GNU bug report logs - #21226
FAIL: tests/containers.scm

Previous Next

Package: guix;

Reported by: Jochem Raat <jchmrt <at> riseup.net>

Date: Sun, 9 Aug 2015 23:12:01 UTC

Severity: normal

Done: David Thompson <dthompson2 <at> worcester.edu>

Bug is archived. No further changes may be made.

Full log


Message #16 received at 21226 <at> debbugs.gnu.org (full text, mbox):

From: Jochem Raat <jchmrt <at> riseup.net>
To: "Thompson, David" <dthompson2 <at> worcester.edu>
Cc: 21226 <at> debbugs.gnu.org
Subject: Re: bug#21226: FAIL: tests/containers.scm
Date: Tue, 11 Aug 2015 15:29:25 +0200
On 11-08-15 14:41, Thompson, David wrote:
> 
> Fixed in commit bc459b6, which skips the tests if /proc/self/setgroups
> does not exist, rather than allowing a system with a vulnerable kernel
> create containers with a new user namespace.

Thanks for the fast response and fix!

> 
> I would like to note that you should update your kernel as soon as
> possible, as the lack of /proc/self/setgroups means that you are
> running a kernel with a known security vulnerability.  The fix was
> introduced in Linux 3.19, but backported to many older kernels,
> including 3.13.

Thanks for the advice, I have updated my kernel.




This bug report was last modified 9 years and 344 days ago.

Previous Next


GNU bug tracking system
Copyright (C) 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson.