]> www.infradead.org Git - users/jedix/linux-maple.git/commitdiff
RHEL: uefi: copy secure_boot flag in boot params across kexec
authorBrian Maly <brian.maly@oracle.com>
Thu, 7 Apr 2016 19:42:49 +0000 (15:42 -0400)
committerChuck Anderson <chuck.anderson@oracle.com>
Wed, 1 Jun 2016 15:03:15 +0000 (08:03 -0700)
Orabug: 23511799

(Dave Young) [1243998]

CVE-2015-7837

Signed-off-by: Brian Maly <brian.maly@oracle.com>
arch/x86/kernel/kexec-bzimage64.c

index ca05f86481aace3a37cd6bf3fbe0e7d7ce3bb33a..4c6da4b3a9012e35294d782c265098ea7f8b22ce 100644 (file)
@@ -179,6 +179,7 @@ setup_efi_state(struct boot_params *params, unsigned long params_load_addr,
        if (efi_enabled(EFI_OLD_MEMMAP))
                return 0;
 
+       params->secure_boot = boot_params.secure_boot;
        ei->efi_loader_signature = current_ei->efi_loader_signature;
        ei->efi_systab = current_ei->efi_systab;
        ei->efi_systab_hi = current_ei->efi_systab_hi;