summaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAge
* clean make cppcheckLibravatar netblue302020-08-10
|
* Merge branch 'release-0.9.62' of https://github.com/netblue30/firejail into ↵Libravatar smitsohu2020-08-09
|\ | | | | | | release-0.9.62
| * profile fixes (3)Libravatar rusty-snake2020-08-09
| |
* | fix writable-var-logLibravatar smitsohu2020-08-09
| |
* | mount sandbox lib directory ro,nosuid,nodevLibravatar smitsohu2020-08-09
| |
* | fix read-only=/Libravatar smitsohu2020-08-09
| |
* | extra x11 hardeningLibravatar smitsohu2020-08-09
| |
* | private-home: create directories as the userLibravatar smitsohu2020-08-09
|/
* fix for older gcc compilerssLibravatar netblue302020-08-08
|
* patches form Debian (firejail 0.9.64-4, sid): element-profile.patch, ↵Libravatar netblue302020-08-07
| | | | usrsharedoc.patch, pathnames.patch, usr-share-firefox.patch
* fixes for CVE-2020-17367 and CVE-2020-17368Libravatar netblue302020-08-07
|
* starting 0.9.62.2, included profile-fixes.patch and apparmor-include.patch ↵Libravatar netblue302020-08-07
| | | | from Debian sid (firejail 0.9.62-3)
* merge from mainline: disable CLI archiversLibravatar netblue302019-12-28
|
* Add ephemeral to firecfg.configLibravatar glitsj162019-12-24
|
* Add more brave redirects to firecfg.configLibravatar glitsj162019-12-21
|
* Fix Brave's native sandbox (#3087)Libravatar glitsj162019-12-21
| | | | | | | | | | * Allow user access to /proc/config.gz * Fix Brave's native sandbox * Move /proc/config.gz to disable-common.inc * Move /proc/config.gz to disable-common.inc
* small fixLibravatar netblue302019-12-21
|
* Fix --appimage on linux 5.4.x kernelLibravatar glitsj162019-12-14
| | | Fixes #3068.
* little thingsLibravatar smitsohu2019-12-11
|
* cleanupLibravatar smitsohu2019-12-03
|
* fix stack alignmentLibravatar smitsohu2019-11-30
| | | | apparently on x86 and on other platforms like aarch64 a 16 byte aligned stack is expected todo: replace this with a generic check
* libreoffice aliasenLibravatar rusty-snake2019-11-28
|
* add private-tmp debug messageLibravatar smitsohu2019-11-28
|
* mask more private options runtime directories, just to be sureLibravatar smitsohu2019-11-28
|
* fix interaction between private options and allusers optionLibravatar smitsohu2019-11-28
|
* Add gist-paste to firecfg.configLibravatar glitsj162019-11-25
|
* Add new profile: gist (#3061)Libravatar glitsj162019-11-25
| | | | | | | | | | | | * Create gist.profile * Add gist config to disable-programs.inc * Add gist to firecfg.config * Update RELNOTES * Update README.md
* Add new profile: unf (#3060)Libravatar glitsj162019-11-24
| | | | | | * Create unf.profile * Add unf to firecfg.config
* Add new profile: gmpc (#3059)Libravatar glitsj162019-11-24
| | | | | | | | * Create gmpc.profile * Add gmpc config to disable-programs.inc * Add gmpc to firecfg.config
* Add new profile: drawio (#3058)Libravatar glitsj162019-11-24
| | | | | | | | * Create drawio.profile * Add drawio config to disable-programs.inc * Add drawio to firecfg.config
* Add new profile: ddgtk (#3057)Libravatar glitsj162019-11-24
| | | | | | * Create ddgtk.profile * Add ddgtk to firecfg.config
* Add new profile: cameramonitor (#3056)Libravatar glitsj162019-11-24
| | | | | | * Create cameramonitor.profile * Add cameramonitor to firecfg.config
* New profile: audio-recorder (#3055)Libravatar glitsj162019-11-24
| | | | | | * Create audio-recorder.profile * Add audio-recorder to firecfg.config
* mergesLibravatar Tad2019-11-24
|
* Add new electron-mail profile (#3053)Libravatar glitsj162019-11-23
| | | | | | | | * Create electron-mail.profile * Add electron-mail to disable-programs.inc * Add electron-mail to firecfg.config
* improving remount performanceLibravatar smitsohu2019-11-19
|
* fix previous commitLibravatar netblue302019-11-15
|
* enable apparmor profile from firecfgLibravatar netblue302019-11-15
|
* fixing the fixLibravatar smitsohu2019-11-14
| | | | | get previous commit acbf707889ae241bfd476f5371df4599103b6606 in line with treatment of other directories in /run/firejail/mnt
* blacklist private-home runtime directoryLibravatar smitsohu2019-11-14
| | | | | as far as possible avoid creating locations in the file system that are both writable and executable
* simplify private option ownership checks and make them more consistentLibravatar smitsohu2019-11-14
| | | | | | allowing private and home directory to be owned by different users if the home directory is inside /home was thought to add flexibility, but the scenario is maybe a bit too exotic, and ignoring it paves the way for a simplification
* Merge pull request #3037 from vutny/fix-3029Libravatar netblue302019-11-13
|\ | | | | Resolve #3029: drop outdated Skype profile
| * Resolve #3029: drop outdated Skype profileLibravatar Denys Havrysh2019-11-12
| |
* | private-options: add homedir ownership checkLibravatar smitsohu2019-11-12
| |
* | private-cache warning messages - #2968Libravatar smitsohu2019-11-12
| |
* | add HAS_NET conditionalLibravatar smitsohu2019-11-11
|/
* add kfind profileLibravatar smitsohu2019-11-09
|
* Disabled --overlay for kernels 4.219 and newer until we can bring a fix inLibravatar netblue302019-11-08
|
* dns fixesLibravatar netblue302019-10-31
|
* cleanup after scan-buildLibravatar netblue302019-10-31
|