Re: [PATCH 04/27] Restrict /dev/mem and /dev/kmem when the kernel is locked down
From: James Morris <hidden>
Date: 2017-10-20 23:22:09
Also in:
linux-security-module, lkml
From: James Morris <hidden>
Date: 2017-10-20 23:22:09
Also in:
linux-security-module, lkml
On Thu, 19 Oct 2017, David Howells wrote:
From: Matthew Garrett <redacted> Allowing users to write to address space makes it possible for the kernel to be subverted, avoiding module loading restrictions. Prevent this when the kernel has been locked down. Signed-off-by: Matthew Garrett <redacted> Signed-off-by: David Howells <dhowells@redhat.com>
Reviewed-by: James Morris <redacted> -- James Morris [off-list ref]