Commit 08937af
Ian Kent
do_change_type(): refuse to operate on unmounted/not ours mounts
JIRA: https://issues.redhat.com/browse/RHEL-107307
Upstream status: Linus
CVE: CVE-2025-38498
commit 12f147d
Author: Al Viro <viro@zeniv.linux.org.uk>
Date: Wed Jun 4 12:27:08 2025 -0400
do_change_type(): refuse to operate on unmounted/not ours mounts
Ensure that propagation settings can only be changed for mounts located
in the caller's mount namespace. This change aligns permission checking
with the rest of mount(2).
Reviewed-by: Christian Brauner <brauner@kernel.org>
Fixes: 07b2088 ("beginning of the shared-subtree proper")
Reported-by: "Orlando, Noah" <Noah.Orlando@deshaw.com>
Signed-off-by: Al Viro <viro@zeniv.linux.org.uk>
Signed-off-by: Ian Kent <ikent@redhat.com>1 parent 09e34b3 commit 08937af
1 file changed
+4
-0
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
2709 | 2709 | | |
2710 | 2710 | | |
2711 | 2711 | | |
| 2712 | + | |
| 2713 | + | |
| 2714 | + | |
| 2715 | + | |
2712 | 2716 | | |
2713 | 2717 | | |
2714 | 2718 | | |
| |||
0 commit comments