new version of the AT_BENEATH patch, with more toggles: https://lore.kernel.org/lkml/20180929103453.12025-1-cyphar@cyphar.com/T/ … when giving a path to the kernel, you can separately choose whether you want to allow: - "/" and ".." for traversing up (including in symlinks) - crossing mountpoints - procfs symlinks - symlinks
-
Show this thread
-
Replying to @tehjh
Is this tangentially related to the one that was in the Capsicum patchset back in the day when it was proposed?
1 reply 0 retweets 0 likes -
Replying to @rt2800pci1 @tehjh
O_BENEATH_ONLY from https://lkml.org/lkml/2014/6/30/170 …
1 reply 0 retweets 0 likes -
Replying to @rt2800pci1
functionality-wise, I believe it is an extended version of patch 1 from that patchset, yes
1 reply 0 retweets 0 likes
Replying to @tehjh @rt2800pci1
oh, wait, no. I take that back.
2:39 AM - 1 Oct 2018
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.