Re: [PATCH] 9pfs: fix regression regarding CVE-2023-2861

2024-12-10 Thread Christian Schoenebeck
On Tuesday, December 10, 2024 11:11:47 AM CET Peter Maydell wrote: > On Tue, 10 Dec 2024 at 09:57, Christian Schoenebeck > wrote: > > > > On Friday, December 6, 2024 12:20:29 PM CET Christian Schoenebeck wrote: > > > The released fix for this CVE: > > > > > > f6b0de53fb8 ("9pfs: prevent opening

Re: [PATCH] 9pfs: fix regression regarding CVE-2023-2861

2024-12-10 Thread Peter Maydell
On Tue, 10 Dec 2024 at 09:57, Christian Schoenebeck wrote: > > On Friday, December 6, 2024 12:20:29 PM CET Christian Schoenebeck wrote: > > The released fix for this CVE: > > > > f6b0de53fb8 ("9pfs: prevent opening special files (CVE-2023-2861)") > > > > caused a regression with security_model=p

Re: [PATCH] 9pfs: fix regression regarding CVE-2023-2861

2024-12-10 Thread Christian Schoenebeck
On Friday, December 6, 2024 12:20:29 PM CET Christian Schoenebeck wrote: > The released fix for this CVE: > > f6b0de53fb8 ("9pfs: prevent opening special files (CVE-2023-2861)") > > caused a regression with security_model=passthrough. When handling a > 'Tmknod' request there was a side effect t

Re: [PATCH] 9pfs: fix regression regarding CVE-2023-2861

2024-12-08 Thread Greg Kurz
On Fri, 6 Dec 2024 12:20:29 +0100 Christian Schoenebeck wrote: > The released fix for this CVE: > > f6b0de53fb8 ("9pfs: prevent opening special files (CVE-2023-2861)") > > caused a regression with security_model=passthrough. When handling a > 'Tmknod' request there was a side effect that 'Tmk

[PATCH] 9pfs: fix regression regarding CVE-2023-2861

2024-12-06 Thread Christian Schoenebeck
The released fix for this CVE: f6b0de53fb8 ("9pfs: prevent opening special files (CVE-2023-2861)") caused a regression with security_model=passthrough. When handling a 'Tmknod' request there was a side effect that 'Tmknod' request could fail as 9p server was trying to adjust permissions: #6