Re: [PATCH v18 19/22] richacl: Add richacl xattr handler
From: Christoph Hellwig
Date: Mon Mar 21 2016 - 12:09:42 EST
On Tue, Mar 15, 2016 at 05:05:26PM -0400, J. Bruce Fields wrote:
> > That people get confused between the attr used by the xattr syscall
> > interface and the attr used to store things on disk or the protocol.
> > This has happened every time we have non-native support, e.g. XFS, NFS,
> > CIFS, ntfs, etc. And it's only going to become worse.
>
> How has that confusion caused problems in practice?
We had all kinds of bugs in this area that were only slowly uncovered.
We also had all kind of privilegue escalations with (non-ACLs) xattrs
as people never grasped the way different free-form namespaces have
different permission checking.