зеркало из https://github.com/mozilla/gecko-dev.git
servo: Don't allow processes to be executed inside /private/var or Autosave Info
Source-Repo: https://github.com/servo/servo Source-Revision: b10b669575cde74baea08010f50fb0521f4b8db7
This commit is contained in:
Родитель
64e1511f14
Коммит
910eafbdc4
|
@ -18,6 +18,10 @@
|
|||
(allow process-exec
|
||||
(regex #"/servo$"))
|
||||
|
||||
(deny process-exec
|
||||
(regex #"^/Users/[^/]+/Library/Autosave Information")
|
||||
(subpath "/private/var"))
|
||||
|
||||
(allow sysctl-read)
|
||||
(allow sysctl-write)
|
||||
(allow ipc-posix-shm)
|
||||
|
|
Загрузка…
Ссылка в новой задаче