selinux: fix broken peer recv check
[deliverable/linux.git] / security / selinux / hooks.c
index a98228e7b91d75e9ec6e1b9609efe3c025ae7b3e..bf0537d78a7068d0f3b18e7c2109156d47891852 100644 (file)
@@ -4338,8 +4338,10 @@ static int selinux_socket_sock_rcv_skb(struct sock *sk, struct sk_buff *skb)
                }
                err = avc_has_perm(sk_sid, peer_sid, SECCLASS_PEER,
                                   PEER__RECV, &ad);
-               if (err)
+               if (err) {
                        selinux_netlbl_err(skb, err, 0);
+                       return err;
+               }
        }
 
        if (secmark_active) {
This page took 0.030467 seconds and 5 git commands to generate.