crypto: arm64/aes-blk - ensure XTS mask is always loaded
authorArd Biesheuvel <ard.biesheuvel@linaro.org>
Mon, 8 Oct 2018 11:16:59 +0000 (13:16 +0200)
committerHerbert Xu <herbert@gondor.apana.org.au>
Fri, 12 Oct 2018 06:20:45 +0000 (14:20 +0800)
commitcc3cc48972371b3c2e94f16b6ac7bdad7fdfc93c
treea08b46acc09d09c546ff8e226344ee1b5f65f87e
parent22a8118d329334833cd30f2ceb36d28e8cae8a4f
crypto: arm64/aes-blk - ensure XTS mask is always loaded

Commit 2e5d2f33d1db ("crypto: arm64/aes-blk - improve XTS mask handling")
optimized away some reloads of the XTS mask vector, but failed to take
into account that calls into the XTS en/decrypt routines will take a
slightly different code path if a single block of input is split across
different buffers. So let's ensure that the first load occurs
unconditionally, and move the reload to the end so it doesn't occur
needlessly.

Fixes: 2e5d2f33d1db ("crypto: arm64/aes-blk - improve XTS mask handling")
Signed-off-by: Ard Biesheuvel <ard.biesheuvel@linaro.org>
Signed-off-by: Herbert Xu <herbert@gondor.apana.org.au>
arch/arm64/crypto/aes-modes.S