Files
linux-legacy/kernel
Kees Cook bbfc380c69 syslog: distinguish between /proc/kmsg and syscalls
This allows the LSM to distinguish between syslog functions originating
from /proc/kmsg access and direct syscalls.  By default, the commoncaps
will now no longer require CAP_SYS_ADMIN to read an opened /proc/kmsg
file descriptor.  For example the kernel syslog reader can now drop
privileges after opening /proc/kmsg, instead of staying privileged with
CAP_SYS_ADMIN.  MAC systems that implement security_syslog have unchanged
behavior.

Signed-off-by: Kees Cook <kees.cook@canonical.com>
2010-11-13 09:54:07 -06:00
..
2009-07-12 12:22:34 -07:00
2009-12-18 13:43:19 -08:00
2009-06-24 00:02:38 -04:00
2009-06-24 00:02:38 -04:00
2009-07-29 19:10:35 -07:00
2010-04-01 15:55:26 -07:00
2009-06-16 19:47:48 -07:00
2009-07-10 17:32:55 +02:00
2009-05-15 07:56:24 -05:00
2009-07-08 09:31:56 -07:00
2009-07-27 12:15:46 -07:00
2009-06-18 13:03:56 -07:00
2009-07-24 15:30:45 -04:00
2009-11-09 16:22:22 -08:00
2009-06-18 13:03:55 -07:00
2009-03-30 22:05:16 +10:30
2009-08-07 10:39:55 -07:00
2009-06-16 19:47:48 -07:00
2009-12-08 10:21:16 -08:00
2009-06-18 13:03:55 -07:00