[PATCH] lsm,selinux: pass flowi_common instead of flowi to the LSM hooks

James Morris jmorris at namei.org
Fri Nov 20 03:02:09 UTC 2020


On Thu, 19 Nov 2020, Paul Moore wrote:

> As pointed out by Herbert in a recent related patch, the LSM hooks do
> not have the necessary address family information to use the flowi
> struct safely.  As none of the LSMs currently use any of the protocol
> specific flowi information, replace the flowi pointers with pointers
> to the address family independent flowi_common struct.
> 
> Reported-by: Herbert Xu <herbert at gondor.apana.org.au>
> Signed-off-by: Paul Moore <paul at paul-moore.com>


Acked-by: James Morris <jamorris at linux.microsoft.com>


-- 
James Morris
<jmorris at namei.org>



More information about the Linux-security-module-archive mailing list