Bug 2106793 - crio umask sometimes set to 0000
Summary: crio umask sometimes set to 0000
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: OpenShift Container Platform
Classification: Red Hat
Component: Node
Version: 4.8
Hardware: Unspecified
OS: Unspecified
high
low
Target Milestone: ---
: 4.9.z
Assignee: Sascha Grunert
QA Contact: Weinan Liu
URL:
Whiteboard:
Depends On: 2106794
Blocks: 2105159
TreeView+ depends on / blocked
 
Reported: 2022-07-13 14:15 UTC by Sascha Grunert
Modified: 2023-01-12 10:52 UTC (History)
17 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of: 2040612
Environment:
Last Closed: 2022-08-31 16:39:49 UTC
Target Upstream Version:
Embargoed:
sgrunert: needinfo-


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Github cri-o cri-o pull 6052 0 None Merged [release-1.22] BZ#2106793 Use a default umask of `0o022` 2022-08-15 14:30:47 UTC
Github opencontainers runc pull 3563 0 None open libcontainer: LockOSThread around Umask calls 2022-08-19 14:48:32 UTC
Red Hat Product Errata RHSA-2022:6147 0 None None None 2022-08-31 16:40:54 UTC

Comment 5 Colum Gaynor 2022-08-12 05:09:37 UTC
@sascha. ---> Nokia SEP Senior Manager called nme to a meeting yesterday to ask the progress of this OCP 4.9.z backport.
It's needed urgently!

The BZ has severity "low" which is not acceptable,
The case has visibilty to Senior Nokia vRAN/SEP Management
We need that the backport can be expedited...

Colum Gaynor - Senior Partner Success Manager, Nokia Global Account

Comment 6 Colum Gaynor 2022-08-12 05:11:45 UTC
@Sunil Choudhary <schoudha> ---> Is there a schedule when the OCP 4.9.z bakport (ie this BZ) can enter QE.
I have understood that backport to OCP 4.10.z went ok ?

Colum Gaynor - Senior Partner Success Manager

Comment 7 Peter Hunt 2022-08-15 14:31:15 UTC
Attached PR merged

Comment 17 Weinan Liu 2022-08-19 05:56:58 UTC
sh-4.4# umask
0022
sh-4.4# ps lp $(grep -l "Umask:[[:space:]]0000" /proc/[0-9]*/status | cut -f3 -d/) | grep -v "]$"
grep: /proc/23989/status: No such file or directory
F   UID     PID    PPID PRI  NI    VSZ   RSS WCHAN  STAT TTY        TIME COMMAND
4     0       1       0  20   0 177040 15388 do_epo Ss   ?          0:09 /usr/lib/systemd/systemd --switched-root --system --deserialize 17

Verified on 4.9.46

Comment 32 errata-xmlrpc 2022-08-31 16:39:49 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Important: OpenShift Container Platform 4.9.47 bug fix and security update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2022:6147


Note You need to log in before you can comment on or make changes to this bug.