docker permission issues with overlay2 storage driver
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
linux (Ubuntu) |
Fix Released
|
Medium
|
Seth Forshee | ||
Xenial |
Fix Released
|
Medium
|
Seth Forshee |
Bug Description
SRU Justification
Impact: Under some conditions docker users using the overlay2 storage driver with xenial kernels will get "permission denied" errors when they should not. This is due to a bug in overlayfs.
Fix: Backport upstream fix, plus some cleanup to make the backup cleaner.
Regression Potential: All changes are straightforward and have low risk of introducing regressions.
---
Due to an issue in overlayfs, in some scenrios docker users can get erroneous "permission denied" errors when using the overlay2 storage driver. When a user has search permissions on the upper dir but not the lower dir they may get this error, where having search permissions for the upper dir should be sufficient. This is fixed by upstream commit 38b78a5f18584db
Originally reported at https:/
Changed in linux (Ubuntu): | |
status: | New → Fix Released |
Changed in linux (Ubuntu Xenial): | |
assignee: | nobody → Seth Forshee (sforshee) |
importance: | Undecided → Medium |
status: | New → In Progress |
summary: |
- docker gives "permission denied" errors with overlayfs in some scenarios + docker permission issues with overlay2 storage driver |
description: | updated |
description: | updated |
Changed in linux (Ubuntu Xenial): | |
status: | In Progress → Fix Committed |
Attaching script to reproduce.