The attached patches fix a bug that occurs in netlink_send hook functions
for both the dummy security module and the SELinux security module. This
bug causes incorrect permission denials for netlink messages. Thanks to
James Morris for finding this bug. To apply the first patch, save it to
'lsm-netlink.patch', change to the lsm directory and run 'patch -p1 <
~/lsm-netlink.patch'. To apply the second patch, save it to
'selinux-netlink.patch', change to the selinux directory, and run
'patch -p1 < ~/selinux-netlink.patch'. Then, rebuild and reinstall the
kernel in the usual way.
-- Stephen D. Smalley, NAI Labs ssmalley@nai.comReceived on Wed 3 Oct 2001 - 14:21:19 EDT-- You have received this message because you are subscribed to the selinux list. If you no longer wish to subscribe, send mail to majordomo@tycho.nsa.gov with the words "unsubscribe selinux" without quotes as the message.
- TEXT/PLAIN attachment: lsm-netlink.patch
- TEXT/PLAIN attachment: selinux-netlink.patch
This archive was generated by hypermail 2.2.0 on Wed 11 Jun 2008 - 08:10:26 EDT