Vào Th 3, 20 thg 2, 2024 vào lúc 19:55 Claudio Jeker
<clau...@openbsd.org> đã viết:
>
> On Tue, Feb 20, 2024 at 05:09:38AM -0700, Theo de Raadt wrote:
> > Christian Weisgerber <na...@mips.inka.de> wrote:
> >
> > > Theo de Raadt:
> > >
> > > > Is it mfs specific -- or is it anytime there are layered mountpoints?
> > >
> > > Layered mountpoints, it turns out. I can reproduce it by mounting
> > > another FFS over /usr/obj.
> >
> > I suspect unveil isn't aware of this situation and caches the first
> > mount.
>
> Did the unveil happen before or after the mount?
>
> --
> :wq Claudio
>
after the mount.
I found out that when I mount a mfs over /usr/obj (ffs), and do
unveil("/usr/obj", "r"), it can still access the file.
But if I unveil /usr or / the file cannot be accessed.