summaryrefslogtreecommitdiffstats
path: root/include/keys
diff options
context:
space:
mode:
authorSasha Levin <sasha.levin@oracle.com>2015-12-22 08:51:23 -0500
committerMimi Zohar <zohar@linux.vnet.ibm.com>2015-12-24 18:56:45 -0500
commit0112721df4edbdd07b800813300d76811572f080 (patch)
tree9ad07cfcfdd6aedb1c0764187b95646d05b83b1a /include/keys
parent92cc916638a48f285736cd5541536e2e1b73ecf8 (diff)
downloadlinux-0112721df4edbdd07b800813300d76811572f080.tar.gz
linux-0112721df4edbdd07b800813300d76811572f080.tar.bz2
linux-0112721df4edbdd07b800813300d76811572f080.zip
IMA: policy can be updated zero times
Commit "IMA: policy can now be updated multiple times" assumed that the policy would be updated at least once. If there are zero updates, the temporary list head object will get added to the policy list, and later dereferenced as an IMA policy object, which means that invalid memory will be accessed. Changelog: - Move list_empty() test to ima_release_policy(), before audit msg - Mimi Signed-off-by: Sasha Levin <sasha.levin@oracle.com> Signed-off-by: Mimi Zohar <zohar@linux.vnet.ibm.com>
Diffstat (limited to 'include/keys')
0 files changed, 0 insertions, 0 deletions