firmware_class: perform new LSM checks
authorKees Cook <keescook@chromium.org>
Tue, 25 Feb 2014 21:06:00 +0000 (13:06 -0800)
committerKees Cook <keescook@chromium.org>
Fri, 25 Jul 2014 18:47:45 +0000 (11:47 -0700)
commit6593d9245bc66e6e3cf4ba6d365a7833110c1402
tree144e17a8279a61a3c93ad467f1c37c6281db7e35
parent13752fe2d7f2d41c2fd92a5d1b1c6e38c4de0c05
firmware_class: perform new LSM checks

This attaches LSM hooks to the existing firmware loading interfaces:
filesystem-found firmware and demand-loaded blobs. On errors, loads
are aborted and the failure code is returned to userspace.

Signed-off-by: Kees Cook <keescook@chromium.org>
Reviewed-by: Takashi Iwai <tiwai@suse.de>
Acked-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
drivers/base/firmware_class.c