ACK: [SRU Bionic/Focal 0/1] lxd exec fails

Kamal Mostafa kamal at canonical.com
Wed Jun 30 18:39:47 UTC 2021


Acked-by: Kamal Mostafa <kamal at canonical.com>

 -Kamal

On Wed, Jun 30, 2021 at 03:35:46PM -0300, Thadeu Lima de Souza Cascardo wrote:
> BugLink: https://bugs.launchpad.net/bugs/1934187
> 
> [Impact]
> lxd will not work, as lxc exec is not able to set the apparmor confinement and bails out executing inside the container.
> 
> [Fix]
> Revert upstream commit bfb819ea20ce8bbeeba17e1a6418bf8bda91fc28 ("proc: Check /proc/$pid/attr/ writes against file opener").
> 
> [Test case]
> lxd basic usage test suite was run.
> On a 4.15 kernel, the whole lxd autopkgtest was run.
> 
> [Potential regression]
> Unprivileged use of PID attributes may be permitted when they shouldn't.
> 
> 
> Thadeu Lima de Souza Cascardo (1):
>   UBUNTU: SAUCE: Revert "proc: Check /proc/$pid/attr/ writes against
>     file opener"
> 
>  fs/proc/base.c | 4 ----
>  1 file changed, 4 deletions(-)
> 
> -- 
> 2.30.2
> 
> 
> -- 
> kernel-team mailing list
> kernel-team at lists.ubuntu.com
> https://lists.ubuntu.com/mailman/listinfo/kernel-team



More information about the kernel-team mailing list