On Fri, 29 Aug 2008, ebiederm@xmission.com (Eric W. Biederman)Ahh, thanks. I'll need to fix this up then, regardless of any ioctl issues, so that the tid supplied to the userspace filesystem actually makes sense in a containerized environment. Mmm, that does pose a bit of a problem :) Yep, that could be done... Yes, but access to the other process's address space requires some sort of privilege anyway. It would not do to have an unprivileged process peek at arbitrary addresses in the other process's memory, and that is exactly what generic ioctl support requires. I'd like the idea of limiting to well behaved ioctls, but Tejun doesn't... There's still a security issue, because we cannot verify *if* a particular ioctl is indeed well behaved: only the application and the driver knows that, and the application cannot tell us (ioctl interface is broken, broken, broken), and we don't trust the server. Thanks, Miklos --
| Tarkan Erimer | Re: Dual-Licensing Linux Kernel with GPL V2 and GPL V3 |
| Greg Kroah-Hartman | [PATCH 002/196] Chinese: rephrase English introduction in HOWTO |
| Christoph Lameter | [00/41] Large Blocksize Support V7 (adds memmap support) |
| Chuck Ebbert | Re: Linux 2.6.21 |
git: | |
| Gerrit Renker | [PATCH 03/37] dccp: List management for new feature negotiation |
| Jarek Poplawski | [PATCH] pkt_sched: Destroy gen estimators under rtnl_lock(). |
| Hugh Dickins | Re: [bug?] tg3: Failed to load firmware "tigon/tg3_tso.bin" |
| David Miller | [GIT]: Networking |
