| /xnu-12377.1.9/bsd/kern/ |
| H A D | posix_shm.c | 274 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in pshm_cache_purge_all() 294 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in pshm_cache_purge_uid() 408 error = mac_posixshm_check_create(kauth_cred_get(), new_pinfo->pshm_hdr.pshm_name); in shm_open() 470 if ((error = mac_posixshm_check_open(kauth_cred_get(), &pinfo->pshm_hdr, fmode))) { in shm_open() 474 if ((error = pshm_access(pinfo, fmode, kauth_cred_get(), p))) { in shm_open() 479 mac_posixshm_label_associate(kauth_cred_get(), &pinfo->pshm_hdr, pinfo->pshm_hdr.pshm_name); in shm_open() 589 error = mac_posixshm_check_truncate(kauth_cred_get(), &pinfo->pshm_hdr, length); in pshm_truncate() 690 error = mac_posixshm_check_stat(kauth_cred_get(), &pinfo->pshm_hdr); in pshm_stat() 819 error = mac_posixshm_check_mmap(kauth_cred_get(), &pinfo->pshm_hdr, prot, flags); in pshm_mmap() 983 …error = mac_posixshm_check_unlink(kauth_cred_get(), &pinfo->pshm_hdr, name_pinfo->pshm_hdr.pshm_na… in shm_unlink() [all …]
|
| H A D | kern_sfi.c | 81 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_ctl() 122 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_ctl() 205 error = priv_check_cred(kauth_cred_get(), PRIV_SELECTIVE_FORCED_IDLE, 0); in sfi_pidctl()
|
| H A D | posix_sem.c | 499 if (kauth_cred_issuser(kauth_cred_get()) == 0) { in psem_cache_purge_all() 704 error = mac_posixsem_check_create(kauth_cred_get(), nameptr); in sem_open() 708 mac_posixsem_label_associate(kauth_cred_get(), pinfo, nameptr); in sem_open() 723 error = mac_posixsem_check_open(kauth_cred_get(), pinfo); in sem_open() 728 if ((error = psem_access(pinfo, fmode, kauth_cred_get()))) { in sem_open() 931 error = mac_posixsem_check_unlink(kauth_cred_get(), pinfo, nameptr); in sem_unlink() 937 if ((error = psem_access(pinfo, pinfo->psem_mode, kauth_cred_get()))) { in sem_unlink() 1009 error = mac_posixsem_check_wait(kauth_cred_get(), pinfo); in sem_wait_nocancel() 1068 error = mac_posixsem_check_wait(kauth_cred_get(), pinfo); in sem_trywait() 1131 error = mac_posixsem_check_post(kauth_cred_get(), pinfo); in sem_post()
|
| H A D | sysv_msg.c | 377 kauth_cred_t cred = kauth_cred_get(); in msgctl() 423 eval = mac_sysvmsq_check_msqctl(kauth_cred_get(), msqptr, cmd); in msgctl() 451 eval = mac_sysvmsq_check_msgrmid(kauth_cred_get(), msghdr); in msgctl() 586 kauth_cred_t cred = kauth_cred_get(); in msgget() 764 if ((eval = ipcperm(kauth_cred_get(), &msqptr->u.msg_perm, IPC_W))) { in msgsnd_nocancel() 772 eval = mac_sysvmsq_check_msqsnd(kauth_cred_get(), msqptr); in msgsnd_nocancel() 946 mac_sysvmsg_label_associate(kauth_cred_get(), msqptr, msghdr); in msgsnd_nocancel() 1096 eval = mac_sysvmsq_check_enqueue(kauth_cred_get(), msghdr, msqptr); in msgsnd_nocancel() 1194 if ((eval = ipcperm(kauth_cred_get(), &msqptr->u.msg_perm, IPC_R))) { in msgrcv_nocancel() 1202 eval = mac_sysvmsq_check_msqrcv(kauth_cred_get(), msqptr); in msgrcv_nocancel() [all …]
|
| H A D | kern_resource.c | 250 uap->who = kauth_cred_getuid(kauth_cred_get()); in getpriority() 529 uap->who = kauth_cred_getuid(kauth_cred_get()); in setpriority() 743 ucred = kauth_cred_get(); in proc_set_gpurole() 801 ucred = kauth_cred_get(); in proc_get_gpurole() 838 ucred = kauth_cred_get(); in proc_set_darwin_role() 892 ucred = kauth_cred_get(); in proc_get_darwin_role() 928 ucred = kauth_cred_get(); in proc_set_game_mode() 969 ucred = kauth_cred_get(); in proc_get_game_mode() 1008 ucred = kauth_cred_get(); in proc_set_carplay_mode() 1049 ucred = kauth_cred_get(); in proc_get_carplay_mode() [all …]
|
| H A D | kern_ktrace.c | 277 bool is_superuser = kauth_cred_issuser(kauth_cred_get()); in _current_task_can_own_ktrace() 417 if ((err = priv_check_cred(kauth_cred_get(), PRIV_KTRACE_BACKGROUND, 0))) { in ktrace_init_background() 575 if (!kauth_cred_issuser(kauth_cred_get())) {
|
| H A D | kern_priv.c | 133 return priv_check_cred(kauth_cred_get(), PRIV_VM_FOOTPRINT_LIMIT, 0); in proc_check_footprint_priv()
|
| H A D | kern_ecc.c | 47 if (priv_check_cred(kauth_cred_get(), PRIV_HW_DEBUG_DATA, 0) != 0) { in get_ecc_data_handler()
|
| H A D | sys_persona.c | 285 if (!kauth_cred_issuser(kauth_cred_get()) && in kpersona_getpath_syscall() 343 if (!kauth_cred_issuser(kauth_cred_get()) && in kpersona_info_syscall() 380 if (!kauth_cred_issuser(kauth_cred_get()) in kpersona_pidinfo_syscall()
|
| H A D | kern_ntptime.c | 355 error = mac_system_check_settime(kauth_cred_get()); in ntp_adjtime() 360 if ((error = priv_check_cred(kauth_cred_get(), PRIV_ADJTIME, 0))) { in ntp_adjtime() 718 error = mac_system_check_settime(kauth_cred_get()); in adjtime() 723 if ((error = priv_check_cred(kauth_cred_get(), PRIV_ADJTIME, 0))) { in adjtime()
|
| H A D | sysv_shm.c | 361 shmdtret = mac_sysvshm_check_shmdt(kauth_cred_get(), shmsegptr); in shmdt() 437 error = ipcperm(kauth_cred_get(), &shmseg->u.shm_perm, in shmat() 445 error = mac_sysvshm_check_shmat(kauth_cred_get(), shmseg, uap->shmflg); in shmat() 593 kauth_cred_t cred = kauth_cred_get(); in shmctl() 743 error = mac_sysvshm_check_shmget(kauth_cred_get(), shmseg, uap->shmflg); in shmget_existing() 766 kauth_cred_t cred = kauth_cred_get(); in shmget_allocate_segment()
|
| H A D | stackshot.c | 428 if (suser(kauth_cred_get(), &self->p_acflag) != 0 && 531 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in stack_snapshot_with_config() 599 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in microstackshot()
|
| H A D | sys_socket.c | 171 error = mac_socket_check_ioctl(kauth_cred_get(), so, cmd); in soioctl() 357 ret = mac_socket_check_stat(kauth_cred_get(), so); in soo_stat()
|
| H A D | mach_process.c | 157 if (kauth_cred_issuser(kauth_cred_get())) { in ptrace() 274 err = kauth_authorize_process(kauth_cred_get(), KAUTH_PROCESS_CANTRACE, in ptrace()
|
| H A D | sys_pipe.c | 438 mac_pipe_label_associate(kauth_cred_get(), rpipe); in pipe() 472 error = mac_pipe_check_stat(kauth_cred_get(), cpipe); in pipe_stat() 766 error = mac_pipe_check_read(kauth_cred_get(), rpipe); in pipe_read() 939 error = mac_pipe_check_write(kauth_cred_get(), wpipe); in pipe_write() 1198 error = mac_pipe_check_ioctl(kauth_cred_get(), mpipe, cmd); in pipe_ioctl() 1684 error = mac_pipe_check_stat(kauth_cred_get(), cpipe); in fill_pipeinfo()
|
| H A D | uipc_syscalls.c | 284 if ((error = mac_socket_check_create(kauth_cred_get(), domain, in socket_common() 291 error = priv_check_cred(kauth_cred_get(), in socket_common() 382 (error = mac_socket_check_bind(kauth_cred_get(), so, sa)) == 0) { in bind() 421 error = mac_socket_check_listen(kauth_cred_get(), so); in listen() 487 if ((error = mac_socket_check_accept(kauth_cred_get(), head)) != 0) { in accept_nocancel() 595 if ((error = mac_socket_check_accepted(kauth_cred_get(), so)) != 0) { in accept_nocancel() 1017 if ((error = mac_socket_check_connect(kauth_cred_get(), so, sa)) != 0) { in connectit() 1073 if ((error = mac_socket_check_connect(kauth_cred_get(), so, dst)) != 0) { in connectitx() 1078 if ((error = mac_socket_check_send(kauth_cred_get(), so, dst)) != 0) { in connectitx() 1361 (error = mac_socket_check_send(kauth_cred_get(), so, to)) != 0) { in sendit() [all …]
|
| H A D | kern_proc.c | 3576 if (forself == 0 && kauth_cred_issuser(kauth_cred_get()) != TRUE) { in csops_internal() 4779 if (((self->p_lflag & P_LVMRSRCOWNER) == 0) && (error = suser(kauth_cred_get(), 0))) { in proc_resetpcontrol() 5002 if (priv_check_cred(kauth_cred_get(), PRIV_PROC_TRACE_INSPECT, 0)) { in proc_trace_log() 5563 if (!kauth_cred_issuser(kauth_cred_get())) { in sysctl_settfp_policy() 5614 mycred = kauth_cred_get(); in task_for_pid_posix_check() 5772 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_CONTROL); in task_for_pid() 5780 if (!kauth_cred_issuser(kauth_cred_get()) && in task_for_pid() 5891 || kauth_cred_issuser(kauth_cred_get()) in task_name_for_pid() 5892 || ((kauth_cred_getuid(target_cred) == kauth_cred_getuid(kauth_cred_get())) && in task_name_for_pid() 5905 error = mac_proc_check_get_task(kauth_cred_get(), &pident, TASK_FLAVOR_NAME); in task_name_for_pid() [all …]
|
| H A D | kern_overrides.c | 104 if ((error = priv_check_cred(kauth_cred_get(), PRIV_SYSTEM_OVERRIDE, 0))) { in system_override()
|
| H A D | kern_xxx.c | 114 if ((error = suser(kauth_cred_get(), &p->p_acflag))) { in reboot()
|
| /xnu-12377.1.9/bsd/security/audit/ |
| H A D | audit_syscalls.c | 173 error = suser(kauth_cred_get(), &p->p_acflag); in audit() 245 error = mac_system_check_audit(kauth_cred_get(), rec, uap->length); in audit() 378 error = mac_system_check_auditon(kauth_cred_get(), uap->cmd); in auditon() 438 } else if (!kauth_cred_issuser(kauth_cred_get())) { in auditon() 457 error = suser(kauth_cred_get(), &p->p_acflag); in auditon() 884 bcopy(&(kauth_cred_get()->cr_audit.as_aia_p->ai_flags), in auditon() 892 scred = kauth_cred_get(); in auditon() 1178 error = suser(kauth_cred_get(), &p->p_acflag); in auditctl() 1225 error = mac_system_check_auditctl(kauth_cred_get(), vp); in auditctl()
|
| H A D | audit_mac.c | 178 mac_error = mac_audit_check_postselect(kauth_cred_get(), code, in audit_mac_syscall_exit()
|
| /xnu-12377.1.9/bsd/pgo/ |
| H A D | profile_runtime.c | 121 if (!kauth_cred_issuser(kauth_cred_get())) { in grab_pgo_data() 127 err = mac_system_check_info(kauth_cred_get(), "kern.profiling_data"); in grab_pgo_data()
|
| /xnu-12377.1.9/bsd/net/ |
| H A D | if.c | 276 if ((error = priv_check_cred(kauth_cred_get(), 2589 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_iforder() 2699 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_networkid() 2732 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_netsignature() 2774 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_nat64prefix() 4251 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4284 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4326 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4369 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() 4407 if ((error = priv_check_cred(kauth_cred_get(), in ifioctl_ifreq() [all …]
|
| /xnu-12377.1.9/bsd/vm/ |
| H A D | dp_backing_file.c | 131 if ((error = suser(kauth_cred_get(), 0))) { in macx_backing_store_compaction()
|
| /xnu-12377.1.9/bsd/skywalk/nexus/ |
| H A D | nexus_ioctl.c | 37 if (kauth_cred_issuser(kauth_cred_get())) { in nxioctl_check_entitlement()
|