Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 6 Apr 2025 22:13:49 GMT
From:      Konstantin Belousov <kib@FreeBSD.org>
To:        src-committers@FreeBSD.org, dev-commits-src-all@FreeBSD.org, dev-commits-src-main@FreeBSD.org
Subject:   git: 8ef6d8ad1a61 - main - jails: delegate checking PRIV_PROC_MEM_WRITE to priv_check_cred()
Message-ID:  <202504062213.536MDnTK007116@gitrepo.freebsd.org>

next in thread | raw e-mail | index | archive | help
The branch main has been updated by kib:

URL: https://cgit.FreeBSD.org/src/commit/?id=8ef6d8ad1a61a17cdaed2f5666d5a6904fd0737c

commit 8ef6d8ad1a61a17cdaed2f5666d5a6904fd0737c
Author:     Konstantin Belousov <kib@FreeBSD.org>
AuthorDate: 2025-04-06 16:57:01 +0000
Commit:     Konstantin Belousov <kib@FreeBSD.org>
CommitDate: 2025-04-06 22:13:30 +0000

    jails: delegate checking PRIV_PROC_MEM_WRITE to priv_check_cred()
    
    PR:     285811
    Fixes:  4a5fa1086184f7450f63d4a8e403b16f40a78fce
    Reviewed by:    markj
    Sponsored by:   The FreeBSD Foundation
    MFC after:      1 week
    Differential revision:  https://reviews.freebsd.org/D49682
---
 sys/kern/kern_jail.c | 5 +++++
 1 file changed, 5 insertions(+)

diff --git a/sys/kern/kern_jail.c b/sys/kern/kern_jail.c
index 37c0bd49490f..5dd07fbf77d1 100644
--- a/sys/kern/kern_jail.c
+++ b/sys/kern/kern_jail.c
@@ -4017,6 +4017,11 @@ prison_priv_check(struct ucred *cred, int priv)
 	case PRIV_PROC_SETLOGIN:
 	case PRIV_PROC_SETRLIMIT:
 
+		/*
+		 * Debuggers should work in jails.
+		 */
+	case PRIV_PROC_MEM_WRITE:
+
 		/*
 		 * System V and POSIX IPC privileges are granted in jail.
 		 */



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?202504062213.536MDnTK007116>