I discovered that my ec2 instances based off of Canonical supplied AMI ami-0a23d90349664c6ee *(us-east-2), have dev mounted mounted without the nosuid option.
My usb installed 20.04.4 home machine does not have this problem, but it has been installed for quite some time. My 22.04 laptop machine also does not have this issue.
Reproduce.
Start an ec2 instance based off of ami-0a23d90349664c6ee.
$ mount | grep devtmpfs
nosuid found in the options list.
I've checked the initrd, and /etc/init.d/udev script and all places I know of where dev gets mounted set nosuid, so it's non-obvious what boot code-path is being taken that results in nosuid missing.
This is similar to https:/ /bugs.launchpad .net/ubuntu/ +source/ lxc/+bug/ 1450960 but new.
I discovered that my ec2 instances based off of Canonical supplied AMI ami-0a23d903496 64c6ee *(us-east-2), have dev mounted mounted without the nosuid option.
https:/ /us-east- 2.console. aws.amazon. com/ec2/ home?region= us-east- 2#Images: visibility= public- images; imageId= ami-0a23d903496 64c6ee
My usb installed 20.04.4 home machine does not have this problem, but it has been installed for quite some time. My 22.04 laptop machine also does not have this issue.
Reproduce. 64c6ee.
Start an ec2 instance based off of ami-0a23d903496
$ mount | grep devtmpfs
nosuid found in the options list.
I've checked the initrd, and /etc/init.d/udev script and all places I know of where dev gets mounted set nosuid, so it's non-obvious what boot code-path is being taken that results in nosuid missing.
ProblemType: Bug ature: Ubuntu 5.15.0- 1020.24~ 20.04.1- aws 5.15.53 0ubuntu27. 24 esult: skip iles: 60-cdrom_id.rules 70-snap.snapd.rules 64c6ee Zone: us-east-2c
DistroRelease: Ubuntu 20.04
Package: udev 245.4-4ubuntu3.18
ProcVersionSign
Uname: Linux 5.15.0-1020-aws x86_64
ApportVersion: 2.20.11-
Architecture: amd64
CasperMD5CheckR
CustomUdevRuleF
Date: Thu Oct 6 17:39:42 2022
Ec2AMI: ami-0a23d903496
Ec2AMIManifest: (unknown)
Ec2Availability
Ec2InstanceType: t2.medium
Ec2Kernel: unavailable
Ec2Ramdisk: unavailable
Lsusb: Error: command ['lsusb'] failed with exit code 1:
Lsusb-t:
Lsusb-v: Error: command ['lsusb', '-v'] failed with exit code 1: 256color /boot/vmlinuz- 5.15.0- 1020-aws root=PARTUUID= 5bb90437- 9efc-421d- aa94-c512c3b666 a3 ro console=tty1 console=ttyS0 nvme_core. io_timeout= 4294967295 panic=-1 bvr4.2. amazon: bd08/24/ 2006:br4. 2:svnXen: pnHVMdomU: pvr4.2. amazon: cvnXen: ct1:cvr: sku: version: 4.2.amazon
MachineType: Xen HVM domU
ProcEnviron:
TERM=xterm-
PATH=(custom, no user)
LANG=C.UTF-8
SHELL=/bin/bash
ProcKernelCmdLine: BOOT_IMAGE=
SourcePackage: systemd
UpgradeStatus: No upgrade log present (probably fresh install)
dmi.bios.date: 08/24/2006
dmi.bios.release: 4.2
dmi.bios.vendor: Xen
dmi.bios.version: 4.2.amazon
dmi.chassis.type: 1
dmi.chassis.vendor: Xen
dmi.modalias: dmi:bvnXen:
dmi.product.name: HVM domU
dmi.product.
dmi.sys.vendor: Xen