-
- Downloads
SELinux: add more validity checks on policy load
Add more validity checks at policy load time to reject malformed policies and prevent subsequent out-of-range indexing when in permissive mode. Resolves the NULL pointer dereference reported in https://bugzilla.redhat.com/show_bug.cgi?id=357541 . Signed-off-by:Stephen Smalley <sds@tycho.nsa.gov> Signed-off-by:
James Morris <jmorris@namei.org>
Showing
- security/selinux/ss/avtab.c 28 additions, 4 deletionssecurity/selinux/ss/avtab.c
- security/selinux/ss/avtab.h 3 additions, 2 deletionssecurity/selinux/ss/avtab.h
- security/selinux/ss/conditional.c 2 additions, 1 deletionsecurity/selinux/ss/conditional.c
- security/selinux/ss/mls.c 36 additions, 30 deletionssecurity/selinux/ss/mls.c
- security/selinux/ss/mls.h 2 additions, 0 deletionssecurity/selinux/ss/mls.h
- security/selinux/ss/policydb.c 44 additions, 1 deletionsecurity/selinux/ss/policydb.c
- security/selinux/ss/policydb.h 3 additions, 0 deletionssecurity/selinux/ss/policydb.h
Loading
Please register or sign in to comment