From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1755959AbcG1S3w (ORCPT ); Thu, 28 Jul 2016 14:29:52 -0400 Received: from mail-wm0-f44.google.com ([74.125.82.44]:37115 "EHLO mail-wm0-f44.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1753876AbcG1S3s convert rfc822-to-8bit (ORCPT ); Thu, 28 Jul 2016 14:29:48 -0400 MIME-Version: 1.0 In-Reply-To: References: <1468274222-31726-1-git-send-email-mic@digikod.net> From: Kees Cook Date: Thu, 28 Jul 2016 11:29:45 -0700 X-Google-Sender-Auth: hbmCFCKa3-VVlhAkT1FdavVi2zI Message-ID: Subject: Re: [PATCH v1 0/3] Fix seccomp for UM (next) To: =?UTF-8?B?TWlja2HDq2wgU2FsYcO8bg==?= , James Morris Cc: LKML , Jeff Dike , Richard Weinberger , Olof Johansson , user-mode-linux-devel@lists.sourceforge.net, linux-security-module Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8BIT Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Mon, Jul 11, 2016 at 6:59 PM, Kees Cook wrote: > On Mon, Jul 11, 2016 at 5:56 PM, Mickaël Salaün wrote: >> Hi, >> >> This series fix the recent seccomp update for the User-mode Linux architecture >> (32-bit and 64-bit) since commit 26703c636c1f3272b39bd0f6d04d2e970984f1b6 >> (close the hole where ptrace can change a syscall out from under seccomp). >> >> Regards, >> >> Mickaël Salaün (3): >> um/ptrace: Fix the syscall_trace_leave call >> um/ptrace: Fix the syscall number update after a ptrace >> seccomp: Remove 2-phase API documentation >> >> arch/Kconfig | 11 ----------- >> arch/um/kernel/skas/syscall.c | 10 +++------- >> arch/x86/um/ptrace_32.c | 3 +++ >> arch/x86/um/ptrace_64.c | 4 ++++ >> 4 files changed, 10 insertions(+), 18 deletions(-) > > Ah, perfect! Thanks for fixing this! James, can you pick this up for -next? > > Acked-by: Kees Cook James, can you take these fixes for v4.8? We'll need them for um to work correctly again. (They appear to still be missing from -next.) Thanks! -Kees -- Kees Cook Chrome OS & Brillo Security