]> git.ipfire.org Git - ipfire-2.x.git/commitdiff
kernel: enable CONFIG_HARDENED_USERCOPY on aarch64 and armv5tel
authorPeter Müller <peter.mueller@ipfire.org>
Sun, 7 Jun 2020 16:37:04 +0000 (16:37 +0000)
committerArne Fitzenreiter <arne_f@ipfire.org>
Tue, 9 Jun 2020 15:37:33 +0000 (15:37 +0000)
Fixes: #12365
Signed-off-by: Peter Müller <peter.mueller@ipfire.org>
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
config/kernel/kernel.config.aarch64-ipfire
config/kernel/kernel.config.armv5tel-ipfire-multi

index 8e4f650a54924acb850ad7f476575c7a05b0c80f..e0f2f6df89fdd0fb44a7e28ccc1ae51b09765cb7 100644 (file)
@@ -6541,7 +6541,8 @@ CONFIG_SECURITY_NETWORK=y
 CONFIG_SECURITY_NETWORK_XFRM=y
 # CONFIG_SECURITY_PATH is not set
 CONFIG_HAVE_HARDENED_USERCOPY_ALLOCATOR=y
-# CONFIG_HARDENED_USERCOPY is not set
+CONFIG_HARDENED_USERCOPY=y
+CONFIG_HARDENED_USERCOPY_PAGESPAN=y
 # CONFIG_FORTIFY_SOURCE is not set
 # CONFIG_STATIC_USERMODEHELPER is not set
 # CONFIG_SECURITY_SMACK is not set
index ee63c2392a8e55c999ceb7220c422e42bb69203d..15183300f94cb2691bd9fa43f29e8c0f2e2e24c8 100644 (file)
@@ -7024,7 +7024,8 @@ CONFIG_SECURITY_NETWORK=y
 CONFIG_SECURITY_NETWORK_XFRM=y
 # CONFIG_SECURITY_PATH is not set
 CONFIG_HAVE_HARDENED_USERCOPY_ALLOCATOR=y
-# CONFIG_HARDENED_USERCOPY is not set
+CONFIG_HARDENED_USERCOPY=y
+CONFIG_HARDENED_USERCOPY_PAGESPAN=y
 # CONFIG_STATIC_USERMODEHELPER is not set
 # CONFIG_SECURITY_SMACK is not set
 # CONFIG_SECURITY_TOMOYO is not set