X-Git-Url: http://pileus.org/git/?a=blobdiff_plain;ds=sidebyside;f=net%2Fipv4%2Fsysctl_net_ipv4.c;h=d84400b65049e61bc64f8f8eef37e2be2aaf2eda;hb=1eb99af52c4bc705f4042f37f255975acfc738f2;hp=63d4eccc674ddd1d297368166792e99c636658f6;hpb=0d0d0b160c389574f67cdcf6766ba9597102495d;p=~andy%2Flinux diff --git a/net/ipv4/sysctl_net_ipv4.c b/net/ipv4/sysctl_net_ipv4.c index 63d4eccc674..d84400b6504 100644 --- a/net/ipv4/sysctl_net_ipv4.c +++ b/net/ipv4/sysctl_net_ipv4.c @@ -883,6 +883,9 @@ static __net_init int ipv4_sysctl_init_net(struct net *net) table[6].data = &net->ipv4.sysctl_ping_group_range; + /* Don't export sysctls to unprivileged users */ + if (net->user_ns != &init_user_ns) + table[0].procname = NULL; } /*