Bug 787688

Summary: pstree does not handle correctly /proc/ when it's mounted with hidepid=1/2 option
Product: Red Hat Enterprise Linux 5 Reporter: Jerome Marchand <jmarchan>
Component: psmiscAssignee: Jaromír Cápík <jcapik>
Status: CLOSED WONTFIX QA Contact: BaseOS QE - Apps <qe-baseos-apps>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 5.7CC: jmarchan, ovasik
Target Milestone: rc   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: 787686 Environment:
Last Closed: 2014-06-02 13:20:35 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:

Description Jerome Marchand 2012-02-06 14:16:51 UTC
+++ This bug was initially created as a clone of Bug #787686 +++

Description of problem:
I'm about to post a patch for the kernel that add hidepid option to procfs. That option restricts access to
/proc/ for security reasons. The comment of upstream commit indicates that when access to /proc/ is restricted pstree shows the subtree that contains pstree process. However, on RHEL6, pstree shows nothing.

Version-Release number of selected component (if applicable):


How reproducible:
Allways

Steps to Reproduce:
1. Install a kernel with hidpid option. You can found one at
https://brewweb.devel.redhat.com/taskinfo?taskID=4002146
2. remount /proc with hidepid=1 or hidepid=2 enable
mount -o remount,hidepid=1 /proc/
3. run pstree
  
Actual results:
pstree does not display anything

Expected results:
pstree displays a subtree of processes which it has access to in /proc/<pid>/

Additional info:

Comment 1 Jerome Marchand 2012-02-06 14:18:54 UTC
(In reply to comment #0)
> +++ This bug was initially created as a clone of Bug #787686 +++
> 
> Description of problem:
> I'm about to post a patch for the kernel that add hidepid option to procfs.
> That option restricts access to
> /proc/ for security reasons. The comment of upstream commit indicates that when
> access to /proc/ is restricted pstree shows the subtree that contains pstree
> process. However, on RHEL6, pstree shows nothing.

s/RHEL6/RHEL5/

> 
> Version-Release number of selected component (if applicable):
> 
> 
> How reproducible:
> Allways
> 
> Steps to Reproduce:
> 1. Install a kernel with hidpid option. You can found one at
> https://brewweb.devel.redhat.com/taskinfo?taskID=4002146

RHEL5 kernel can be found (not for long though) at:
https://brewweb.devel.redhat.com/taskinfo?taskID=4002046

> 2. remount /proc with hidepid=1 or hidepid=2 enable
> mount -o remount,hidepid=1 /proc/
> 3. run pstree
> 
> Actual results:
> pstree does not display anything
> 
> Expected results:
> pstree displays a subtree of processes which it has access to in /proc/<pid>/
> 
> Additional info:

Comment 2 RHEL Program Management 2014-03-07 13:46:05 UTC
This bug/component is not included in scope for RHEL-5.11.0 which is the last RHEL5 minor release. This Bugzilla will soon be CLOSED as WONTFIX (at the end of RHEL5.11 development phase (Apr 22, 2014)). Please contact your account manager or support representative in case you need to escalate this bug.

Comment 3 RHEL Program Management 2014-06-02 13:20:35 UTC
Thank you for submitting this request for inclusion in Red Hat Enterprise Linux 5. We've carefully evaluated the request, but are unable to include it in RHEL5 stream. If the issue is critical for your business, please provide additional business justification through the appropriate support channels (https://access.redhat.com/site/support).

Comment 4 Jerome Marchand 2014-10-06 13:25:43 UTC
No need to escalate.