diff mbox series

security: export security_kernel_load_data function

Message ID 20180717202355.2119407-1-arnd@arndb.de
State Accepted
Commit 83a68a06795fa47e77ea758f293a5946e9e02e84
Headers show
Series security: export security_kernel_load_data function | expand

Commit Message

Arnd Bergmann July 17, 2018, 8:23 p.m. UTC
The firmware_loader can be built as a loadable module, which now
fails when CONFIG_SECURITY is enabled, because a call to the
security_kernel_load_data() function got added, and this is
not exported to modules:

ERROR: "security_kernel_load_data" [drivers/base/firmware_loader/firmware_class.ko] undefined!

Add an EXPORT_SYMBOL_GPL() to make it available here.

Fixes: 6e852651f28e ("firmware: add call to LSM hook before firmware sysfs fallback")
Signed-off-by: Arnd Bergmann <arnd@arndb.de>

---
 security/security.c | 1 +
 1 file changed, 1 insertion(+)

-- 
2.9.0

Comments

James Morris July 18, 2018, 4:28 a.m. UTC | #1
On Tue, 17 Jul 2018, Arnd Bergmann wrote:

> The firmware_loader can be built as a loadable module, which now

> fails when CONFIG_SECURITY is enabled, because a call to the

> security_kernel_load_data() function got added, and this is

> not exported to modules:

> 

> ERROR: "security_kernel_load_data" [drivers/base/firmware_loader/firmware_class.ko] undefined!

> 

> Add an EXPORT_SYMBOL_GPL() to make it available here.

> 

> Fixes: 6e852651f28e ("firmware: add call to LSM hook before firmware sysfs fallback")

> Signed-off-by: Arnd Bergmann <arnd@arndb.de>


Thanks!

Applied to
git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security.git next-general


-- 
James Morris
<jmorris@namei.org>
diff mbox series

Patch

diff --git a/security/security.c b/security/security.c
index 03e98be76d58..7f9618eaba10 100644
--- a/security/security.c
+++ b/security/security.c
@@ -1121,6 +1121,7 @@  int security_kernel_load_data(enum kernel_load_data_id id)
 		return ret;
 	return ima_load_data(id);
 }
+EXPORT_SYMBOL_GPL(security_kernel_load_data);
 
 int security_task_fix_setuid(struct cred *new, const struct cred *old,
 			     int flags)