diff options
author | Seung-Woo Kim <sw0312.kim@samsung.com> | 2020-08-21 10:10:27 +0900 |
---|---|---|
committer | Seung-Woo Kim <sw0312.kim@samsung.com> | 2020-08-21 10:10:27 +0900 |
commit | 92cdf08e22888de09d94367ca79e866c38f2c3ab (patch) | |
tree | a83fa562d2e7fbece6b0d7776db30198b244bfec | |
parent | 718567d336d0b0943385905bb12707552d8bef66 (diff) | |
download | linux-rpi3-tizen_6.0_hotfix.tar.gz linux-rpi3-tizen_6.0_hotfix.tar.bz2 linux-rpi3-tizen_6.0_hotfix.zip |
Revert "WORKAROUND: security: smack: Allow ptracing even processes in onlycap set"tizen_6.0.m2_releasesubmit/tizen_6.0_hotfix/20201103.115101submit/tizen_6.0_hotfix/20201102.192901submit/tizen_6.0/20201029.205501submit/tizen/20200820.145124accepted/tizen/unified/20200824.030014accepted/tizen/6.0/unified/hotfix/20201103.000028accepted/tizen/6.0/unified/20201030.104525tizen_6.0_hotfixtizen_6.0accepted/tizen_6.0_unified_hotfixaccepted/tizen_6.0_unified
This reverts commit 718567d336d0b0943385905bb12707552d8bef66.
Now crash-worker has System::Privileged privilege, so not anymore
ptrace related workaround is necessary. So revert the workaround.
Change-Id: I42b535e4152eb742df011a5a08324764b49f989a
Signed-off-by: Seung-Woo Kim <sw0312.kim@samsung.com>
-rw-r--r-- | security/smack/smack_lsm.c | 2 |
1 files changed, 0 insertions, 2 deletions
diff --git a/security/smack/smack_lsm.c b/security/smack/smack_lsm.c index a4405f4f12c8..017c47eb795e 100644 --- a/security/smack/smack_lsm.c +++ b/security/smack/smack_lsm.c @@ -441,8 +441,6 @@ static int smk_ptrace_rule_check(struct task_struct *tracer, rc = 0; else if (smack_ptrace_rule == SMACK_PTRACE_DRACONIAN) rc = -EACCES; - else if (smack_ptrace_rule == SMACK_PTRACE_EXACT) - rc = capable(CAP_SYS_PTRACE) != 0 ? 0 : -EACCES; else if (smack_privileged_cred(CAP_SYS_PTRACE, tracercred)) rc = 0; else |