defconfig: msm: Enable hardened user copy
Hardened user copy provides an extra layer of security checks when copy_to_user/copy_from_user APIs are used to ensure data accesses are valid. When invalid accesses are detected the kernel will forcibly crash. Change-Id: Ie13ef8a6ee1a3431d43c57a4b7d6e14985e5c33a Signed-off-by: Ramakrishna Gottimukkula <rgottimu@codeaurora.org>
This commit is contained in:
parent
560d31410c
commit
2e7b372155
4 changed files with 4 additions and 0 deletions
|
@ -656,6 +656,7 @@ CONFIG_CORESIGHT_QPDI=y
|
||||||
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
||||||
CONFIG_PFK=y
|
CONFIG_PFK=y
|
||||||
CONFIG_SECURITY=y
|
CONFIG_SECURITY=y
|
||||||
|
CONFIG_HARDENED_USERCOPY=y
|
||||||
CONFIG_SECURITY_SELINUX=y
|
CONFIG_SECURITY_SELINUX=y
|
||||||
CONFIG_SECURITY_SMACK=y
|
CONFIG_SECURITY_SMACK=y
|
||||||
CONFIG_CRYPTO_ECHAINIV=y
|
CONFIG_CRYPTO_ECHAINIV=y
|
||||||
|
|
|
@ -694,6 +694,7 @@ CONFIG_CORESIGHT_QPDI=y
|
||||||
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
||||||
CONFIG_PFK=y
|
CONFIG_PFK=y
|
||||||
CONFIG_SECURITY=y
|
CONFIG_SECURITY=y
|
||||||
|
CONFIG_HARDENED_USERCOPY=y
|
||||||
CONFIG_SECURITY_SELINUX=y
|
CONFIG_SECURITY_SELINUX=y
|
||||||
CONFIG_SECURITY_SMACK=y
|
CONFIG_SECURITY_SMACK=y
|
||||||
CONFIG_CRYPTO_ECHAINIV=y
|
CONFIG_CRYPTO_ECHAINIV=y
|
||||||
|
|
|
@ -640,6 +640,7 @@ CONFIG_CORESIGHT_QPDI=y
|
||||||
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
||||||
CONFIG_PFK=y
|
CONFIG_PFK=y
|
||||||
CONFIG_SECURITY=y
|
CONFIG_SECURITY=y
|
||||||
|
CONFIG_HARDENED_USERCOPY=y
|
||||||
CONFIG_SECURITY_SELINUX=y
|
CONFIG_SECURITY_SELINUX=y
|
||||||
CONFIG_SECURITY_SMACK=y
|
CONFIG_SECURITY_SMACK=y
|
||||||
CONFIG_CRYPTO_ECHAINIV=y
|
CONFIG_CRYPTO_ECHAINIV=y
|
||||||
|
|
|
@ -713,6 +713,7 @@ CONFIG_CORESIGHT_QPDI=y
|
||||||
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
CONFIG_CORESIGHT_SOURCE_DUMMY=y
|
||||||
CONFIG_PFK=y
|
CONFIG_PFK=y
|
||||||
CONFIG_SECURITY=y
|
CONFIG_SECURITY=y
|
||||||
|
CONFIG_HARDENED_USERCOPY=y
|
||||||
CONFIG_SECURITY_SELINUX=y
|
CONFIG_SECURITY_SELINUX=y
|
||||||
CONFIG_SECURITY_SMACK=y
|
CONFIG_SECURITY_SMACK=y
|
||||||
CONFIG_CRYPTO_ECHAINIV=y
|
CONFIG_CRYPTO_ECHAINIV=y
|
||||||
|
|
Loading…
Add table
Reference in a new issue