|
@@ -740,7 +740,12 @@ static struct sk_buff *macsec_encrypt(struct sk_buff *skb,
|
|
|
macsec_fill_iv(iv, secy->sci, pn);
|
|
|
|
|
|
sg_init_table(sg, ret);
|
|
|
- skb_to_sgvec(skb, sg, 0, skb->len);
|
|
|
+ ret = skb_to_sgvec(skb, sg, 0, skb->len);
|
|
|
+ if (unlikely(ret < 0)) {
|
|
|
+ macsec_txsa_put(tx_sa);
|
|
|
+ kfree_skb(skb);
|
|
|
+ return ERR_PTR(ret);
|
|
|
+ }
|
|
|
|
|
|
if (tx_sc->encrypt) {
|
|
|
int len = skb->len - macsec_hdr_len(sci_present) -
|
|
@@ -947,7 +952,11 @@ static struct sk_buff *macsec_decrypt(struct sk_buff *skb,
|
|
|
macsec_fill_iv(iv, sci, ntohl(hdr->packet_number));
|
|
|
|
|
|
sg_init_table(sg, ret);
|
|
|
- skb_to_sgvec(skb, sg, 0, skb->len);
|
|
|
+ ret = skb_to_sgvec(skb, sg, 0, skb->len);
|
|
|
+ if (unlikely(ret < 0)) {
|
|
|
+ kfree_skb(skb);
|
|
|
+ return ERR_PTR(ret);
|
|
|
+ }
|
|
|
|
|
|
if (hdr->tci_an & MACSEC_TCI_E) {
|
|
|
/* confidentiality: ethernet + macsec header
|