Re: [PATCH 0/2] capabilities

From: Andrew Morton
Date: Wed May 12 2004 - 18:43:25 EST


Andy Lutomirski <luto@xxxxxxxxxxxxx> wrote:
>
> This reintroduces useful capabilities.
>

What if there are existing applications which are deliberately or
inadvertently relying upon the current behaviour? That seems unlikely, but
the consequences are gruesome.

If I'm right in this concern, the fixed behaviour should be opt-in. That
could be via a new prctl() thingy but I think it would be better to do it
via a kernel boot parameter. Because long-term we should have the fixed
semantics and we should not be making people change userspace for some
transient 2.6-only kernel behaviour.

> Andrew- is this sufficiently non-scary for -mm?

Scares the shit out of me, frankly ;)

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/