[SERVER-42318] Tighten bounds on AEAD Decrypt output length Created: 22/Jul/19  Updated: 29/Oct/23  Resolved: 24/Jul/19

Status: Closed
Project: Core Server
Component/s: None
Affects Version/s: None
Fix Version/s: 4.2.0-rc5, 4.3.1

Type: Bug Priority: Major - P3
Reporter: Mark Benvenuto Assignee: Mark Benvenuto
Resolution: Fixed Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Issue Links:
Backports
Backwards Compatibility: Fully Compatible
Operating System: ALL
Backport Requested:
v4.2
Sprint: Security 2019-07-29
Participants:

 Description   

Currently, the AEAD decrypt code requires a caller to allocate a buffer that is at least 48 bytes larger than needed. This is an unnecessary waste of memory in the shell.



 Comments   
Comment by Githook User [ 24/Jul/19 ]

Author:

{'name': 'Mark Benvenuto', 'username': 'markbenvenuto', 'email': 'mark.benvenuto@mongodb.com'}

Message: SERVER-42318 Tighten bounds on AEAD Decrypt output length

(cherry picked from commit 260a0ced5d3754f375fee6e220855e722c4b72b8)
Branch: v4.2
https://github.com/mongodb/mongo/commit/20ee8f6ac0208f5ba4e77f70b18b2d726782d0f8

Comment by Githook User [ 24/Jul/19 ]

Author:

{'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}

Message: SERVER-42318 Tighten bounds on AEAD Decrypt output length
Branch: master
https://github.com/mongodb/mongo/commit/260a0ced5d3754f375fee6e220855e722c4b72b8

Generated at Thu Feb 08 05:00:10 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.