aboutsummaryrefslogtreecommitdiffstats
path: root/scripts/gcc-plugins/sancov_plugin.c
diff options
context:
space:
mode:
authorPaul Durrant <[email protected]>2017-02-13 17:03:24 +0000
committerBoris Ostrovsky <[email protected]>2017-02-14 20:14:59 +0000
commit4610d240d691768203fdd210a5da0a2e02eddb76 (patch)
treeb3f34882aa7607ac00f2184df88a307f96377798 /scripts/gcc-plugins/sancov_plugin.c
parentxen/privcmd: Add IOCTL_PRIVCMD_DM_OP (diff)
downloadkernel-4610d240d691768203fdd210a5da0a2e02eddb76.tar.gz
kernel-4610d240d691768203fdd210a5da0a2e02eddb76.zip
xen/privcmd: add IOCTL_PRIVCMD_RESTRICT
The purpose if this ioctl is to allow a user of privcmd to restrict its operation such that it will no longer service arbitrary hypercalls via IOCTL_PRIVCMD_HYPERCALL, and will check for a matching domid when servicing IOCTL_PRIVCMD_DM_OP or IOCTL_PRIVCMD_MMAP*. The aim of this is to limit the attack surface for a compromised device model. Signed-off-by: Paul Durrant <[email protected]> Signed-off-by: Boris Ostrovsky <[email protected]>
Diffstat (limited to 'scripts/gcc-plugins/sancov_plugin.c')
0 files changed, 0 insertions, 0 deletions