Re: [PATCH] namei: allow restricted O_CREAT of FIFOs and regular files

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Le 2018-10-31 17:27, Kees Cook a écrit :
On Wed, Oct 31, 2018 at 8:00 AM, Sasha Levin <sashal@xxxxxxxxxx> wrote:
On Tue, Oct 30, 2018 at 01:28:36PM -0700, Kees Cook wrote:

On Tue, Oct 23, 2018 at 7:37 PM, Loic <hackurx@xxxxxxxxxx> wrote:

Hello,

Please picked up this patch for linux 4.9 and 4.14 (linux 4.4 needs a
small modification).
Indeed, this code will be beneficial to the GNU/Linux distributions that
use a longterm kernel.


Thanks for doing these (and 4.4). It'll be nice to have this available.

Reviewed-by: Kees Cook <keescook@xxxxxxxxxxxx>

But it's a pleasure. Yes, because enterprise Linux distributions need more hardening options available and they only use long-term kernels.

This is a hardening patch rather than something that addresses a known
issue, no? Why would it go into stable?

Correct. Greg has stated that he'd take backported hardening patches
if there was someone to support them. (If Loic can't commit to that, I
can.)

-Kees

Just a "Cc:" tag for me because i only suggest picked up this patch for stable.

As you may have seen, I am interested by picked up patchs in stable but I'm new here and I prefer that my suggestions and my backports be validated by experimented developers so as not to bother Greg with my startup errors ^^

So yes thanks :)

--
Best regards,

Loic



[Index of Archives]     [Linux Kernel]     [Kernel Development Newbies]     [Linux USB Devel]     [Video for Linux]     [Linux Audio Users]     [Yosemite Hiking]     [Linux Kernel]     [Linux SCSI]

  Powered by Linux