aboutsummaryrefslogtreecommitdiff
path: root/src/libstore/build/hook-instance.cc
diff options
context:
space:
mode:
authorEelco Dolstra <edolstra@gmail.com>2023-03-20 17:04:57 +0100
committerEelco Dolstra <edolstra@gmail.com>2023-03-20 17:58:36 +0100
commit16db8dc96f64a0facbb620907e571f2dfc8e802e (patch)
treee8977ff3830df23f787b97bc57773bdba0c1a27f /src/libstore/build/hook-instance.cc
parent83b977ff0790753941509e089f33f49240d616bd (diff)
Open slave pseudoterminal before CLONE_NEWUSER
Otherwise, when running as root and user namespaces are enabled, opening the slave fails with EPERM. Fixes "opening pseudoterminal slave: Permission denied" followed by a hang (https://hydra.nixos.org/build/213104244), and "error: getting sandbox mount namespace: No such file or directory" (#8072), which happens when the child fails very quickly and consequently reading /proc/<child>/ns fails.
Diffstat (limited to 'src/libstore/build/hook-instance.cc')
0 files changed, 0 insertions, 0 deletions