Skip to content

Commit

Permalink
Disable user sudo by default
Browse files Browse the repository at this point in the history
Protects against vulnerabilities such as
https://arstechnica.com/information-technology/2022/01/a-bug-lurking-for-12-years-gives-attackers-root-on-every-major-linux-distro/
or the previous sudo vulnerability.

Equivalent of jupyterhub/kubespawner#545

This should be counted as a braking change.
  • Loading branch information
yuvipanda committed Jan 26, 2022
1 parent e75cadd commit e9fcd22
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion systemdspawner/systemdspawner.py
Original file line number Diff line number Diff line change
Expand Up @@ -78,7 +78,7 @@ class SystemdSpawner(Spawner):
).tag(config=True)

disable_user_sudo = Bool(
False,
True,
help="""
Set to true to disallow becoming root (or any other user) via sudo or other means from inside the notebook
""",
Expand Down

0 comments on commit e9fcd22

Please sign in to comment.