ACK: [SRU Bionic/Focal 0/1] lxd exec fails

Ian May ian.may at canonical.com
Wed Jun 30 19:33:29 UTC 2021


LGTM

Acked-by: Ian May <ian.may at canonical.com>

On 2021-06-30 15:35:46 , Thadeu Lima de Souza Cascardo wrote:
> BugLink: https://bugs.launchpad.net/bugs/1934187
> 
> [Impact]
> lxd will not work, as lxc exec is not able to set the apparmor confinement and bails out executing inside the container.
> 
> [Fix]
> Revert upstream commit bfb819ea20ce8bbeeba17e1a6418bf8bda91fc28 ("proc: Check /proc/$pid/attr/ writes against file opener").
> 
> [Test case]
> lxd basic usage test suite was run.
> On a 4.15 kernel, the whole lxd autopkgtest was run.
> 
> [Potential regression]
> Unprivileged use of PID attributes may be permitted when they shouldn't.
> 
> 
> Thadeu Lima de Souza Cascardo (1):
>   UBUNTU: SAUCE: Revert "proc: Check /proc/$pid/attr/ writes against
>     file opener"
> 
>  fs/proc/base.c | 4 ----
>  1 file changed, 4 deletions(-)
> 
> -- 
> 2.30.2
> 
> 
> -- 
> kernel-team mailing list
> kernel-team at lists.ubuntu.com
> https://lists.ubuntu.com/mailman/listinfo/kernel-team



More information about the kernel-team mailing list