mirror of
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git
synced 2025-01-26 18:43:33 -05:00
Fix nasty /proc vulnerability
We have a bad interaction with both the kernel and user space being able to change some of the /proc file status. This fixes the most obvious part of it, but I expect we'll also make it harder for users to modify even their "own" files in /proc. Signed-off-by: Linus Torvalds <torvalds@osdl.org>
This commit is contained in:
parent
ab6cf0d0cb
commit
18b0bbd8ca
1 changed files with 1 additions and 0 deletions
|
@ -1338,6 +1338,7 @@ static int pid_revalidate(struct dentry *dentry, struct nameidata *nd)
|
|||
} else {
|
||||
inode->i_uid = 0;
|
||||
inode->i_gid = 0;
|
||||
inode->i_mode = 0;
|
||||
}
|
||||
security_task_to_inode(task, inode);
|
||||
put_task_struct(task);
|
||||
|
|
Loading…
Add table
Reference in a new issue