]> git.baikalelectronics.ru Git - kernel.git/commit
Revert cccdc2828707 ("capabilities: Don't allow writing ambiguous v3 file capabilities")
authorEric W. Biederman <ebiederm@xmission.com>
Fri, 12 Mar 2021 21:07:09 +0000 (15:07 -0600)
committerEric W. Biederman <ebiederm@xmission.com>
Fri, 12 Mar 2021 21:27:14 +0000 (15:27 -0600)
commit5947a3fbdb4139482c1a246ea8514b502b7a5ace
tree93da4ea47d3c08583033f8b1c7b0f1a9c40bb902
parent219c9076286fd92026e818ab1375558e5b20649f
Revert cccdc2828707 ("capabilities: Don't allow writing ambiguous v3 file capabilities")

It turns out that there are in fact userspace implementations that
care and this recent change caused a regression.

https://github.com/containers/buildah/issues/3071

As the motivation for the original change was future development,
and the impact is existing real world code just revert this change
and allow the ambiguity in v3 file caps.

Cc: stable@vger.kernel.org
Fixes: cccdc2828707 ("capabilities: Don't allow writing ambiguous v3 file capabilities")
Signed-off-by: Eric W. Biederman <ebiederm@xmission.com>
security/commoncap.c