ACK w/cmnt: [berrange at redhat.com: [PATCH] Forbid invocation of kexec_load() outside initial PID namespace]

Serge Hallyn serge.hallyn at canonical.com
Tue Aug 7 19:17:31 UTC 2012


Quoting Stefan Bader (stefan.bader at canonical.com):
> On 07.08.2012 17:01, Serge E. Hallyn wrote:
> > (Hopefully my unsubscribed account can email kernel-team)
> > 
> > Hi,
> > 
> > this patch will probably not hit upstream, because the 'proper' fix is
> > user namespaces.  User namespaces however won't be ready until after
> > quantal.  So I'd like this patch to be applied in precise and quantal
> > if possible.
> 
> On one hand I hate to deviate, but I guess I'd hate even more if someone started
> a new kernel from a container. And at least for Precise I would
> not really want to backport user namespaces, maybe not even for quantal.
> Given that, the patch looks sensible enough to SRU. But there should be
> a launchpad bug for that, or did I miss the link?

Sorry, no, I hadn't yet created the bug.  See http://pad.lv/1034125

-serge




More information about the kernel-team mailing list