lockdown: Prohibit PCMCIA CIS storage when the kernel is locked down
authorDavid Howells <dhowells@redhat.com>
Tue, 20 Aug 2019 00:17:53 +0000 (17:17 -0700)
committerJames Morris <jmorris@namei.org>
Tue, 20 Aug 2019 04:54:16 +0000 (21:54 -0700)
commit3f19cad3fa0d0fff18ee126f03a80420ae7bcbc9
tree68225b93a0b22cfd1846c9d5416566ed3cf5455f
parent6ea0e815fc5e18597724169caa6e4d46dd8e693d
lockdown: Prohibit PCMCIA CIS storage when the kernel is locked down

Prohibit replacement of the PCMCIA Card Information Structure when the
kernel is locked down.

Suggested-by: Dominik Brodowski <linux@dominikbrodowski.net>
Signed-off-by: David Howells <dhowells@redhat.com>
Signed-off-by: Matthew Garrett <mjg59@google.com>
Reviewed-by: Kees Cook <keescook@chromium.org>
Signed-off-by: James Morris <jmorris@namei.org>
drivers/pcmcia/cistpl.c
include/linux/security.h
security/lockdown/lockdown.c