rem = len & 0xf;
- len &= ~0xf;
+ len &= ~(size_t)0xf;
if (len) {
s390x_kma(aad, len, NULL, 0, NULL, ctx->fc, &ctx->kma.param);
aad += len;
rem = len & 0xf;
- len &= ~0xf;
+ len &= ~(size_t)0xf;
if (len) {
s390x_kma(ctx->ares, ctx->areslen, in, len, out,
ctx->fc | S390X_KMA_LAAD, &ctx->kma.param);
ctx->aes.ccm.blocks += 2;
rem = alen & 0xf;
- alen &= ~0xf;
+ alen &= ~(size_t)0xf;
if (alen) {
s390x_kmac(aad, alen, ctx->aes.ccm.fc, &ctx->aes.ccm.kmac_param);
ctx->aes.ccm.blocks += alen >> 4;
num = 0;
rem = len & 0xf;
- len &= ~0xf;
+ len &= ~(size_t)0xf;
if (enc) {
/* mac-then-encrypt */