ACK: [SRU X/B/F/G] CVE-2020-27777 Restrict RTAS requests from userspace

Kleber Souza kleber.souza at canonical.com
Thu Dec 3 10:31:11 UTC 2020


On 01.12.20 21:50, Thadeu Lima de Souza Cascardo wrote:
> rtas syscall allow userspace to request any RTAS call (firmware services). This
> should not be unrestricted under lockdown, so filter all requests in any case,
> to allow only those legitimate requests that might be used by real tools.
> 
> 
> 

Acked-by: Kleber Sacilotto de Souza <kleber.souza at canonical.com>



More information about the kernel-team mailing list