Received: by 2002:a25:868d:0:0:0:0:0 with SMTP id z13csp38152ybk; Tue, 19 May 2020 14:54:44 -0700 (PDT) X-Google-Smtp-Source: ABdhPJzCE8y+6OMSB56FRSbKTSlvEJC9aJ8qTZuR/iUqf2ezIDVdtYMI/C7cA2Z1prs9SqCOkuau X-Received: by 2002:a17:907:438e:: with SMTP id oj22mr1177072ejb.195.1589925284681; Tue, 19 May 2020 14:54:44 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1589925284; cv=none; d=google.com; s=arc-20160816; b=bk2SFEyAMqAxqREOO0sdBa21z1qjnLoQc1n9iw1f5pjm7jJRkY6ZzIzG1m76lcEBKJ Fmjlk7xOLsda8nr0eNHx3xGLIwst6dcsGVQqhmAC9Bx9zrKDC4EZ0SrS6Jvmm3TE58LU 4McRaHq4g7bPtAjz5o2y+RZMD+v5vVFhM2htUIQjzgHPr22UBXziAiiZ9xTNJHJX4NTk YCT0kXKHBc2wnNI7I5dZk8RvEQdMil7uA91+nme4fCb1jQ6u5tDWHPxZRefW63Cwa8Zq JETOOKgu2VFZWktGDgumm45Of0CTwHLp1oKXSfWSYwOKmT1noHcy0R2rYmtRWnF52O6D H2AQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:mime-version:user-agent:references :message-id:in-reply-to:subject:cc:to:from:date; bh=ov2A/w7njYXto8DvGzE4v6yiaU77DUQXXp6yXkJzPVE=; b=HEEXkRmTv3p8HJdjhB12PiKL9T4MwGTIpmb3Z+0gxNzol2io+C6Xqb4uoM3AF/c/V/ EZEeI4NHyL2W6YR7vyKRNIpdiAz0+sxHFP06ToaIyw3lvr8jrHnpt4lKmcq88jmISOIu fwhoHLP7ordy8Hi7Yq3gB9arxh0ihF9vUcqWpHFeOcBC7B/bTGbMvWM+qikzzwKXcM5H 4R024b5pK1YLIHK5Olg6qp8dQ9sRRa03Ow9u2iBGs6DRImNz0TORH7Huotw4+YyVrEgu EY5CLQ4zucmaO4gc9gQZ552QEvgP+L1chpAf9a1qYOFKR3rvs1JgXdb8GyQdo3M8zW4W q19w== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id oq11si651562ejb.552.2020.05.19.14.54.21; Tue, 19 May 2020 14:54:44 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1728004AbgESVxB (ORCPT + 99 others); Tue, 19 May 2020 17:53:01 -0400 Received: from namei.org ([65.99.196.166]:38346 "EHLO namei.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726199AbgESVxA (ORCPT ); Tue, 19 May 2020 17:53:00 -0400 Received: from localhost (localhost [127.0.0.1]) by namei.org (8.14.4/8.14.4) with ESMTP id 04JLqgRE031922; Tue, 19 May 2020 21:52:42 GMT Date: Wed, 20 May 2020 07:52:42 +1000 (AEST) From: James Morris To: "Eric W. Biederman" cc: linux-kernel@vger.kernel.org, Linus Torvalds , Oleg Nesterov , Jann Horn , Kees Cook , Greg Ungerer , Rob Landley , Bernd Edlinger , linux-fsdevel@vger.kernel.org, Al Viro , Alexey Dobriyan , Andrew Morton , Casey Schaufler , linux-security-module@vger.kernel.org, "Serge E. Hallyn" , Andy Lutomirski Subject: Re: [PATCH v2 3/8] exec: Convert security_bprm_set_creds into security_bprm_repopulate_creds In-Reply-To: <87o8qkzrxp.fsf_-_@x220.int.ebiederm.org> Message-ID: References: <87h7wujhmz.fsf@x220.int.ebiederm.org> <87sgga6ze4.fsf@x220.int.ebiederm.org> <87v9l4zyla.fsf_-_@x220.int.ebiederm.org> <877dx822er.fsf_-_@x220.int.ebiederm.org> <87o8qkzrxp.fsf_-_@x220.int.ebiederm.org> User-Agent: Alpine 2.21 (LRH 202 2017-01-01) MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Mon, 18 May 2020, Eric W. Biederman wrote: > diff --git a/fs/exec.c b/fs/exec.c > index 9e70da47f8d9..8e3b93d51d31 100644 > --- a/fs/exec.c > +++ b/fs/exec.c > @@ -1366,7 +1366,7 @@ int begin_new_exec(struct linux_binprm * bprm) > * the final state of setuid/setgid/fscaps can be merged into the > * secureexec flag. > */ > - bprm->secureexec |= bprm->cap_elevated; > + bprm->secureexec |= bprm->active_secureexec; Which kernel tree are these patches for? Seems like begin_new_exec() is from a prerequisite patchset. -- James Morris