DescriptionLinux Sandbox: move init processes to new session id.
The setuid sandbox creates new PID namespaces. Make sure to have
the new init processes be inside a new session id and process group
so that children can't signal processes outside of the PID namespace.
BUG=446680
Committed: https://crrev.com/f48cead580e6c82a8f3c4ac2a493249da780ee28
Cr-Commit-Position: refs/heads/master@{#310394}
Patch Set 1 #
Messages
Total messages: 11 (2 generated)
|