aboutsummaryrefslogtreecommitdiffstats
path: root/etc/disable-common.inc
diff options
context:
space:
mode:
authorLibravatar rusty-snake <print_hello_world+Public@protonmail.com>2020-03-15 09:21:12 +0100
committerLibravatar rusty-snake <print_hello_world+Public@protonmail.com>2020-03-15 09:26:54 +0100
commit41f71ebb5bf78abdfd56ffd57abc6cef952b69aa (patch)
treeef9e63abc33fdaef3f56fee505599263943d55db /etc/disable-common.inc
parentimprove the previous fix: don't remount FUSE without permission (diff)
downloadfirejail-41f71ebb5bf78abdfd56ffd57abc6cef952b69aa.tar.gz
firejail-41f71ebb5bf78abdfd56ffd57abc6cef952b69aa.tar.zst
firejail-41f71ebb5bf78abdfd56ffd57abc6cef952b69aa.zip
allow ro access to .local/share/flatpak/exports
$PATH and $XDG_DATA_DIRS can contain subdirs of flatpak/exports, some applications crash if they cann't access these files. Layout on my system: ~/.local/share/flatpak/exports |-bin |-share |-applications |-icons
Diffstat (limited to 'etc/disable-common.inc')
-rw-r--r--etc/disable-common.inc9
1 files changed, 8 insertions, 1 deletions
diff --git a/etc/disable-common.inc b/etc/disable-common.inc
index bf29cd137..6f9149dee 100644
--- a/etc/disable-common.inc
+++ b/etc/disable-common.inc
@@ -444,7 +444,14 @@ blacklist /.snapshots
444 444
445# flatpak 445# flatpak
446blacklist ${HOME}/.config/flatpak 446blacklist ${HOME}/.config/flatpak
447blacklist ${HOME}/.local/share/flatpak 447blacklist ${HOME}/.local/share/flatpak/app
448blacklist ${HOME}/.local/share/flatpak/appstream
449blacklist ${HOME}/.local/share/flatpak/db
450read-only ${HOME}/.local/share/flatpak/exports
451blacklist ${HOME}/.local/share/flatpak/oci
452blacklist ${HOME}/.local/share/flatpak/overrides
453blacklist ${HOME}/.local/share/flatpak/repo
454blacklist ${HOME}/.local/share/flatpak/runtime
448blacklist ${HOME}/.var 455blacklist ${HOME}/.var
449blacklist /usr/share/flatpak 456blacklist /usr/share/flatpak
450blacklist /var/lib/flatpak 457blacklist /var/lib/flatpak