Skip to content

Commit

Permalink
proc: block mounting on top of /proc/<pid>/fd/*
Browse files Browse the repository at this point in the history
Entries under /proc/<pid>/fd/* are ephemeral and may go away before the
process dies. As such allowing them to be used as mount points creates
the ability to leak mounts that linger until the process dies with no
ability to unmount them until then. Don't allow using them as
mountpoints.

Link: https://lore.kernel.org/r/20240806-work-procfs-v1-5-fb04e1d09f0c@kernel.org
Reviewed-by: Josef Bacik <josef@toxicpanda.com>
Signed-off-by: Christian Brauner <brauner@kernel.org>
  • Loading branch information
Christian Brauner committed Aug 30, 2024
1 parent 3836b31 commit 74ce208
Showing 1 changed file with 2 additions and 2 deletions.
4 changes: 2 additions & 2 deletions fs/proc/fd.c
Original file line number Diff line number Diff line change
Expand Up @@ -220,8 +220,8 @@ static struct dentry *proc_fd_instantiate(struct dentry *dentry,
ei->op.proc_get_link = proc_fd_link;
tid_fd_update_inode(task, inode, data->mode);

d_set_d_op(dentry, &tid_fd_dentry_operations);
return d_splice_alias(inode, dentry);
return proc_splice_unmountable(inode, dentry,
&tid_fd_dentry_operations);
}

static struct dentry *proc_lookupfd_common(struct inode *dir,
Expand Down

0 comments on commit 74ce208

Please sign in to comment.