Re: [PATCH 14/16] act: use credential guards in acct_write_process()
Christian Brauner <[email protected]>
| Newsgroups | gmane.linux.kernel.aio.general,gmane.linux.file-systems,gmane.linux.kernel,gmane.linux.file-systems.union,gmane.linux.nfs,gmane.linux.kernel.cifs,gmane.network.samba.internals,gmane.linux.kernel.cgroups,gmane.linux.network |
|---|---|
| Message-ID | <20251104-hebamme-sinnieren-a30735196a26@brauner> |
On Tue, Nov 04, 2025 at 08:04:28AM +0900, Linus Torvalds wrote: > On Mon, 3 Nov 2025 at 20:27, Christian Brauner <[email protected]> wrote: > > > > /* Perform file operations on behalf of whoever enabled accounting */ > > - cred = override_creds(file->f_cred); > > - > > + with_creds(file->f_cred); > > I'd almost prefer if we *only* did "scoped_with_creds()" and didn't > have this version at all. > > Most of the cases want that anyway, and the couple of plain > "with_creds()" cases look like they would only be cleaned up by making > the cred scoping more explicit. > > What do you think? Yeah, good idea. I reworked it all so now we're only left with: scoped_with_creds() scoped_with_kernel_creds() It increases the indentation for about 3 cases but otherwise is safer. It's all in: https://git.kernel.org/pub/scm/linux/kernel/git/vfs/vfs.git/log/?h=kernel-6.19.cred -- To unsubscribe, send a message with 'unsubscribe linux-aio' in the body to [email protected]. For more info on Linux AIO, see: http://www.kvack.org/aio/ Don't email: <a href=mailto:"[email protected]">[email protected]</a>