diff options
| author | Stephen Smalley <[email protected]> | 2019-11-22 17:22:44 +0000 |
|---|---|---|
| committer | Paul Moore <[email protected]> | 2019-12-09 23:28:56 +0000 |
| commit | 1a37079c236d55fb31ebbf4b59945dab8ec8764c (patch) | |
| tree | 7981c80629949905c03d4ca9618c6448e0983236 /security/selinux/netnode.c | |
| parent | security,lockdown,selinux: implement SELinux lockdown (diff) | |
| download | kernel-1a37079c236d55fb31ebbf4b59945dab8ec8764c.tar.gz kernel-1a37079c236d55fb31ebbf4b59945dab8ec8764c.zip | |
selinux: revert "stop passing MAY_NOT_BLOCK to the AVC upon follow_link"
This reverts commit e46e01eebbbc ("selinux: stop passing MAY_NOT_BLOCK
to the AVC upon follow_link"). The correct fix is to instead fall
back to ref-walk if audit is required irrespective of the specific
audit data type. This is done in the next commit.
Fixes: e46e01eebbbc ("selinux: stop passing MAY_NOT_BLOCK to the AVC upon follow_link")
Reported-by: Will Deacon <[email protected]>
Signed-off-by: Stephen Smalley <[email protected]>
Signed-off-by: Paul Moore <[email protected]>
Diffstat (limited to 'security/selinux/netnode.c')
0 files changed, 0 insertions, 0 deletions
