** Patch added: 
"0001-UBUNTU-SAUCE-xenbus-Use-proc_create_mount_point-to-c.patch"
   
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1607374/+attachment/4708767/+files/0001-UBUNTU-SAUCE-xenbus-Use-proc_create_mount_point-to-c.patch

** Changed in: linux (Ubuntu Xenial)
   Importance: Undecided => Medium

** Changed in: linux (Ubuntu Xenial)
       Status: New => In Progress

** Changed in: linux (Ubuntu Xenial)
     Assignee: (unassigned) => Seth Forshee (sforshee)

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux in Ubuntu.
https://bugs.launchpad.net/bugs/1607374

Title:
  Cannot mount proc in unprivileged containers if /proc/xen is mounted

Status in linux package in Ubuntu:
  In Progress
Status in linux source package in Xenial:
  In Progress

Bug description:
  SRU Justification

  Impact: The xenfs filesystem is traditionally mounted at /proc/xen in
  xen guests. This directory doesn't use the special "create proc
  mountpoint" interface and thus fails the permanently empty test in
  fs_fully_visible(). This causes mounting of proc to fail in user
  namespace containers.

  Fix: Use the special proc interface to make this a "permanently empty"
  directory.

  Regression potential: This change will make it impossible to create
  files within /proc/xen, but since the directory is only ever used as a
  mount point this should not cause any problems.

  Original bug report and testing results can be found at
  https://github.com/lxc/lxd/issues/2238.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1607374/+subscriptions

-- 
Mailing list: https://launchpad.net/~kernel-packages
Post to     : kernel-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~kernel-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to