diff options
author | Eric W. Biederman <ebiederm@xmission.com> | 2014-10-07 20:11:46 -0400 |
---|---|---|
committer | Eric W. Biederman <ebiederm@xmission.com> | 2014-12-02 11:46:50 -0500 |
commit | 381cacb12c009864993a072eedcc0720315aedbd (patch) | |
tree | 0dae00dad627d93c9ac98a04e9ea8210a6a0dde4 /fs | |
parent | 8486a7882b5ba906992fd78bbfcefaae7fe285cc (diff) |
mnt: Carefully set CL_UNPRIVILEGED in clone_mnt
old->mnt_expiry should be ignored unless CL_EXPIRE is set.
Signed-off-by: "Eric W. Biederman" <ebiederm@xmission.com>
Diffstat (limited to 'fs')
-rw-r--r-- | fs/namespace.c | 3 |
1 files changed, 2 insertions, 1 deletions
diff --git a/fs/namespace.c b/fs/namespace.c index e8d1ffa7f132..f87a90b98da2 100644 --- a/fs/namespace.c +++ b/fs/namespace.c | |||
@@ -963,7 +963,8 @@ static struct mount *clone_mnt(struct mount *old, struct dentry *root, | |||
963 | } | 963 | } |
964 | 964 | ||
965 | /* Don't allow unprivileged users to reveal what is under a mount */ | 965 | /* Don't allow unprivileged users to reveal what is under a mount */ |
966 | if ((flag & CL_UNPRIVILEGED) && list_empty(&old->mnt_expire)) | 966 | if ((flag & CL_UNPRIVILEGED) && |
967 | (!(flag & CL_EXPIRE) || list_empty(&old->mnt_expire))) | ||
967 | mnt->mnt.mnt_flags |= MNT_LOCKED; | 968 | mnt->mnt.mnt_flags |= MNT_LOCKED; |
968 | 969 | ||
969 | atomic_inc(&sb->s_active); | 970 | atomic_inc(&sb->s_active); |