git: 8ef6d8ad1a61 - main - jails: delegate checking PRIV_PROC_MEM_WRITE to priv_check_cred()
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Sun, 06 Apr 2025 22:13:49 UTC
The branch main has been updated by kib:
URL: https://cgit.FreeBSD.org/src/commit/?id=8ef6d8ad1a61a17cdaed2f5666d5a6904fd0737c
commit 8ef6d8ad1a61a17cdaed2f5666d5a6904fd0737c
Author: Konstantin Belousov <kib@FreeBSD.org>
AuthorDate: 2025-04-06 16:57:01 +0000
Commit: Konstantin Belousov <kib@FreeBSD.org>
CommitDate: 2025-04-06 22:13:30 +0000
jails: delegate checking PRIV_PROC_MEM_WRITE to priv_check_cred()
PR: 285811
Fixes: 4a5fa1086184f7450f63d4a8e403b16f40a78fce
Reviewed by: markj
Sponsored by: The FreeBSD Foundation
MFC after: 1 week
Differential revision: https://reviews.freebsd.org/D49682
---
sys/kern/kern_jail.c | 5 +++++
1 file changed, 5 insertions(+)
diff --git a/sys/kern/kern_jail.c b/sys/kern/kern_jail.c
index 37c0bd49490f..5dd07fbf77d1 100644
--- a/sys/kern/kern_jail.c
+++ b/sys/kern/kern_jail.c
@@ -4017,6 +4017,11 @@ prison_priv_check(struct ucred *cred, int priv)
case PRIV_PROC_SETLOGIN:
case PRIV_PROC_SETRLIMIT:
+ /*
+ * Debuggers should work in jails.
+ */
+ case PRIV_PROC_MEM_WRITE:
+
/*
* System V and POSIX IPC privileges are granted in jail.
*/