)]}'
{
  "commit": "a48fda9de94500a3152a56b723d0a64ae236547c",
  "tree": "ce58e2299d27c32402d4fb24ee9e77b0e884f713",
  "parents": [
    "594081ee7145cc30a3977cb4e218f81213b63dc5"
  ],
  "author": {
    "name": "Dmitry Kasatkin",
    "email": "d.kasatkin@samsung.com",
    "time": "Tue Oct 28 13:31:22 2014 +0200"
  },
  "committer": {
    "name": "Mimi Zohar",
    "email": "zohar@linux.vnet.ibm.com",
    "time": "Tue Oct 28 10:03:49 2014 -0400"
  },
  "message": "ima: check xattr value length and type in the ima_inode_setxattr()\n\nima_inode_setxattr() can be called with no value. Function does not\ncheck the length so that following command can be used to produce\nkernel oops: setfattr -n security.ima FOO. This patch fixes it.\n\nChanges in v3:\n* for stable reverted \"allow setting hash only in fix or log mode\"\n  It will be a separate patch.\n\nChanges in v2:\n* testing validity of xattr type\n* allow setting hash only in fix or log mode (Mimi)\n\n[  261.562522] BUG: unable to handle kernel NULL pointer dereference at           (null)\n[  261.564109] IP: [\u003cffffffff812af272\u003e] ima_inode_setxattr+0x3e/0x5a\n[  261.564109] PGD 3112f067 PUD 42965067 PMD 0\n[  261.564109] Oops: 0000 [#1] SMP\n[  261.564109] Modules linked in: bridge stp llc evdev serio_raw i2c_piix4 button fuse\n[  261.564109] CPU: 0 PID: 3299 Comm: setxattr Not tainted 3.16.0-kds+ #2924\n[  261.564109] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011\n[  261.564109] task: ffff8800428c2430 ti: ffff880042be0000 task.ti: ffff880042be0000\n[  261.564109] RIP: 0010:[\u003cffffffff812af272\u003e]  [\u003cffffffff812af272\u003e] ima_inode_setxattr+0x3e/0x5a\n[  261.564109] RSP: 0018:ffff880042be3d50  EFLAGS: 00010246\n[  261.564109] RAX: 0000000000000001 RBX: 0000000000000000 RCX: 0000000000000015\n[  261.564109] RDX: 0000001500000000 RSI: 0000000000000000 RDI: ffff8800375cc600\n[  261.564109] RBP: ffff880042be3d68 R08: 0000000000000000 R09: 00000000004d6256\n[  261.564109] R10: 0000000000000000 R11: 0000000000000000 R12: ffff88002149ba00\n[  261.564109] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000\n[  261.564109] FS:  00007f6c1e219740(0000) GS:ffff88005da00000(0000) knlGS:0000000000000000\n[  261.564109] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[  261.564109] CR2: 0000000000000000 CR3: 000000003b35a000 CR4: 00000000000006f0\n[  261.564109] Stack:\n[  261.564109]  ffff88002149ba00 ffff880042be3df8 0000000000000000 ffff880042be3d98\n[  261.564109]  ffffffff812a101b ffff88002149ba00 ffff880042be3df8 0000000000000000\n[  261.564109]  0000000000000000 ffff880042be3de0 ffffffff8116d08a ffff880042be3dc8\n[  261.564109] Call Trace:\n[  261.564109]  [\u003cffffffff812a101b\u003e] security_inode_setxattr+0x48/0x6a\n[  261.564109]  [\u003cffffffff8116d08a\u003e] vfs_setxattr+0x6b/0x9f\n[  261.564109]  [\u003cffffffff8116d1e0\u003e] setxattr+0x122/0x16c\n[  261.564109]  [\u003cffffffff811687e8\u003e] ? mnt_want_write+0x21/0x45\n[  261.564109]  [\u003cffffffff8114d011\u003e] ? __sb_start_write+0x10f/0x143\n[  261.564109]  [\u003cffffffff811687e8\u003e] ? mnt_want_write+0x21/0x45\n[  261.564109]  [\u003cffffffff811687c0\u003e] ? __mnt_want_write+0x48/0x4f\n[  261.564109]  [\u003cffffffff8116d3e6\u003e] SyS_setxattr+0x6e/0xb0\n[  261.564109]  [\u003cffffffff81529da9\u003e] system_call_fastpath+0x16/0x1b\n[  261.564109] Code: 48 89 f7 48 c7 c6 58 36 81 81 53 31 db e8 73 27 04 00 85 c0 75 28 bf 15 00 00 00 e8 8a a5 d9 ff 84 c0 75 05 83 cb ff eb 15 31 f6 \u003c41\u003e 80 7d 00 03 49 8b 7c 24 68 40 0f 94 c6 e8 e1 f9 ff ff 89 d8\n[  261.564109] RIP  [\u003cffffffff812af272\u003e] ima_inode_setxattr+0x3e/0x5a\n[  261.564109]  RSP \u003cffff880042be3d50\u003e\n[  261.564109] CR2: 0000000000000000\n[  261.599998] ---[ end trace 39a89a3fc267e652 ]---\n\nReported-by: Jan Kara \u003cjack@suse.cz\u003e\nSigned-off-by: Dmitry Kasatkin \u003cd.kasatkin@samsung.com\u003e\nCc: stable@vger.kernel.org\nSigned-off-by: Mimi Zohar \u003czohar@linux.vnet.ibm.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "922685483bd3625355af6202bb435728ac62c11f",
      "old_mode": 33188,
      "old_path": "security/integrity/ima/ima_appraise.c",
      "new_id": "7c8f41e618b6bf41bf5909b89335b465d16512c8",
      "new_mode": 33188,
      "new_path": "security/integrity/ima/ima_appraise.c"
    },
    {
      "type": "modify",
      "old_id": "c0379d13dbe16f8d4c9705e1c80fd8b2c7b0e4df",
      "old_mode": 33188,
      "old_path": "security/integrity/integrity.h",
      "new_id": "9d1c2ebfe12a71d872727fe6f36716ec0a03c5d5",
      "new_mode": 33188,
      "new_path": "security/integrity/integrity.h"
    }
  ]
}
