[PATCH 17/24] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down

Rafael J. Wysocki rafael at kernel.org
Thu Apr 6 19:43:54 UTC 2017


On Wed, Apr 5, 2017 at 10:16 PM, David Howells <dhowells at redhat.com> wrote:
> From: Josh Boyer <jwboyer at redhat.com>
>
> This option allows userspace to pass the RSDP address to the kernel, which
> makes it possible for a user to circumvent any restrictions imposed on
> loading modules.  Ignore the option when the kernel is locked down.

I'm not really sure here.

What exactly is the mechanism?

Thanks,
Rafael
--
To unsubscribe from this list: send the line "unsubscribe linux-security-module" in
the body of a message to majordomo at vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html



More information about the Linux-security-module-archive mailing list