From 450d0124f78ac8235d60e16838d093f95c1718fe Mon Sep 17 00:00:00 2001 From: pirate486743186 Date: Mon, 7 Jun 2021 20:34:09 +0200 Subject: Update w3m.profile --- etc/profile-m-z/w3m.profile | 25 +++++++++++++++++++++++-- 1 file changed, 23 insertions(+), 2 deletions(-) diff --git a/etc/profile-m-z/w3m.profile b/etc/profile-m-z/w3m.profile index 131213ed2..3aa190884 100644 --- a/etc/profile-m-z/w3m.profile +++ b/etc/profile-m-z/w3m.profile @@ -17,18 +17,33 @@ noblacklist ${HOME}/.w3m blacklist /tmp/.X11-unix blacklist ${RUNUSER}/wayland-* +# Allow /bin/sh (blacklisted by disable-shell.inc) +include allow-bin-sh.inc + +# Allow perl (blacklisted by disable-interpreters.inc) include allow-perl.inc include disable-common.inc include disable-devel.inc +include disable-exec.inc include disable-interpreters.inc include disable-passwdmgr.inc include disable-programs.inc +include disable-shell.inc +include disable-write-mnt.inc include disable-xdg.inc +mkdir ${HOME}/.w3m +whitelist /usr/share/w3m +whitelist ${DOWNLOADS} +whitelist ${HOME}/.w3m include whitelist-runuser-common.inc +include whitelist-usr-share-common.inc +include whitelist-var-common.inc caps.drop all +ipc-namespace +machine-id netfilter no3d nodvd @@ -45,8 +60,14 @@ seccomp shell none tracelog -# private-bin w3m +disable-mnt +private-bin perl,sh,w3m private-cache private-dev -private-etc alternatives,ca-certificates,crypto-policies,pki,resolv.conf,ssl +private-etc alternatives,ca-certificates,crypto-policies,mailcap,nsswitch.conf,pki,resolv.conf,ssl private-tmp + +dbus-user none +dbus-system none + +memory-deny-write-execute -- cgit v1.2.3-54-g00ecf