What does "Warning: dropping all Linux capabilities and setting NO_NEW_PRIVS prctl" mean? #5820
-
I am running the helix editor (using the appimage from https://github.com/helix-editor/helix/releases ) using firejail, through the alias:
I have at launch the following logs:
I am curious, what does the part:
mean? Am I protected from setuid priviledge rises or not? I am on Ubuntu 22.04, and:
|
Beta Was this translation helpful? Give feedback.
Replies: 2 comments 1 reply
-
It tells you that
Yes, |
Beta Was this translation helpful? Give feedback.
-
Note that we do not maintain that version of firejail: Versions other than the latest usually have outdated profiles and may contain See also: |
Beta Was this translation helpful? Give feedback.
It tells you that
--appimage
implies--nonewprivs
,--caps.drop=all
and--nogroups
without any way to keep them.Yes,
PR_NO_NEW_PRIVS
is set.