thread unresponsive.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libkcapi-1.4.0-3.el8_10.src.rpm
    MD5: 0c60d68ffab15ab15775da059247cdeb
    SHA-256: 69d391401e014e23a3eb79d025890dd8383493a012e2fcd06f413306444717c9
    Size: 360.82 kB

Asianux Server 8 for x86_64
  1. libkcapi-1.4.0-3.el8_10.i686.rpm
    MD5: 7a7b43a3da674f91cba24599f7956f61
    SHA-256: 20a0db09ab3e1dbdbb2b172e3486f26d40083ab73735b93191b2a3231d91f6d9
    Size: 53.71 kB
  2. libkcapi-1.4.0-3.el8_10.x86_64.rpm
    MD5: ac52c5f9afdb0bad9c18bbe20b52c643
    SHA-256: bd2adaaa6343b22e0d7c2d9720d4cb10c2a7a2ea27f27ff50109cde67a231d75
    Size: 52.28 kB
  3. libkcapi-hmaccalc-1.4.0-3.el8_10.x86_64.rpm
    MD5: 4a46e974c9804a849e25fce2561312c3
    SHA-256: 8ccdadd8f548b7ea50e5a35164733c5bc6d6d4052e989d63a9babe5a8ef76770
    Size: 31.80 kB