]> exis.tech > repos - linux.git/commit
rxrpc: Fix re-decryption of RESPONSE packets
authorDavid Howells <dhowells@redhat.com>
Thu, 23 Apr 2026 20:09:07 +0000 (21:09 +0100)
committerJakub Kicinski <kuba@kernel.org>
Thu, 23 Apr 2026 21:29:15 +0000 (14:29 -0700)
commit0422e7a4883f25101903f3e8105c0808aa5f4ce9
treee80782b0dadb6553039c13dfe2dd9721547f7de5
parent55b2984c96c37f909bbfe8851f13152693951382
rxrpc: Fix re-decryption of RESPONSE packets

If a RESPONSE packet gets a temporary failure during processing, it may end
up in a partially decrypted state - and then get requeued for a retry.

Fix this by just discarding the packet; we will send another CHALLENGE
packet and thereby elicit a further response.  Similarly, discard an
incoming CHALLENGE packet if we get an error whilst generating a RESPONSE;
the server will send another CHALLENGE.

Fixes: 17926a79320a ("[AF_RXRPC]: Provide secure RxRPC sockets for use by userspace and kernel both")
Closes: https://sashiko.dev/#/patchset/20260422161438.2593376-4-dhowells@redhat.com
Signed-off-by: David Howells <dhowells@redhat.com>
cc: Marc Dionne <marc.dionne@auristor.com>
cc: Jeffrey Altman <jaltman@auristor.com>
cc: Simon Horman <horms@kernel.org>
cc: linux-afs@lists.infradead.org
cc: stable@kernel.org
Link: https://patch.msgid.link/20260423200909.3049438-3-dhowells@redhat.com
Signed-off-by: Jakub Kicinski <kuba@kernel.org>
include/trace/events/rxrpc.h
net/rxrpc/conn_event.c