Received: by 2002:a05:6a10:9848:0:0:0:0 with SMTP id x8csp3589657pxf; Mon, 22 Mar 2021 09:55:12 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwyRreinytuSXh9stiO2AVYdzE11nFuUeWsCQqxh4T8KrNH25Rp8adXH75XwkX3Uk73FJ0e X-Received: by 2002:a50:eb8f:: with SMTP id y15mr521964edr.115.1616432112261; Mon, 22 Mar 2021 09:55:12 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1616432112; cv=none; d=google.com; s=arc-20160816; b=yruAIDNONvPznjHQAAKcnC4ggRCb57X/BrDo1KfKunRz7SyT4wf4vBZs5iLVmfq9DV Z2yStxD34jjWb73/L1GbSn0fE2pKy6jkPyO7RTi0KgsIFsOFNjxWOPZDAH/GRA0gmUkh CvgV8M/Yd2PUHJREppuiG4Vz9hCFT/q+URlcQTcJSbEOmskU16Z4uiAmrD4C7/+3N1R2 UToVbsY7MuWcfQ0qdLmHjqKuM0MDv6Iebel/S5BhnVBXPvKZXsBA6aeyUtYDv/+pE6KB +B+OnuMkASZes/y9vZwlcdNgqPe0VcpiWoS6UkT+UaI3dmaXyryXQQFg2BwztqCF26LE XTMQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:cc:to:subject:message-id:date:from:mime-version :dkim-signature; bh=TQd+DG5DK7GKR790ZQ/IR8XB7thSHl9oxqPLUyu5X30=; b=Ym6Bfdk9QjZ830HUVHFq3DaM8NrLoWWQhyvKQQD+MkU79OEKtlxjIImrdh1pprta34 1Z4H4oATZakQestT8gA53aVUkylJzBoFKb+b2dUN7CNYQR4sIhObR5qMcXOsCE8kpyMF oTOOYoRml1PQ7EhWinEMt75R8TlgEjEXm+1rtKAgSVeC6GkoSLOQO+Bgu6DJuNC1SQS3 gLPKl7qXtos8G8UmiRG4rwY5UQJBdVpmwHmvcqxjv9LBeAMwxs8rK/g2cLESzdnOB6G9 ZHfzsuKd7qAjRrBhPtY6HCISWVMrxLscuPUP3VHK9SEBiXMYV/yty9Z6LMHk6qhEtsWv nXJA== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@paul-moore-com.20150623.gappssmtp.com header.s=20150623 header.b=sQQtwdtk; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id d1si12629207ejz.282.2021.03.22.09.54.49; Mon, 22 Mar 2021 09:55:12 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@paul-moore-com.20150623.gappssmtp.com header.s=20150623 header.b=sQQtwdtk; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S230039AbhCVQwm (ORCPT + 99 others); Mon, 22 Mar 2021 12:52:42 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:52246 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S231313AbhCVQwK (ORCPT ); Mon, 22 Mar 2021 12:52:10 -0400 Received: from mail-ed1-x530.google.com (mail-ed1-x530.google.com [IPv6:2a00:1450:4864:20::530]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 31315C061762 for ; Mon, 22 Mar 2021 09:52:10 -0700 (PDT) Received: by mail-ed1-x530.google.com with SMTP id w18so20247271edc.0 for ; Mon, 22 Mar 2021 09:52:10 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=paul-moore-com.20150623.gappssmtp.com; s=20150623; h=mime-version:from:date:message-id:subject:to:cc; bh=TQd+DG5DK7GKR790ZQ/IR8XB7thSHl9oxqPLUyu5X30=; b=sQQtwdtknuPswfoN2PMQqY3poclxpLp/+bhNFuLzq2Gi7DaFo0KKqrl4wmkcWSsNTf ijpUo5li5bWNW838CBZ2E77mkpnHA3h0TGK69tD7t6k1wqCu+TYNoy/SpExy7VExwtfn 4pBr7kCf25Bfbln/fwnKWk24nlVBwf6p+/FXG0NIBmIUWtYY4ZwMaJFmRCqMvWQPNOK4 YPbxJgVj5WBiO955rYZ2lySL1xbWxHo+hfihltppc8OSjDIn5OckVCqZ8j6GUTcggoSQ C0UwoU3k+306ziFnAO6Ta3YETibV2MVT5wkzp7k2xgXyNLrlUzEXYQqxXNTkGXdPWhh9 /Pwg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:from:date:message-id:subject:to:cc; bh=TQd+DG5DK7GKR790ZQ/IR8XB7thSHl9oxqPLUyu5X30=; b=j7Diure3vytzv3Q9RqpW9SiJ//HV7ltFT55zZylZwqUyweYaULwzyZ2d7VtsPXxgt8 N6dNF1XYFC8W0aia6w9YPREVNI5vr9nBjhMS+mMUZHzW5niX/QDXweHdSILcRjABVooJ DFVGfsDVJSDSWSVYXjrodHPbC0KK1/02jrXQcH1DFMDuYxJhLF4dHyIVjEMOr4ZWbw5w vWU+oziaTV4GmTSAy0K4niZT1QyBZa4n7f5c5NUjhj2TUSZcmQKYF5K46f+XMCZt5D8d 2nc53mmmFBCCxj8ZDaV6JedRwrMjnSjUVdLmajLcTmSOXApxK63JmgQXjtvZ1xlqFWkZ aavw== X-Gm-Message-State: AOAM530ClMtEdP9/OVjt5YID5Q/NQSWf+VAG+st2bcLqIb9aeczB40fv cIPgfmTghN2X2N3dOYoaEMZD8gKa9TSdQzWIYVlpp0fegNGGZls= X-Received: by 2002:a05:6402:1cc1:: with SMTP id ds1mr492609edb.135.1616431928741; Mon, 22 Mar 2021 09:52:08 -0700 (PDT) MIME-Version: 1.0 From: Paul Moore Date: Mon, 22 Mar 2021 12:51:58 -0400 Message-ID: Subject: [GIT PULL] SELinux fixes for v5.12 (#1) To: Linus Torvalds Cc: selinux@vger.kernel.org, linux-security-module@vger.kernel.org, linux-kernel@vger.kernel.org Content-Type: text/plain; charset="UTF-8" Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Hi Linus, Three SELinux patches to address problems in v5.12, and earlier, kernels: * Fix a problem where a local variable is used outside its associated function. Thankfully this can only be triggered by reloading the SELinux policy, which is a restricted operation for other obvious reasons. * Fix some incorrect, and inconsistent, audit and printk messages when loading the SELinux policy. All three patches are relatively minor and have been through our testing with no failures, please merge them for the next v5.12-rcX release. Thanks. -- The following changes since commit 365982aba1f264dba26f0908700d62bfa046918c: fs: anon_inodes: rephrase to appropriate kernel-doc (2021-01-15 12:17:25 -0500) are available in the Git repository at: https://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux.git tags/selinux-pr-20210322 for you to fetch changes up to ee5de60a08b7d8d255722662da461ea159c15538: selinuxfs: unify policy load error reporting (2021-03-18 23:26:59 -0400) ---------------------------------------------------------------- selinux/stable-5.12 PR 20210322 ---------------------------------------------------------------- Ondrej Mosnacek (3): selinux: don't log MAC_POLICY_LOAD record on failed policy load selinux: fix variable scope issue in live sidtab conversion selinuxfs: unify policy load error reporting security/selinux/include/security.h | 15 ++++++--- security/selinux/selinuxfs.c | 22 ++++++------- security/selinux/ss/services.c | 63 +++++++++++++++++++++------------ 3 files changed, 59 insertions(+), 41 deletions(-) -- paul moore www.paul-moore.com