Thread (3 messages) 3 messages, 3 authors, 2020-05-19

Re: [PATCH v2 1/8] exec: Teach prepare_exec_creds how exec treats uids & gids

From: Linus Torvalds <torvalds@linux-foundation.org>
Date: 2020-05-19 18:28:39
Also in: linux-fsdevel, lkml

Possibly related (same subject, not in this thread)

On Tue, May 19, 2020 at 11:03 AM Kees Cook [off-list ref] wrote:
One question, though: why add this, since the repeat calling of the caps
LSM hook will do this?
I assume it's for the "preserve_creds" case where we don't even end up
setting creds at all.

Yeah, at some point we'll hit a bprm handler that doesn't set
'preserve_creds', and it all does get set in the end, but that's not
statically all that obvious.

I think it makes sense to initialize as much as possible from the
generic code, and rely as little as possible on what the binfmt
handlers end up actually doing.

              Linus
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help