From 9c071c863b30de5a7a1180a0ef0860c04887c96e Mon Sep 17 00:00:00 2001 From: smitsohu Date: Sun, 20 Jun 2021 22:50:14 +0200 Subject: cleanup --- src/firejail/dbus.c | 4 ++-- src/firejail/dhcp.c | 3 --- 2 files changed, 2 insertions(+), 5 deletions(-) diff --git a/src/firejail/dbus.c b/src/firejail/dbus.c index bfa28fcba..9a4cb2e6b 100644 --- a/src/firejail/dbus.c +++ b/src/firejail/dbus.c @@ -470,7 +470,7 @@ void dbus_apply_policy(void) { create_empty_dir_as_root(RUN_DBUS_DIR, 0755); if (arg_dbus_user != DBUS_POLICY_ALLOW) { - create_empty_file_as_root(RUN_DBUS_USER_SOCKET, 0700); + create_empty_file_as_root(RUN_DBUS_USER_SOCKET, 0600); if (arg_dbus_user == DBUS_POLICY_FILTER) { assert(dbus_user_proxy_socket != NULL); @@ -509,7 +509,7 @@ void dbus_apply_policy(void) { } if (arg_dbus_system != DBUS_POLICY_ALLOW) { - create_empty_file_as_root(RUN_DBUS_SYSTEM_SOCKET, 0700); + create_empty_file_as_root(RUN_DBUS_SYSTEM_SOCKET, 0600); if (arg_dbus_system == DBUS_POLICY_FILTER) { assert(dbus_system_proxy_socket != NULL); diff --git a/src/firejail/dhcp.c b/src/firejail/dhcp.c index 47dd39ac0..ec482e2ea 100644 --- a/src/firejail/dhcp.c +++ b/src/firejail/dhcp.c @@ -160,9 +160,6 @@ void dhcp_start(void) { exit(1); } - sbox_run(SBOX_ROOT| SBOX_SECCOMP, 4, PATH_FCOPY, "--follow-link", dhclient_path, RUN_MNT_DIR); - dhclient_path = RUN_MNT_DIR "/dhclient"; - EUID_ROOT(); if (mkdir(RUN_DHCLIENT_DIR, 0700)) errExit("mkdir"); -- cgit v1.2.3-54-g00ecf