aboutsummaryrefslogtreecommitdiffstats
path: root/etc/inc
diff options
context:
space:
mode:
authorLibravatar Kelvin M. Klann <kmk3.code@protonmail.com>2023-10-11 07:20:04 -0300
committerLibravatar Kelvin M. Klann <kmk3.code@protonmail.com>2023-10-11 07:26:43 -0300
commitc4f5a07d20d989c1155fcd0fb863bbaa5d6ab36a (patch)
tree91bb5a7125e7e66ac00a7fd1ca76c69e8ea31bfe /etc/inc
parentdisable-common.inc: sort suid section (diff)
downloadfirejail-c4f5a07d20d989c1155fcd0fb863bbaa5d6ab36a.tar.gz
firejail-c4f5a07d20d989c1155fcd0fb863bbaa5d6ab36a.tar.zst
firejail-c4f5a07d20d989c1155fcd0fb863bbaa5d6ab36a.zip
disable-common.inc: add more suid programs
Programs: $ pacman -Qo fusermount3 groupmems mount.cifs wall write /usr/bin/fusermount3 is owned by fuse3 3.16.1-1 /usr/bin/groupmems is owned by shadow 4.14.0-4 /usr/bin/mount.cifs is owned by cifs-utils 7.0-3 /usr/bin/wall is owned by util-linux 2.39.2-1 /usr/bin/write is owned by util-linux 2.39.2-1
Diffstat (limited to 'etc/inc')
-rw-r--r--etc/inc/disable-common.inc7
1 files changed, 5 insertions, 2 deletions
diff --git a/etc/inc/disable-common.inc b/etc/inc/disable-common.inc
index d42ec5964..021c5bd20 100644
--- a/etc/inc/disable-common.inc
+++ b/etc/inc/disable-common.inc
@@ -515,16 +515,17 @@ blacklist ${PATH}/evtest
515blacklist ${PATH}/expiry 515blacklist ${PATH}/expiry
516blacklist ${PATH}/fping 516blacklist ${PATH}/fping
517blacklist ${PATH}/fping6 517blacklist ${PATH}/fping6
518blacklist ${PATH}/fusermount 518blacklist ${PATH}/fusermount*
519blacklist ${PATH}/gksu 519blacklist ${PATH}/gksu
520blacklist ${PATH}/gksudo 520blacklist ${PATH}/gksudo
521blacklist ${PATH}/gpasswd 521blacklist ${PATH}/gpasswd
522blacklist ${PATH}/groupmems
522blacklist ${PATH}/hostname 523blacklist ${PATH}/hostname
523#blacklist ${PATH}/ip # breaks --ip=dhcp 524#blacklist ${PATH}/ip # breaks --ip=dhcp
524blacklist ${PATH}/kdesudo 525blacklist ${PATH}/kdesudo
525blacklist ${PATH}/ksu 526blacklist ${PATH}/ksu
526blacklist ${PATH}/mount 527blacklist ${PATH}/mount
527blacklist ${PATH}/mount.ecryptfs_private 528blacklist ${PATH}/mount.*
528blacklist ${PATH}/mountpoint 529blacklist ${PATH}/mountpoint
529blacklist ${PATH}/mtr 530blacklist ${PATH}/mtr
530blacklist ${PATH}/mtr-packet 531blacklist ${PATH}/mtr-packet
@@ -563,6 +564,8 @@ blacklist ${PATH}/tcpdump
563blacklist ${PATH}/traceroute 564blacklist ${PATH}/traceroute
564blacklist ${PATH}/umount 565blacklist ${PATH}/umount
565blacklist ${PATH}/unix_chkpwd 566blacklist ${PATH}/unix_chkpwd
567blacklist ${PATH}/wall
568blacklist ${PATH}/write
566blacklist ${PATH}/wshowkeys 569blacklist ${PATH}/wshowkeys
567blacklist ${PATH}/xev 570blacklist ${PATH}/xev
568blacklist ${PATH}/xinput 571blacklist ${PATH}/xinput