]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
selinux: ignore unknown extended permissions
authorThiébaud Weksteen <tweek@google.com>
Thu, 5 Dec 2024 01:09:19 +0000 (12:09 +1100)
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>
Thu, 9 Jan 2025 12:25:01 +0000 (13:25 +0100)
commit712137b177b45f255ce5687e679d950fcb218256
tree6e2922bcfcd64036b2d24a6cab9fe414e0790c65
parent36c569dfa72441eb9e8452d670cf3164d9938d3a
selinux: ignore unknown extended permissions

commit 900f83cf376bdaf798b6f5dcb2eae0c822e908b6 upstream.

When evaluating extended permissions, ignore unknown permissions instead
of calling BUG(). This commit ensures that future permissions can be
added without interfering with older kernels.

Cc: stable@vger.kernel.org
Fixes: fa1aa143ac4a ("selinux: extended permissions for ioctls")
Signed-off-by: Thiébaud Weksteen <tweek@google.com>
Signed-off-by: Paul Moore <paul@paul-moore.com>
Acked-by: Paul Moore <paul@paul-moore.com>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
security/selinux/ss/services.c