)]}'
{
  "commit": "0868a5e150bc4c47e7a003367cd755811eb41e0b",
  "tree": "627c65016b3046c60741dd62d67b0ef84cadc715",
  "parents": [
    "d48d805122e39c066898df2e460875d3aaf60508"
  ],
  "author": {
    "name": "Tyler Hicks",
    "email": "tyhicks@canonical.com",
    "time": "Thu Jul 25 18:02:55 2013 -0700"
  },
  "committer": {
    "name": "Eric Paris",
    "email": "eparis@redhat.com",
    "time": "Tue Nov 05 11:07:23 2013 -0500"
  },
  "message": "audit: printk USER_AVC messages when audit isn\u0027t enabled\n\nWhen the audit\u003d1 kernel parameter is absent and auditd is not running,\nAUDIT_USER_AVC messages are being silently discarded.\n\nAUDIT_USER_AVC messages should be sent to userspace using printk(), as\nmentioned in the commit message of 4a4cd633 (\"AUDIT: Optimise the\naudit-disabled case for discarding user messages\").\n\nWhen audit_enabled is 0, audit_receive_msg() discards all user messages\nexcept for AUDIT_USER_AVC messages. However, audit_log_common_recv_msg()\nrefuses to allocate an audit_buffer if audit_enabled is 0. The fix is to\nspecial case AUDIT_USER_AVC messages in both functions.\n\nIt looks like commit 50397bd1 (\"[AUDIT] clean up audit_receive_msg()\")\nintroduced this bug.\n\nCc: \u003cstable@kernel.org\u003e # v2.6.25+\nSigned-off-by: Tyler Hicks \u003ctyhicks@canonical.com\u003e\nCc: Al Viro \u003cviro@zeniv.linux.org.uk\u003e\nCc: Eric Paris \u003ceparis@redhat.com\u003e\nCc: linux-audit@redhat.com\nAcked-by: Kees Cook \u003ckeescook@chromium.org\u003e\nSigned-off-by: Richard Guy Briggs \u003crgb@redhat.com\u003e\nSigned-off-by: Eric Paris \u003ceparis@redhat.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "02b1b7875c925e147f0593428e6c39790760552e",
      "old_mode": 33188,
      "old_path": "kernel/audit.c",
      "new_id": "74550ff3644f7291875cdd4566ee6a31f9c4f91f",
      "new_mode": 33188,
      "new_path": "kernel/audit.c"
    }
  ]
}
