kernel: Restrict permissions of /proc/iomem.

The permissions of /proc/iomem currently are -r--r--r--. Everyone can
see its content. As iomem contains information about the physical memory
content of the device, restrict the information only to root.

Change-Id: If0be35c3fac5274151bea87b738a48e6ec0ae891
CRs-Fixed: 786116
Signed-off-by: Biswajit Paul <biswajitpaul@codeaurora.org>
Signed-off-by: Avijit Kanti Das <avijitnsec@codeaurora.org>
This commit is contained in:
Biswajit Paul 2015-02-09 15:21:12 -08:00 committed by Gerrit - the friendly Code Review server
parent a7d75039c8
commit d9192dd0ed

View File

@ -172,7 +172,7 @@ static const struct file_operations proc_iomem_operations = {
static int __init ioresources_init(void) static int __init ioresources_init(void)
{ {
proc_create("ioports", 0, NULL, &proc_ioports_operations); proc_create("ioports", 0, NULL, &proc_ioports_operations);
proc_create("iomem", 0, NULL, &proc_iomem_operations); proc_create("iomem", 0400, NULL, &proc_iomem_operations);
return 0; return 0;
} }
__initcall(ioresources_init); __initcall(ioresources_init);