[PATCH] make cap_ptrace enforce PTRACE_TRACME checks
authorChris Wright <chrisw@sous-sol.org>
Sat, 25 Mar 2006 11:07:41 +0000 (03:07 -0800)
committerLinus Torvalds <torvalds@g5.osdl.org>
Sat, 25 Mar 2006 16:22:56 +0000 (08:22 -0800)
commitd4eb82c783992551c574580eb55fddc8bb006ad0
tree912aa24f162342bffae86a0c3e4713700a9e5c66
parent12b5989be10011387a9da5dee82e5c0d6f9d02e7
[PATCH] make cap_ptrace enforce PTRACE_TRACME checks

PTRACE_TRACEME doesn't have proper capabilities validation when parent is
less privileged than child.  Issue pointed out by Ram Gupta
<ram.gupta5@gmail.com>.

Note: I haven't identified a strong security issue, and it's a small ABI
change that could break apps that rely on existing behaviour (which allows
parent that is less privileged than child to ptrace when child does
PTRACE_TRACEME).

Signed-off-by: Chris Wright <chrisw@sous-sol.org>
Cc: Ram Gupta <ram.gupta5@gmail.com>
Signed-off-by: Andrew Morton <akpm@osdl.org>
Signed-off-by: Linus Torvalds <torvalds@osdl.org>
security/commoncap.c