Re: [PATCH RFC] allow some kernel filesystems to be mounted in auser namespace

From: Al Viro
Date: Tue Jul 16 2013 - 15:38:31 EST


On Tue, Jul 16, 2013 at 02:29:20PM -0500, Serge Hallyn wrote:
> All the files will be owned by host root, so there's no security
> concern in allowing this.

Files owned by root != very bad things can't be done by non-root.
Especially for debugfs, which is very much a "don't even think about
mounting that on a production box" thing...
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/