Login
[x]
Log in using an account from:
Fedora Account System
Red Hat Associate
Red Hat Customer
Or login using a Red Hat Bugzilla account
Forgot Password
Login:
Hide Forgot
Create an Account
Red Hat Bugzilla – Attachment 922040 Details for
Bug 1115120
cryptsetup-1.6.5-1.fc21 breaks booting when using luks partitions
[?]
New
Simple Search
Advanced Search
My Links
Browse
Requests
Reports
Current State
Search
Tabular reports
Graphical reports
Duplicates
Other Reports
User Changes
Plotly Reports
Bug Status
Bug Severity
Non-Defaults
|
Product Dashboard
Help
Page Help!
Bug Writing Guidelines
What's new
Browser Support Policy
5.0.4.rh83 Release notes
FAQ
Guides index
User guide
Web Services
Contact
Legal
This site requires JavaScript to be enabled to function correctly, please enable it.
[patch]
Properly label AF_ALG socket
0001-crypto-properly-label-AF_ALG-socket.patch (text/plain), 1.23 KB, created by
Milan Broz
on 2014-07-29 06:52:39 UTC
(
hide
)
Description:
Properly label AF_ALG socket
Filename:
MIME Type:
Creator:
Milan Broz
Created:
2014-07-29 06:52:39 UTC
Size:
1.23 KB
patch
obsolete
>From 0d62dd705802b13cd550a1420ad2132a16583d69 Mon Sep 17 00:00:00 2001 >From: Milan Broz <gmazyland@gmail.com> >Date: Tue, 29 Jul 2014 08:38:11 +0200 >Subject: [PATCH] crypto: properly label AF_ALG socket > >Th AF_ALG socket was missing a security label (e.g. SELinux) >which means that socket was in "unlabeled" state. > >This was recently demonstrated in the cryptsetup package >(cryptsetup v1.6.5 and later.) >See https://bugzilla.redhat.com/show_bug.cgi?id=1115120 > >This patch clones the sock's label from the parent sock >and resolves the issue (similar to AF_BLUETOOTH protocol family). > >Cc: stable@vger.kernel.org >Signed-off-by: Milan Broz <gmazyland@gmail.com> >--- > crypto/af_alg.c | 2 ++ > 1 file changed, 2 insertions(+) > >diff --git a/crypto/af_alg.c b/crypto/af_alg.c >index 966f893..6a3ad80 100644 >--- a/crypto/af_alg.c >+++ b/crypto/af_alg.c >@@ -21,6 +21,7 @@ > #include <linux/module.h> > #include <linux/net.h> > #include <linux/rwsem.h> >+#include <linux/security.h> > > struct alg_type_list { > const struct af_alg_type *type; >@@ -243,6 +244,7 @@ int af_alg_accept(struct sock *sk, struct socket *newsock) > > sock_init_data(newsock, sk2); > sock_graft(sk2, newsock); >+ security_sk_clone(sk, sk2); > > err = type->accept(ask->private, sk2); > if (err) { >-- >2.0.1 >
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Diff
View Attachment As Raw
Actions:
View
|
Diff
Attachments on
bug 1115120
:
913791
|
913918
|
913920
|
916950
|
921748
| 922040