Re: [PATCH 2/3] CRED: Split the task security data and move part of it into struct cred

!MAILaRCHIVE_VOTE_RePLACE
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: David Howells <dhowells@...>
Cc: <viro@...>, <hch@...>, <Trond.Myklebust@...>, <sds@...>, <casey@...>, <linux-kernel@...>, <selinux@...>, <linux-security-module@...>
Date: Monday, September 24, 2007 - 10:00 am

Quoting David Howells (dhowells@redhat.com):

My concern is with this victim_sid.  Whether the concern is valid
depends on exactly how the other credentials can be used, which isn't
yet entirely clear to me.

So my concern is that while a task is acting with alternate creds,
another task can act upon it based upon victim_sid.  So does this
open up the possibility for an unprivileged task to ptrace or kill
a task in the middle of a privileged operation?  Is that somehow
safe in the way this is used here?

I guess I need to look more at the actual nfs patches etc.

thanks,
-serge


-
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
[PATCH 0/3] Introduce credential record, David Howells, (Wed Sep 19, 12:17 pm)
[PATCH 1/3] CRED: Introduce a COW credentials record, David Howells, (Wed Sep 19, 12:17 pm)
Re: [PATCH 2/3] CRED: Split the task security data and move ..., Serge E. Hallyn, (Mon Sep 24, 10:00 am)