Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | clean make cppcheck | 2020-08-10 | |
| | |||
* | Merge branch 'release-0.9.62' of https://github.com/netblue30/firejail into ↵ | 2020-08-09 | |
|\ | | | | | | | release-0.9.62 | ||
| * | profile fixes (3) | 2020-08-09 | |
| | | |||
* | | fix writable-var-log | 2020-08-09 | |
| | | |||
* | | mount sandbox lib directory ro,nosuid,nodev | 2020-08-09 | |
| | | |||
* | | fix read-only=/ | 2020-08-09 | |
| | | |||
* | | extra x11 hardening | 2020-08-09 | |
| | | |||
* | | private-home: create directories as the user | 2020-08-09 | |
|/ | |||
* | fix for older gcc compilerss | 2020-08-08 | |
| | |||
* | patches form Debian (firejail 0.9.64-4, sid): element-profile.patch, ↵ | 2020-08-07 | |
| | | | | usrsharedoc.patch, pathnames.patch, usr-share-firefox.patch | ||
* | fixes for CVE-2020-17367 and CVE-2020-17368 | 2020-08-07 | |
| | |||
* | starting 0.9.62.2, included profile-fixes.patch and apparmor-include.patch ↵ | 2020-08-07 | |
| | | | | from Debian sid (firejail 0.9.62-3) | ||
* | merge from mainline: disable CLI archivers | 2019-12-28 | |
| | |||
* | Add ephemeral to firecfg.config | 2019-12-24 | |
| | |||
* | Add more brave redirects to firecfg.config | 2019-12-21 | |
| | |||
* | Fix Brave's native sandbox (#3087) | 2019-12-21 | |
| | | | | | | | | | | * Allow user access to /proc/config.gz * Fix Brave's native sandbox * Move /proc/config.gz to disable-common.inc * Move /proc/config.gz to disable-common.inc | ||
* | small fix | 2019-12-21 | |
| | |||
* | Fix --appimage on linux 5.4.x kernel | 2019-12-14 | |
| | | | Fixes #3068. | ||
* | little things | 2019-12-11 | |
| | |||
* | cleanup | 2019-12-03 | |
| | |||
* | fix stack alignment | 2019-11-30 | |
| | | | | apparently on x86 and on other platforms like aarch64 a 16 byte aligned stack is expected todo: replace this with a generic check | ||
* | libreoffice aliasen | 2019-11-28 | |
| | |||
* | add private-tmp debug message | 2019-11-28 | |
| | |||
* | mask more private options runtime directories, just to be sure | 2019-11-28 | |
| | |||
* | fix interaction between private options and allusers option | 2019-11-28 | |
| | |||
* | Add gist-paste to firecfg.config | 2019-11-25 | |
| | |||
* | Add new profile: gist (#3061) | 2019-11-25 | |
| | | | | | | | | | | | | * Create gist.profile * Add gist config to disable-programs.inc * Add gist to firecfg.config * Update RELNOTES * Update README.md | ||
* | Add new profile: unf (#3060) | 2019-11-24 | |
| | | | | | | * Create unf.profile * Add unf to firecfg.config | ||
* | Add new profile: gmpc (#3059) | 2019-11-24 | |
| | | | | | | | | * Create gmpc.profile * Add gmpc config to disable-programs.inc * Add gmpc to firecfg.config | ||
* | Add new profile: drawio (#3058) | 2019-11-24 | |
| | | | | | | | | * Create drawio.profile * Add drawio config to disable-programs.inc * Add drawio to firecfg.config | ||
* | Add new profile: ddgtk (#3057) | 2019-11-24 | |
| | | | | | | * Create ddgtk.profile * Add ddgtk to firecfg.config | ||
* | Add new profile: cameramonitor (#3056) | 2019-11-24 | |
| | | | | | | * Create cameramonitor.profile * Add cameramonitor to firecfg.config | ||
* | New profile: audio-recorder (#3055) | 2019-11-24 | |
| | | | | | | * Create audio-recorder.profile * Add audio-recorder to firecfg.config | ||
* | merges | 2019-11-24 | |
| | |||
* | Add new electron-mail profile (#3053) | 2019-11-23 | |
| | | | | | | | | * Create electron-mail.profile * Add electron-mail to disable-programs.inc * Add electron-mail to firecfg.config | ||
* | improving remount performance | 2019-11-19 | |
| | |||
* | fix previous commit | 2019-11-15 | |
| | |||
* | enable apparmor profile from firecfg | 2019-11-15 | |
| | |||
* | fixing the fix | 2019-11-14 | |
| | | | | | get previous commit acbf707889ae241bfd476f5371df4599103b6606 in line with treatment of other directories in /run/firejail/mnt | ||
* | blacklist private-home runtime directory | 2019-11-14 | |
| | | | | | as far as possible avoid creating locations in the file system that are both writable and executable | ||
* | simplify private option ownership checks and make them more consistent | 2019-11-14 | |
| | | | | | | allowing private and home directory to be owned by different users if the home directory is inside /home was thought to add flexibility, but the scenario is maybe a bit too exotic, and ignoring it paves the way for a simplification | ||
* | Merge pull request #3037 from vutny/fix-3029 | 2019-11-13 | |
|\ | | | | | Resolve #3029: drop outdated Skype profile | ||
| * | Resolve #3029: drop outdated Skype profile | 2019-11-12 | |
| | | |||
* | | private-options: add homedir ownership check | 2019-11-12 | |
| | | |||
* | | private-cache warning messages - #2968 | 2019-11-12 | |
| | | |||
* | | add HAS_NET conditional | 2019-11-11 | |
|/ | |||
* | add kfind profile | 2019-11-09 | |
| | |||
* | Disabled --overlay for kernels 4.219 and newer until we can bring a fix in | 2019-11-08 | |
| | |||
* | dns fixes | 2019-10-31 | |
| | |||
* | cleanup after scan-build | 2019-10-31 | |
| |