No description
  • C 98.2%
  • Assembly 1%
  • Makefile 0.3%
  • Shell 0.2%
  • Python 0.1%
Find a file
Repository files (latest commit first)
Filename Latest commit message Latest commit date
Sargun Dhillon de7cd9dfc5 samples/seccomp: Zero out members based on seccomp_notif_sizes
commit 771b894f2f3dfedc2ba5561731fffa0e39b1bbb6 upstream.

The sizes by which seccomp_notif and seccomp_notif_resp are allocated are
based on the SECCOMP_GET_NOTIF_SIZES ioctl. This allows for graceful
extension of these datastructures. If userspace zeroes out the
datastructure based on its version, and it is lagging behind the kernel's
version, it will end up sending trailing garbage. On the other hand,
if it is ahead of the kernel version, it will write extra zero space,
and potentially cause corruption.

Signed-off-by: Sargun Dhillon <sargun@sargun.me>
Suggested-by: Tycho Andersen <tycho@tycho.ws>
Link: https://lore.kernel.org/r/20191230203503.4925-1-sargun@sargun.me
Fixes: fec7b66905 ("samples: add an example of seccomp user trap")
Cc: stable@vger.kernel.org
Signed-off-by: Kees Cook <keescook@chromium.org>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
2020-01-09 10:19:57 +01:00
arch mm/memory_hotplug: shrink zones when offlining memory 2020-01-09 10:19:56 +01:00
block block: add bio_truncate to fix guard_bio_eod 2020-01-09 10:19:54 +01:00
certs
crypto
Documentation dt-bindings: Improve validation build error handling 2020-01-04 19:18:11 +01:00
drivers media: cec: check 'transmit_in_progress', not 'transmitting' 2020-01-09 10:19:56 +01:00
fs locks: print unsigned ino in /proc/locks 2020-01-09 10:19:57 +01:00
include mm/memory_hotplug: shrink zones when offlining memory 2020-01-09 10:19:56 +01:00
init
ipc
kernel seccomp: Check that seccomp_notif is zeroed out by the user 2020-01-09 10:19:57 +01:00
lib
LICENSES
mm mm/oom: fix pgtables units mismatch in Killed process message 2020-01-09 10:19:57 +01:00
net netfilter: nft_tproxy: Fix port selector on Big Endian 2020-01-09 10:19:54 +01:00
samples samples/seccomp: Zero out members based on seccomp_notif_sizes 2020-01-09 10:19:57 +01:00
scripts gcc-plugins: make it possible to disable CONFIG_GCC_PLUGINS again 2020-01-09 10:19:57 +01:00
security tomoyo: Don't use nifty names on sockets. 2020-01-04 19:18:42 +01:00
sound ALSA: hda/realtek - Add headset Mic no shutup for ALC283 2020-01-09 10:19:55 +01:00
tools selftests/seccomp: Zero out seccomp_notif 2020-01-09 10:19:57 +01:00
usr
virt
.clang-format
.cocciconfig
.get_maintainer.ignore
.gitattributes
.gitignore
.mailmap
COPYING
CREDITS
Kbuild
Kconfig
MAINTAINERS
Makefile Linux 5.4.8 2020-01-04 19:19:19 +01:00
README

Linux kernel
============

There are several guides for kernel developers and users. These guides can
be rendered in a number of formats, like HTML and PDF. Please read
Documentation/admin-guide/README.rst first.

In order to build the documentation, use ``make htmldocs`` or
``make pdfdocs``.  The formatted documentation can also be read online at:

    https://www.kernel.org/doc/html/latest/

There are various text files in the Documentation/ subdirectory,
several of them using the Restructured Text markup notation.

Please read the Documentation/process/changes.rst file, as it contains the
requirements for building and running the kernel, and information about
the problems which may result by upgrading your kernel.