We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Flatpak 1.0.5
Currently x11_socket is bind-mounted from host systems as read-write. It should be possible to bind-mount it as read-only instead as it doesn't prevent using connect() syscall on socket. In fact systemd-nspawn will refuse to bind-mount x11_socket as read-write.
x11_socket
connect()
$ flatpak run --socket=x11 --command=sh org.freedesktop.Platform/x86_64/18.08 $ ls -AnG /tmp/.X11-unix/ srwxrwxrwx 1 0 0 Nov 14 09:14 X99
The text was updated successfully, but these errors were encountered:
0af7179
Mount x11_socket as read-only
d830760
Fixes #2315 Closes: #2316 Approved by: alexlarsson (cherry picked from commit 0af7179)
No branches or pull requests
Flatpak version
Flatpak 1.0.5
Description of the problem
Currently
x11_socket
is bind-mounted from host systems as read-write. It should be possible to bind-mount it as read-only instead as it doesn't prevent usingconnect()
syscall on socket. In fact systemd-nspawn will refuse to bind-mountx11_socket
as read-write.Steps to reproduce
The text was updated successfully, but these errors were encountered: