From 9c6ce24a5000a5813be7d60a0ef9eeb18f121589 Mon Sep 17 00:00:00 2001 From: Vincent43 <31109921+Vincent43@users.noreply.github.com> Date: Mon, 27 Aug 2018 17:29:03 +0100 Subject: apparmor: disable exec from home by default Executing from /home was supposed to be disabled by default --- etc/firejail-default | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'etc/firejail-default') diff --git a/etc/firejail-default b/etc/firejail-default index d6aeac75b..e05d09468 100644 --- a/etc/firejail-default +++ b/etc/firejail-default @@ -79,7 +79,7 @@ deny /proc/@{PID}/oom_score_adj w, /{,run/firejail/mnt/oroot/}{,usr/,usr/local/}games/** ix, /{,run/firejail/mnt/oroot/}{,usr/,usr/local/}lib{,32,64}/** ix, /{,run/firejail/mnt/oroot/}{,usr/,usr/local/}opt/** ix, -/{,run/firejail/mnt/oroot/}{,usr/,usr/local/}home/** ix, +#/{,run/firejail/mnt/oroot/}{,usr/,usr/local/}home/** ix, # Appimage support /{,run/firejail/mnt/oroot/}{,var/}run/firejail/appimage/** ix, -- cgit v1.2.3-54-g00ecf