Message ID | 1298469131-16555-12-git-send-email-aneesh.kumar@linux.vnet.ibm.com (mailing list archive) |
---|---|
State | New, archived |
Headers | show |
diff --git a/fs/namei.c b/fs/namei.c index 1b6dbc9..d7ff419 100644 --- a/fs/namei.c +++ b/fs/namei.c @@ -174,6 +174,20 @@ static int acl_permission_check(struct inode *inode, int mask, unsigned int flag { umode_t mode = inode->i_mode; + if (IS_RICHACL(inode)) { + int error = check_acl(inode, mask, flags); + if (error != -EAGAIN) + return error; + if (mask & (MAY_DELETE_SELF | MAY_TAKE_OWNERSHIP | + MAY_CHMOD | MAY_SET_TIMES)) { + /* + * The file permission bit cannot grant these + * permissions. + */ + return -EACCES; + } + } + if (current_fsuid() == inode->i_uid) mode >>= 6; else {