diff options
author | Casey Schaufler <casey@schaufler-ca.com> | 2011-02-09 01:36:24 +0100 |
---|---|---|
committer | James Morris <jmorris@namei.org> | 2011-02-09 08:50:23 +0100 |
commit | 0e0a070d3a47d279de66e08244769556deae2eee (patch) | |
tree | 8d9c07464833076a40c1d95dd2f8f33716509290 /security/smack/smack.h | |
parent | CacheFiles: Add calls to path-based security hooks (diff) | |
download | linux-0e0a070d3a47d279de66e08244769556deae2eee.tar.xz linux-0e0a070d3a47d279de66e08244769556deae2eee.zip |
Smack: correct behavior in the mmap hook
The mmap policy enforcement was not properly handling the
interaction between the global and local rule lists.
Instead of going through one and then the other, which
missed the important case where a rule specified that
there should be no access, combine the access limitations
where there is a rule in each list.
Signed-off-by: Casey Schaufler <casey@schaufler-ca.com>
Signed-off-by: James Morris <jmorris@namei.org>
Diffstat (limited to 'security/smack/smack.h')
0 files changed, 0 insertions, 0 deletions