mirror of
https://github.com/roddhjav/apparmor.d.git
synced 2024-11-14 23:43:56 +01:00
b4e5837bb9
In Debian with the use of libpam-tmpdir, the paths for $TMP and $TMPDIR for PAM sessions are affected by much stronger rules and permissions, providing additional security to the environment. Those rules for the directory /tmp/user/@{uid}/<affected_program> In the case of qBitorrent this applies to the following directory: /tmp/user/@{uid}/.qBitorrent This PR fixes the bug and allows qBittorrent to work correctly under these conditions. Note: This PR would also have positive effects on Whonix, which uses libpam-tmpdir according to this link (https://forums.whonix.org/t/make-symlink-attacks-and-other-tmp-based-attacks-harder-or-impossible-using-libpam-tmpdir/8488) |
||
---|---|---|
.. | ||
abstractions | ||
groups | ||
profiles-a-f | ||
profiles-g-l | ||
profiles-m-r | ||
profiles-s-z | ||
tunables |