Hello Jakub,

On Tue, 2023-01-03 at 22:28 +0100, Jakub Wilk wrote:
> The man page says that hostfs kernel param is "used to confine all 
> hostfs mounts to within the specified directory tree on the host".
> But 
> it's trivial to escape this confinements with ../ sequences:
> 
>    # mount none -t hostfs -o ../../../../../../../../home/bob/secrets
> /mnt
> 

Could you please share the kernel command line option passed to the
running uml instance ?


-- 
Ritesh Raj Sarraf | http://people.debian.org/~rrs
Debian - The Universal Operating System

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to