From 9d5f377dd3cdc599890c274686045f857d33a3b4 Mon Sep 17 00:00:00 2001 From: netblue30 Date: Mon, 20 Feb 2017 10:55:40 -0500 Subject: security: ~/.pki directory whitelisted and later blacklisted. This affects most browsers, and disables the custom certificates installed by the user. --- RELNOTES | 2 ++ 1 file changed, 2 insertions(+) (limited to 'RELNOTES') diff --git a/RELNOTES b/RELNOTES index bef255458..5e787aca5 100644 --- a/RELNOTES +++ b/RELNOTES @@ -13,6 +13,8 @@ firejail (0.9.45) baseline; urgency=low * security: split seccomp filter code configuration in a separate executable * security: split file copying in private option in a separate executable * security: root exploit found by Sebastian Krahmer (CVE-2017-5180) + * security: ~/.pki directory whitelisted and later blacklisted. This affects + most browsers, and disables the custom certificates installed by the user. * feature: disable gnupg and systemd directories under /run/user * feature: test coverage (gcov) support * feature: allow root user access to /dev/shm (--noblacklist=/dev/shm) -- cgit v1.2.3-70-g09d2