New issue
Advanced search Search tips

Issue 909920 link

Starred by 1 user

Issue metadata

Status: Untriaged
Owner: ----
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 3
Type: Bug



Sign in to add a comment

Add some kind of sanity checking for CONTAINER_PID env var in arc-sensor.conf

Project Member Reported by mortonm@chromium.org, Nov 28

Issue description

Any services that have method_call EmitEvent privs on the D-Bus com.ubuntu.Upstart send_destination (com.ubuntu.Upstart0_6 send_interface) can cause arc-sensor.conf to run the mknod command in the context of the namespace of any arbitrary process, which is bad in the case that said namespace bind mounts (controls) the program at /system/bin/mknod.

We should add some kind of sanity checking here if possible. This is a follow-up of crbug.com/884917.


 
Components: -OS>Systems>Containers Platform>Apps>ARC
Components: -OS>Systems>Security

Sign in to add a comment