[Bug 277228] Device permissions security hole with partitioning (/dev/geom.ctl)

2024-02-25 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=277228 Warner Losh changed: What|Removed |Added CC||i...@freebsd.org --- Comment #2 from

Problem reports for g...@freebsd.org that need special attention

2024-02-25 Thread bugzilla-noreply
To view an individual PR, use: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=(Bug Id). The following is a listing of current problems submitted by FreeBSD users, which need special attention. These represent problem reports covering all versions including experimental development code and ob

[Bug 277228] Device permissions security hole with partitioning (/dev/geom.ctl)

2024-02-25 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=277228 Kyle Evans changed: What|Removed |Added CC||kev...@freebsd.org --- Comment #3 fro

[Bug 277228] Device permissions security hole with partitioning (/dev/geom.ctl)

2024-02-25 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=277228 --- Comment #4 from Warner Losh --- (In reply to Kyle Evans from comment #3) There's no API for cdevs to get their owners, nor is there any process associated with the request by the time we get into the geom nodes that are fielding the ve

[Bug 277228] Device permissions security hole with partitioning (/dev/geom.ctl)

2024-02-25 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=277228 --- Comment #5 from Vincent Stemen --- Are there any architectural limitations that would prevent you from making gpart run under setuid or setgid using the same group ID as geom.ctl (something other than operator, so that drives can still