linux-security-module.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* Should PCI "new_id" support be disabled when kernel is locked down?
@ 2019-09-04 15:59 Ian Abbott
  2019-09-04 16:47 ` Matthew Garrett
  0 siblings, 1 reply; 2+ messages in thread
From: Ian Abbott @ 2019-09-04 15:59 UTC (permalink / raw)
  To: linux-security-module; +Cc: linux-pci

Hello,

The "new_id" PCI driver sysfs attribute can be used to make an arbitrary 
PCI driver match an arbitrary PCI vendor/device ID.  That could easily 
crash the kernel or at least make it do weird things if used 
inappropriately.  Is this scenario in scope for the "lockdown" security 
module?

-- 
-=( Ian Abbott <abbotti@mev.co.uk> || Web: www.mev.co.uk )=-
-=( MEV Ltd. is a company registered in England & Wales. )=-
-=( Registered number: 02862268.  Registered address:    )=-
-=( 15 West Park Road, Bramhall, STOCKPORT, SK7 3JZ, UK. )=-

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2019-09-04 16:47 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2019-09-04 15:59 Should PCI "new_id" support be disabled when kernel is locked down? Ian Abbott
2019-09-04 16:47 ` Matthew Garrett

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).