]> www.infradead.org Git - users/willy/xarray.git/commit
proc: block mounting on top of /proc/<pid>/fdinfo/*
authorChristian Brauner <brauner@kernel.org>
Tue, 6 Aug 2024 16:02:32 +0000 (18:02 +0200)
committerChristian Brauner <brauner@kernel.org>
Fri, 30 Aug 2024 06:22:13 +0000 (08:22 +0200)
commitcf71eaa1ad18d6f6e130cda708300b587176f16f
tree5d925962d5938e465a7df913f5a19a0f633c18ec
parent74ce208089f468db26eddcc5ea58e50f5bbbc291
proc: block mounting on top of /proc/<pid>/fdinfo/*

Entries under /proc/<pid>/fdinfo/* are ephemeral and may go away before
the process dies. As such allowing them to be used as mount points
creates the ability to leak mounts that linger until the process dies
with no ability to unmount them until then. Don't allow using them as
mountpoints.

Link: https://lore.kernel.org/r/20240806-work-procfs-v1-6-fb04e1d09f0c@kernel.org
Reviewed-by: Josef Bacik <josef@toxicpanda.com>
Signed-off-by: Christian Brauner <brauner@kernel.org>
fs/proc/fd.c