-
-
Notifications
You must be signed in to change notification settings - Fork 13.1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
firejail: 0.9.70 -> 0.9.72 #211245
firejail: 0.9.70 -> 0.9.72 #211245
Conversation
Result of 2 packages built:
|
Still investigating cause, but this seems to have broken my firejail of firefox somehow. Firejail emits a bunch of various warnings (most of which have been there forever, one of which might be new, or at least I don't recognise - something about stacking profiles) and then at the end gets a "no such file or directory" trying to start the child. I rolled back for now and will look into it more later as well as read firejail changelogs (maybe I have to adapt something in my config?), just noting here in case others find something similar. |
Thanks for noticing. Got issues here two and going two investigate this, possibly git bisecting or something like this. |
Same here, after upgrading to new version (0.9.72) none of my firejailed apps will start anymore.
The last one could be related to:
Source (changelog): https://github.com/netblue30/firejail/releases/tag/0.9.72 Interesting` is, that all of my wrapped apps:
won't work since firejail 0.9.72, but if I manually run them like: As workaround I temporary switched back to previous version (over configuration.nix):
which still works fine. Hope this helps someone somehow... |
I'm going to revert this PR and trying to find the culprit using git bisect |
@onny The cause for this is very likely the fact that specifying the the end-of-option indicator See also:
|
@rusty-snake Do you have a patch which we can apply? I tried the latest firejail master branch which is working for some wrappedBinaries but for example still fails for librewolf:
Results in
I also tried to revert a potential regression
Still no luck :( |
Reverting this specific commit netblue30/firejail@7ad735d fixes the issue for me Changing line https://github.com/netblue30/firejail/blob/7ad735deafa80114a17b20790de63f7e973b1bb4/src/firejail/sandbox.c#L531
to
fixes it :) |
Description of changes
Changelog https://github.com/netblue30/firejail/releases/tag/0.9.72
Things done
sandbox = true
set innix.conf
? (See Nix manual)nix-shell -p nixpkgs-review --run "nixpkgs-review rev HEAD"
. Note: all changes have to be committed, also see nixpkgs-review usage./result/bin/
)nixos/doc/manual/md-to-db.sh
to update generated release notes