From 4d317cf807f735f616e2cebd690225157b2a8bf0 Mon Sep 17 00:00:00 2001 From: Alexandre Pujol Date: Sat, 11 Feb 2023 20:20:45 +0000 Subject: [PATCH] feat(profiles): remove setpriv. This program should be included by other profile, not generally confined. --- apparmor.d/profiles-s-z/setpriv | 20 -------------------- dists/flags/main.flags | 1 - 2 files changed, 21 deletions(-) delete mode 100644 apparmor.d/profiles-s-z/setpriv diff --git a/apparmor.d/profiles-s-z/setpriv b/apparmor.d/profiles-s-z/setpriv deleted file mode 100644 index 9621c284c..000000000 --- a/apparmor.d/profiles-s-z/setpriv +++ /dev/null @@ -1,20 +0,0 @@ -# apparmor.d - Full set of apparmor profiles -# Copyright (C) 2020-2021 Mikhail Morfikov -# SPDX-License-Identifier: GPL-2.0-only - -abi , - -include - -@{exec_path} = /{usr/,}bin/setpriv -profile setpriv @{exec_path} { - include - include - - @{exec_path} mr, - - /{usr/,}bin/[a-z0-9]* rPUx, - /{usr/,}{s,}bin/[a-z0-9]* rPUx, - - include if exists -} diff --git a/dists/flags/main.flags b/dists/flags/main.flags index 380e122aa..88d3bfc9b 100644 --- a/dists/flags/main.flags +++ b/dists/flags/main.flags @@ -173,7 +173,6 @@ s3fs complain sbctl complain scrcpy complain sdcv complain -setpriv complain sftp-server complain slirp4netns attach_disconnected,complain snap complain