Re: [PATCH v10] tpm: Map the ACPI provided event log

2025-01-17 Thread Jarkko Sakkinen
On Fri Jan 17, 2025 at 3:22 PM EET, Takashi Iwai wrote: > On Fri, 17 Jan 2025 14:15:05 +0100, > Jarkko Sakkinen wrote: > > > > On Fri Jan 17, 2025 at 2:41 PM EET, Takashi Iwai wrote: > > > On Wed, 15 Jan 2025 23:42:56 +0100, > > > Jarkko Sakkinen wrote: > > > > > > > > The following failure was r

Re: [PATCH v2] ima: kexec: silence RCU list traversal warning

2025-01-17 Thread Mimi Zohar
On Thu, 2025-01-16 at 03:23 -0800, Breno Leitao wrote: > Hello Mimi, > > On Thu, Nov 21, 2024 at 01:57:12AM -0800, Breno Leitao wrote: > > The ima_measurements list is append-only and doesn't require > > rcu_read_lock() protection. However, lockdep issues a warning when > > traversing RCU lists wi

[GIT PULL] integrity: subsystem updates for v6.14

2025-01-17 Thread Mimi Zohar
Hi Linus, There's just a couple of changes: 2 kernel messages addressed, a measurement policy collision addressed, and 1 policy cleanup. Please note that the contents of the IMA measurement list is potentially affected. The builtin tmpfs IMA policy rule cha

Re: [GIT PULL] integrity: subsystem updates for v6.13 (please ignore)

2025-01-17 Thread Mimi Zohar
Linus, Please ignore this pull request. Will resend shortly. Mimi

[GIT PULL] integrity: subsystem updates for v6.13

2025-01-17 Thread Mimi Zohar
Hi Linus, There's just a couple of changes: 2 kernel messages addressed, a measurement policy collision addressed, and 1 policy cleanup. Please note that the contents of the IMA measurement list

Re: [PATCH v2 5/7] ima: Set security.ima on file close when ima_appraise=fix

2025-01-17 Thread Roberto Sassu
On Wed, 2025-01-15 at 08:46 -0500, Mimi Zohar wrote: > Please use "__fput()" rather than "file close". Perhaps update the subject > line to > something like "ima: Defer fixing security.ima to __fput()". > > On Thu, 2024-11-28 at 11:06 +0100, Roberto Sassu wrote: > > From: Roberto Sassu > > >

Re: [PATCH v1] selftests: Handle old glibc without execveat(2)

2025-01-17 Thread Günther Noack
On Wed, Jan 15, 2025 at 03:47:50PM +0100, Mickaël Salaün wrote: > Add an execveat(2) wrapper because glibc < 2.34 does not have one. This > fixes the check-exec tests and samples. > > Cc: Günther Noack > Cc: Jeff Xu > Cc: Kees Cook > Cc: Mimi Zohar > Cc: Paul Moore > Cc: Roberto Sassu > Cc:

Re: [PATCH v10] tpm: Map the ACPI provided event log

2025-01-17 Thread Takashi Iwai
On Fri, 17 Jan 2025 14:15:05 +0100, Jarkko Sakkinen wrote: > > On Fri Jan 17, 2025 at 2:41 PM EET, Takashi Iwai wrote: > > On Wed, 15 Jan 2025 23:42:56 +0100, > > Jarkko Sakkinen wrote: > > > > > > The following failure was reported: > > > > > > [ 10.693310][T1] tpm_tis STM0925:00: 2.0 TPM

Re: [PATCH v10] tpm: Map the ACPI provided event log

2025-01-17 Thread Jarkko Sakkinen
On Fri Jan 17, 2025 at 2:41 PM EET, Takashi Iwai wrote: > On Wed, 15 Jan 2025 23:42:56 +0100, > Jarkko Sakkinen wrote: > > > > The following failure was reported: > > > > [ 10.693310][T1] tpm_tis STM0925:00: 2.0 TPM (device-id 0x3, rev-id 0) > > [ 10.848132][T1] [ cut here

Re: [PATCH v10] tpm: Map the ACPI provided event log

2025-01-17 Thread Takashi Iwai
On Wed, 15 Jan 2025 23:42:56 +0100, Jarkko Sakkinen wrote: > > The following failure was reported: > > [ 10.693310][T1] tpm_tis STM0925:00: 2.0 TPM (device-id 0x3, rev-id 0) > [ 10.848132][T1] [ cut here ] > [ 10.853559][T1] WARNING: CPU: 59 PID: 1 at mm/