kernel-ark/security/selinux/ss
Stephen Smalley 45e5421eb5 SELinux: add more validity checks on policy load
Add more validity checks at policy load time to reject malformed
policies and prevent subsequent out-of-range indexing when in permissive
mode.  Resolves the NULL pointer dereference reported in
https://bugzilla.redhat.com/show_bug.cgi?id=357541.

Signed-off-by:  Stephen Smalley <sds@tycho.nsa.gov>
Signed-off-by: James Morris <jmorris@namei.org>
2007-11-08 08:56:23 +11:00
..
avtab.c SELinux: add more validity checks on policy load 2007-11-08 08:56:23 +11:00
avtab.h SELinux: add more validity checks on policy load 2007-11-08 08:56:23 +11:00
conditional.c SELinux: add more validity checks on policy load 2007-11-08 08:56:23 +11:00
conditional.h
constraint.h
context.h
ebitmap.c
ebitmap.h
hashtab.c
hashtab.h
Makefile
mls_types.h
mls.c SELinux: add more validity checks on policy load 2007-11-08 08:56:23 +11:00
mls.h SELinux: add more validity checks on policy load 2007-11-08 08:56:23 +11:00
policydb.c SELinux: add more validity checks on policy load 2007-11-08 08:56:23 +11:00
policydb.h SELinux: add more validity checks on policy load 2007-11-08 08:56:23 +11:00
services.c
services.h
sidtab.c
sidtab.h
symtab.c
symtab.h