aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorKyle Evans <kevans@FreeBSD.org>2026-03-05 18:52:16 +0000
committerKyle Evans <kevans@FreeBSD.org>2026-03-05 18:53:01 +0000
commitd7b972c0c279eeaa8a070a2eceecce8412f281f9 (patch)
tree6dc8524ba927410f2a24aa8094a76da064a186fd
parenta983d91641656fc20ed463687c9603ef4d9cd89f (diff)
15.0/relnotes: document allow.unprivileged_parent_tampering
Reviewed by: ziaee Differential Revision: https://reviews.freebsd.org/D54956
-rw-r--r--website/content/en/releases/15.0R/relnotes.adoc4
1 files changed, 4 insertions, 0 deletions
diff --git a/website/content/en/releases/15.0R/relnotes.adoc b/website/content/en/releases/15.0R/relnotes.adoc
index 28abfb8b31..ab5cc5ecd6 100644
--- a/website/content/en/releases/15.0R/relnotes.adoc
+++ b/website/content/en/releases/15.0R/relnotes.adoc
@@ -1028,6 +1028,10 @@ Code that needs to be portable to both 15.0 and earlier versions can use `cr_gid
gitref:be1f7435ef218b1df35[repository=src]
{{< sponsored "the FreeBSD Foundation" >}}
+Unprivileged processes may no longer debug, schedule, or signal processes belonging to the same UID in a child jail by default.
+The `allow.unprivileged_parent_tampering` man:jail[8] setting has been added to revert to the previous behavior for jails where the UID in both parent and child jail are expected to be the same user.
+gitref:8a5ceebece0311bc411[repository=src]
+
[[kernel-architecture-specific]]
=== Architecture-Specific Changes