diff options
author | 2025-01-10 14:21:22 +0000 | |
---|---|---|
committer | 2025-01-13 06:46:50 +0100 | |
commit | 2f83e38a095f8bf7c6029883d894668b03b9bd93 (patch) | |
tree | e83591c9a7cb13aaf96764b0e389f70c90f80756 /net/lapb/lapb_timer.c | |
parent | tty: xilinx_uartps: split sysrq handling (diff) | |
download | wireguard-linux-2f83e38a095f8bf7c6029883d894668b03b9bd93.tar.xz wireguard-linux-2f83e38a095f8bf7c6029883d894668b03b9bd93.zip |
tty: Permit some TIOCL_SETSEL modes without CAP_SYS_ADMIN
With this, processes without CAP_SYS_ADMIN are able to use TIOCLINUX with
subcode TIOCL_SETSEL, in the selection modes TIOCL_SETPOINTER,
TIOCL_SELCLEAR and TIOCL_SELMOUSEREPORT.
TIOCL_SETSEL was previously changed to require CAP_SYS_ADMIN, as this IOCTL
let callers change the selection buffer and could be used to simulate
keypresses. These three TIOCL_SETSEL selection modes, however, are safe to
use, as they do not modify the selection buffer.
This fixes a mouse support regression that affected Emacs (invisible mouse
cursor).
Cc: stable <stable@kernel.org>
Link: https://lore.kernel.org/r/ee3ec63269b43b34e1c90dd8c9743bf8@finder.org
Fixes: 8d1b43f6a6df ("tty: Restrict access to TIOCLINUX' copy-and-paste subcommands")
Signed-off-by: Günther Noack <gnoack@google.com>
Reviewed-by: Kees Cook <kees@kernel.org>
Link: https://lore.kernel.org/r/20250110142122.1013222-1-gnoack@google.com
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Diffstat (limited to 'net/lapb/lapb_timer.c')
0 files changed, 0 insertions, 0 deletions