]> git.baikalelectronics.ru Git - kernel.git/commit
IMA: Check IMA policy flag
authorLakshmi Ramasubramanian <nramas@linux.microsoft.com>
Wed, 11 Dec 2019 16:47:02 +0000 (08:47 -0800)
committerMimi Zohar <zohar@linux.ibm.com>
Thu, 12 Dec 2019 13:53:50 +0000 (08:53 -0500)
commit10ed663c62a3d1b050ff1f7d8f367ffb85be49a2
tree61b6b5e8886362274b1b97e46e3be309762bacb9
parentacac7b511b4684afed22dd244366cb7dc4a69596
IMA: Check IMA policy flag

process_buffer_measurement() may be called prior to IMA being
initialized (for instance, when the IMA hook is called when
a key is added to the .builtin_trusted_keys keyring), which
would result in a kernel panic.

This patch adds the check in process_buffer_measurement()
to return immediately if IMA is not initialized yet.

Signed-off-by: Lakshmi Ramasubramanian <nramas@linux.microsoft.com>
Signed-off-by: Mimi Zohar <zohar@linux.ibm.com>
security/integrity/ima/ima_main.c