]> git.baikalelectronics.ru Git - kernel.git/commit
Revert 3c29cbff9ca5 ("capabilities: Don't allow writing ambiguous v3 file capabilities")
authorEric W. Biederman <ebiederm@xmission.com>
Fri, 12 Mar 2021 21:07:09 +0000 (15:07 -0600)
committerEric W. Biederman <ebiederm@xmission.com>
Fri, 12 Mar 2021 21:27:14 +0000 (15:27 -0600)
commitbd6148e122c564d7f2b81bbbb7891ef6c9eb2675
tree93da4ea47d3c08583033f8b1c7b0f1a9c40bb902
parent1b8bd930b05ba1f659bccfc6ef406e93916f57ed
Revert 3c29cbff9ca5 ("capabilities: Don't allow writing ambiguous v3 file capabilities")

It turns out that there are in fact userspace implementations that
care and this recent change caused a regression.

https://github.com/containers/buildah/issues/3071

As the motivation for the original change was future development,
and the impact is existing real world code just revert this change
and allow the ambiguity in v3 file caps.

Cc: stable@vger.kernel.org
Fixes: 3c29cbff9ca5 ("capabilities: Don't allow writing ambiguous v3 file capabilities")
Signed-off-by: Eric W. Biederman <ebiederm@xmission.com>
security/commoncap.c