Skip to content
Snippets Groups Projects
Commit a85fb273 authored by Eric W. Biederman's avatar Eric W. Biederman
Browse files

vfs: Allow chroot if you have CAP_SYS_CHROOT in your user namespace


Once you are confined to a user namespace applications can not gain
privilege and escape the user namespace so there is no longer a reason
to restrict chroot.

Acked-by: default avatarSerge Hallyn <serge.hallyn@canonical.com>
Signed-off-by: default avatar"Eric W. Biederman" <ebiederm@xmission.com>
parent 50804fe3
No related branches found
No related tags found
No related merge requests found
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment