ACK/Cmnt: [SRU X/B/F/G] CVE-2020-27777 Restrict RTAS requests from userspace

Stefan Bader stefan.bader at canonical.com
Wed Dec 2 14:11:01 UTC 2020


On 01.12.20 21:50, Thadeu Lima de Souza Cascardo wrote:
> rtas syscall allow userspace to request any RTAS call (firmware services). This
> should not be unrestricted under lockdown, so filter all requests in any case,
> to allow only those legitimate requests that might be used by real tools.
> 
> 
> 
With extended explanations:

Acked-by: Stefan Bader <stefan.bader at canonical.com>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20201202/ab47211c/attachment.sig>


More information about the kernel-team mailing list