nspawn: refuse to bind mount device node from host when --private-users= is specified
authorYu Watanabe <watanabe.yu+github@gmail.com>
Thu, 5 Sep 2024 06:05:32 +0000 (15:05 +0900)
committerYu Watanabe <watanabe.yu+github@gmail.com>
Fri, 6 Sep 2024 04:28:17 +0000 (13:28 +0900)
commitefedb6b0f3cff37950112fd37cb750c16d599bc7
tree2b51cc03f19040f975af45c7da9b8980f1498b29
parent74fe65480c0e4f8f5b9374c04e74290ff402f764
nspawn: refuse to bind mount device node from host when --private-users= is specified

Also do not chown if a device node is bind-mounted.

Fixes #34243.
src/nspawn/nspawn.c