Re: [PATCH] fs: warn on mount propagation in unprivileged user namespaces

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Mon, Jul 14, 2025 at 03:05:56AM -0400, Prabhakar Pujeri wrote:
> Mount propagation operations in unprivileged user namespaces can
> bypass isolation. Add a pr_warn_once warning in mount(2) and
> mount_setattr(2) when MS_SHARED, MS_SLAVE, or MS_UNBINDABLE
> propagation flags are used without CAP_SYS_ADMIN. Document the warning
> in sharedsubtree.rst with an explanation why it is emitted and how to
> avoid it.
> ---

This doesn't make sense at all. So no, we're not going to take this.
Rejected-by: Christian Brauner <brauner@xxxxxxxxxx>




[Index of Archives]     [Linux Ext4 Filesystem]     [Union Filesystem]     [Filesystem Testing]     [Ceph Users]     [Ecryptfs]     [NTFS 3]     [AutoFS]     [Kernel Newbies]     [Share Photos]     [Security]     [Netfilter]     [Bugtraq]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux Cachefs]     [Reiser Filesystem]     [Linux RAID]     [NTFS 3]     [Samba]     [Device Mapper]     [CEPH Development]

  Powered by Linux