Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

kexec : block arbitrary kexec load #3120

Merged
merged 1 commit into from
Mar 28, 2023
Merged

Conversation

shjala
Copy link
Member

@shjala shjala commented Mar 27, 2023

Toggle kexec_load_disabled and block arbitrary loading of a kernel, this is an attempt to block yet another root-to-kernel transition (beside module signing).

Toggle kexec_load_disabled and block arbitrary loading of a kernel,
as an attempt to prevent root to kernel transition.

Signed-off-by: Shahriyar Jalayeri <shahriyar@zededa.com>
@shjala shjala requested review from eriknordmark and rvs as code owners March 27, 2023 11:09
@shjala shjala requested a review from rouming March 27, 2023 11:10
Copy link
Contributor

@rouming rouming left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good

@rouming rouming merged commit ca5768e into lf-edge:master Mar 28, 2023
@shjala shjala deleted the kexec_block branch March 28, 2023 14:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants