ACK: [SRU T,U,V,W] sysctl to disable unprivileged user namespace unsharing

Steve Beattie sbeattie at ubuntu.com
Thu Jun 23 19:59:04 UTC 2016


On Thu, Jun 23, 2016 at 11:53:56AM -0700, Kamal Mostafa wrote:
> From: Kamal Mostafa <kamal at canonical.com>
> 
> Mitigation of unprivileged user namespaces vulnerability.
> 
> BugLink: https://bugs.launchpad.net/bugs/1595350
> 
> This patch is taken from Xenial (cherry pick for wily; trivial context
> backport for T, U, V).
> 
>  -Kamal
> 
> -----
> 
> Serge Hallyn (1):
>   UBUNTU: SAUCE: add a sysctl to disable unprivileged user namespace
>     unsharing
> 
>  kernel/fork.c           | 15 +++++++++++++++
>  kernel/sysctl.c         | 12 ++++++++++++
>  kernel/user_namespace.c |  6 ++++++
>  3 files changed, 33 insertions(+)
> 
> -- 
> 2.7.4

-- 
Steve Beattie
<sbeattie at ubuntu.com>
http://NxNW.org/~steve/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: not available
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20160623/f556ae25/attachment.sig>


More information about the kernel-team mailing list