CVE-2026-43033: crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption
crypto: authencesn - Do not place hiseq at end of dst for out-of-place decryption
Other sources
In the Linux kernel, the following vulnerability has been resolved:
— Launchpad
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.257-1Fixed in 6.1.170-3Fixed in 6.1.174-1Fixed in 6.12.86-1Fixed in 6.12.94-1Fixed in 7.0.12-2Fixed in 7.0.13-1 - Upgrade
Upgrade
debian/linux-6.1to a version that resolves this vulnerability.Fixed in 6.1.174-1~deb11u1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-43033?
The severity of CVE-2026-43033 is classified as high due to potential data corruption during out-of-place decryption.
How do I fix CVE-2026-43033?
To fix CVE-2026-43033, update your Linux kernel to the latest stable release where the vulnerability has been patched.
What is affected by CVE-2026-43033?
CVE-2026-43033 affects the Linux kernel when processing out-of-place decryption with the authencesn cryptographic function.
What are the potential impacts of CVE-2026-43033?
The potential impacts of CVE-2026-43033 include data integrity issues and possible crashes in systems using vulnerable kernel versions.
When was CVE-2026-43033 reported?
CVE-2026-43033 was reported as a vulnerability in the Linux kernel, with a fix made available in recent kernel updates.