From 9ab6b8746f9a5ad06e7ed5440c0ec96da215493b Mon Sep 17 00:00:00 2001 From: glitsj16 Date: Thu, 7 Sep 2023 13:08:52 +0000 Subject: transgui: hardening (#5989) --- etc/profile-m-z/transgui.profile | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) (limited to 'etc/profile-m-z') diff --git a/etc/profile-m-z/transgui.profile b/etc/profile-m-z/transgui.profile index 645c55c3b..9f1f1c241 100644 --- a/etc/profile-m-z/transgui.profile +++ b/etc/profile-m-z/transgui.profile @@ -12,6 +12,7 @@ include disable-common.inc include disable-devel.inc include disable-exec.inc include disable-interpreters.inc +include disable-proc.inc include disable-programs.inc include disable-shell.inc include disable-xdg.inc @@ -19,7 +20,10 @@ include disable-xdg.inc mkdir ${HOME}/.config/transgui whitelist ${HOME}/.config/transgui whitelist ${DOWNLOADS} +whitelist /usr/share/transgui include whitelist-common.inc +include whitelist-run-common.inc +include whitelist-runuser-common.inc include whitelist-usr-share-common.inc include whitelist-var-common.inc @@ -44,7 +48,7 @@ tracelog private-bin geoiplookup,geoiplookup6,transgui private-cache private-dev -private-etc +private-etc @network,@tls-ca,@x11 private-lib libgdk_pixbuf-2.0.so.*,libGeoIP.so*,libgthread-2.0.so.*,libgtk-x11-2.0.so.*,libX11.so.* private-tmp -- cgit v1.2.3-70-g09d2