* refactor: replace throne tracker with ksud token
* use snprintf
* refactor: new supercall impl
- Import the sukisu command
* disable seccomp for supercall users
* kernel: fmt clear
* kernel: Enable macro protection for sulog
- Only enabled on kernel versions greater than 5.10.245
* kernel: Refactor kprobe hooks and implement LSM hooks for improved security handling
* debug mode
* kernel: Add functionality to generate and validate authentication tokens for cmd_su
* kernel: Simplified manual SU command processing for code
* kernel: replace renameat hook with fsnotify
* Revert "refactor: replace throne tracker with ksud token"
This reverts commit aa2cbbf9cd.
* kernel: fix compile
* kernel: fix compile below 6.0
* Fix compile err; Add become_manager
* kernel: install fd for manager automaticlly
- extend to import the corresponding command
* manager: new supercall impl
* temp changes for ksud
* ksud: fix compile
* fix wrong opcode
* kernel: fix compile
* kernel: Fixed hook type and KPM status retrieval errors
* kernel: Fixed potential null pointer issue with current->mm in kernel version 5.10
When calling get_full_comm() within system call hooks, current->mm may be null (prctl). A fallback mechanism for current->comm must be added beforehand to prevent null pointer dereferences when accessing mm->arg_start/arg_end.
Signed-off-by: ShirkNeko <109797057+ShirkNeko@users.noreply.github.com>
* ksud: fix cargo check
* manager: Fixed an issue where the KSUD release and user-mode scanning switch failed to function correctly.
- kernel: fix spin lock mutual
kernel: Fixed potential null pointer issue with current->mm in kernel version 5.10
When calling get_full_comm() within system call hooks, current->mm may be null (prctl). A fallback mechanism for current->comm must be added beforehand to prevent null pointer dereferences when accessing mm->arg_start/arg_end.
kernel: try introduce like susfs's method to fix prctl delay
* seccomp: allow reboot
* use u32
* update clang-format
* 4 spaces save the world
* ksud: Fix build on macOS
* manager: bump minimal supported kernel.
- When get_hook_type is empty, display “Unknown”.
* Fix ksud build (#2841)
* try fix ksud
* fix for macos
* remove any
* Fix ksud build, take 3
* try fix allowlist
* bring lsm hook back
* fix: a lot again
* Fix ksud build, take 4 (#2846)
Remove init_driver_fd function for non-linux/android targets
* manager: Return to the native method via KSUd installation
* Merge with susfs-mian format
---------
Signed-off-by: ShirkNeko <109797057+ShirkNeko@users.noreply.github.com>
Co-authored-by: Ylarod <me@ylarod.cn>
Co-authored-by: weishu <twsxtd@gmail.com>
Co-authored-by: AlexLiuDev233 <wzylin11@outlook.com>
Co-authored-by: Wang Han <416810799@qq.com>
48 lines
1.0 KiB
C
48 lines
1.0 KiB
C
#ifndef __KSU_MANUAL_SU_H
|
|
#define __KSU_MANUAL_SU_H
|
|
|
|
#include <linux/types.h>
|
|
#include <linux/sched.h>
|
|
#include <linux/version.h>
|
|
|
|
#if LINUX_VERSION_CODE < KERNEL_VERSION(5, 7, 0)
|
|
#define mmap_lock mmap_sem
|
|
#endif
|
|
|
|
#define ksu_task_is_dead(t) ((t)->exit_state != 0)
|
|
|
|
#define MAX_PENDING 16
|
|
#define REMOVE_DELAY_CALLS 150
|
|
#define MAX_TOKENS 10
|
|
|
|
#define KSU_SU_VERIFIED_BIT (1UL << 0)
|
|
#define KSU_TOKEN_LENGTH 32
|
|
#define KSU_TOKEN_ENV_NAME "KSU_AUTH_TOKEN"
|
|
#define KSU_TOKEN_EXPIRE_TIME 150
|
|
|
|
#define MANUAL_SU_OP_GENERATE_TOKEN 0
|
|
#define MANUAL_SU_OP_ESCALATE 1
|
|
#define MANUAL_SU_OP_ADD_PENDING 2
|
|
|
|
struct pending_uid {
|
|
uid_t uid;
|
|
int use_count;
|
|
int remove_calls;
|
|
};
|
|
|
|
struct manual_su_request {
|
|
uid_t target_uid;
|
|
pid_t target_pid;
|
|
char token_buffer[KSU_TOKEN_LENGTH + 1];
|
|
};
|
|
|
|
struct ksu_token_entry {
|
|
char token[KSU_TOKEN_LENGTH + 1];
|
|
unsigned long expire_time;
|
|
bool used;
|
|
};
|
|
|
|
int ksu_handle_manual_su_request(int option, struct manual_su_request *request);
|
|
bool is_pending_root(uid_t uid);
|
|
void remove_pending_root(uid_t uid);
|
|
#endif |