mirror of https://codeberg.org/hako/Rosenthal.git
* rosenthal/packages/patches/linux-hardened-xanmod-adaption.patch: New file. * rosenthal/packages/linux.scm (%hardened-revision) (linux-hardened-patch-for-xanmod): New variables. (linux-xanmod-source)[patches]: Add linux-hardened-patch-for-xanmod.remotes/origin/cloudflared-unbundle
parent
e30e13349f
commit
5469ef7ff2
2 changed files with 41 additions and 3 deletions
@ -0,0 +1,27 @@ |
|||||||
|
diff --git a/linux-hardened-6.0.10-hardened1.patch b/linux-hardened-6.0.10-hardened1.patch
|
||||||
|
index 9cc8a0f..e7e71a7 100644
|
||||||
|
--- a/linux-hardened-6.0.10-hardened1.patch
|
||||||
|
+++ b/linux-hardened-6.0.10-hardened1.patch
|
||||||
|
@@ -1545,22 +1545,6 @@ index 205d605cacc5b..26c15bed8f7b4 100644
|
||||||
|
int proc_dointvec_jiffies(struct ctl_table *table, int write,
|
||||||
|
void *buffer, size_t *lenp, loff_t *ppos)
|
||||||
|
{
|
||||||
|
-@@ -1649,6 +1687,15 @@ static struct ctl_table kern_table[] = {
|
||||||
|
- .mode = 0644,
|
||||||
|
- .proc_handler = proc_dointvec,
|
||||||
|
- },
|
||||||
|
-+#ifdef CONFIG_USER_NS
|
||||||
|
-+ {
|
||||||
|
-+ .procname = "unprivileged_userns_clone",
|
||||||
|
-+ .data = &unprivileged_userns_clone,
|
||||||
|
-+ .maxlen = sizeof(int),
|
||||||
|
-+ .mode = 0644,
|
||||||
|
-+ .proc_handler = proc_dointvec,
|
||||||
|
-+ },
|
||||||
|
-+#endif
|
||||||
|
- #ifdef CONFIG_PROC_SYSCTL
|
||||||
|
- {
|
||||||
|
- .procname = "tainted",
|
||||||
|
@@ -2498,6 +2545,7 @@ EXPORT_SYMBOL(proc_douintvec);
|
||||||
|
EXPORT_SYMBOL(proc_dointvec_jiffies);
|
||||||
|
EXPORT_SYMBOL(proc_dointvec_minmax);
|
Loading…
Reference in new issue