git: 8ef6d8ad1a61 - main - jails: delegate checking PRIV_PROC_MEM_WRITE to priv_check_cred()

From: Konstantin Belousov <kib_at_FreeBSD.org>
Date: Sun, 06 Apr 2025 22:13:49 UTC
The branch main has been updated by kib:

URL: https://cgit.FreeBSD.org/src/commit/?id=8ef6d8ad1a61a17cdaed2f5666d5a6904fd0737c

commit 8ef6d8ad1a61a17cdaed2f5666d5a6904fd0737c
Author:     Konstantin Belousov <kib@FreeBSD.org>
AuthorDate: 2025-04-06 16:57:01 +0000
Commit:     Konstantin Belousov <kib@FreeBSD.org>
CommitDate: 2025-04-06 22:13:30 +0000

    jails: delegate checking PRIV_PROC_MEM_WRITE to priv_check_cred()
    
    PR:     285811
    Fixes:  4a5fa1086184f7450f63d4a8e403b16f40a78fce
    Reviewed by:    markj
    Sponsored by:   The FreeBSD Foundation
    MFC after:      1 week
    Differential revision:  https://reviews.freebsd.org/D49682
---
 sys/kern/kern_jail.c | 5 +++++
 1 file changed, 5 insertions(+)

diff --git a/sys/kern/kern_jail.c b/sys/kern/kern_jail.c
index 37c0bd49490f..5dd07fbf77d1 100644
--- a/sys/kern/kern_jail.c
+++ b/sys/kern/kern_jail.c
@@ -4017,6 +4017,11 @@ prison_priv_check(struct ucred *cred, int priv)
 	case PRIV_PROC_SETLOGIN:
 	case PRIV_PROC_SETRLIMIT:
 
+		/*
+		 * Debuggers should work in jails.
+		 */
+	case PRIV_PROC_MEM_WRITE:
+
 		/*
 		 * System V and POSIX IPC privileges are granted in jail.
 		 */