Skip to content

Add system permissions added to Linux for 6.15#301

Merged
dburgener merged 1 commit intoSELinuxProject:mainfrom
cgzones:kernel_system
Mar 20, 2025
Merged

Add system permissions added to Linux for 6.15#301
dburgener merged 1 commit intoSELinuxProject:mainfrom
cgzones:kernel_system

Conversation

@cgzones
Copy link
Contributor

@cgzones cgzones commented Mar 20, 2025

For deciding whether a permission of the system class is a userspace or kernel one the kernel ones are hardcoded. Add the ones to be introduced in Linux 6.15 with commit 2c2b1e059792 ("selinux: add permission checks for loading other kinds of kernel files").

See SELinuxProject/selinux-kernel@2c2b1e0

For deciding whether a permission of the system class is a userspace or
kernel one the kernel ones are hardcoded.  Add the ones to be introduced
in Linux 6.15 with commit 2c2b1e059792 ("selinux: add permission checks
for loading other kinds of kernel files").

See SELinuxProject/selinux-kernel@2c2b1e0
@dburgener
Copy link
Member

Thanks! I did the notebook update for these, but forgot about this special casing in SELint. Good catch.

@dburgener dburgener merged commit a6caa65 into SELinuxProject:main Mar 20, 2025
3 checks passed
@cgzones cgzones deleted the kernel_system branch March 23, 2025 10:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants