diff options
author | John Johansen <[email protected]> | 2023-12-18 01:10:03 -0800 |
---|---|---|
committer | John Johansen <[email protected]> | 2024-01-03 12:10:29 -0800 |
commit | 8026e40608b4d552216d2a818ca7080a4264bb44 (patch) | |
tree | 1fdeea61a54b06d41723a44cc4a0f3229a9db9cc /lib/test_fortify/write_overflow-memcpy.c | |
parent | 610a9b8f49fbcf1100716370d3b5f6f884a2835a (diff) |
apparmor: Fix move_mount mediation by detecting if source is detached
Prevent move_mount from applying the attach_disconnected flag
to move_mount(). This prevents detached mounts from appearing
as / when applying mount mediation, which is not only incorrect
but could result in bad policy being generated.
Basic mount rules like
allow mount,
allow mount options=(move) -> /target/,
will allow detached mounts, allowing older policy to continue
to function. New policy gains the ability to specify `detached` as
a source option
allow mount detached -> /target/,
In addition make sure support of move_mount is advertised as
a feature to userspace so that applications that generate policy
can respond to the addition.
Note: this fixes mediation of move_mount when a detached mount is used,
it does not fix the broader regression of apparmor mediation of
mounts under the new mount api.
Link: https://lore.kernel.org/all/[email protected]/T/#mb35fdde37f999f08f0b02d58dc1bf4e6b65b8da2
Fixes: 157a3537d6bc ("apparmor: Fix regression in mount mediation")
Reviewed-by: Georgia Garcia <[email protected]>
Signed-off-by: John Johansen <[email protected]>
Diffstat (limited to 'lib/test_fortify/write_overflow-memcpy.c')
0 files changed, 0 insertions, 0 deletions