[Pkg-privacy-commits] [torbrowser-launcher] 15/28: apparmor: Don't let Tor access /proc/meminfo
Ulrike Uhlig
u-guest at moszumanska.debian.org
Sun Jul 10 21:18:17 UTC 2016
This is an automated email from the git hooks/post-receive script.
u-guest pushed a commit to branch debian/sid
in repository torbrowser-launcher.
commit 4d6f5248eda001e5353a5286b61cf3722c4f06fc
Author: Nicolas Braud-Santoni <nicolas at braud-santoni.eu>
Date: Tue Jun 28 01:39:13 2016 +0200
apparmor: Don't let Tor access /proc/meminfo
The system-wide Tor profile doesn't have this
allowance either, and this doesn't break anything.
---
apparmor/torbrowser.Tor.tor | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/apparmor/torbrowser.Tor.tor b/apparmor/torbrowser.Tor.tor
index 1cd9471..b4af278 100644
--- a/apparmor/torbrowser.Tor.tor
+++ b/apparmor/torbrowser.Tor.tor
@@ -15,7 +15,7 @@
owner @{HOME}/.local/share/torbrowser/tbb/{i686,x86_64}/tor-browser_*/{Browser/TorBrowser/,}Data/Tor/lock rwk,
owner @{HOME}/.local/share/torbrowser/tbb/{i686,x86_64}/tor-browser_*/{Browser/TorBrowser/Tor,Lib}/*.so mr,
owner @{HOME}/.local/share/torbrowser/tbb/{i686,x86_64}/tor-browser_*/{Browser/TorBrowser/Tor,Lib}/*.so.* mr,
- @{PROC}/meminfo r,
+
@{PROC}/sys/kernel/random/uuid r,
/sys/devices/system/cpu/ r,
--
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-privacy/packages/torbrowser-launcher.git
More information about the Pkg-privacy-commits
mailing list