31edb319af
seunshare now creates a runtime temporary directory owned by root and with the sticky bit set properly. Files from the user-specified directory are copied to the runtime directory and the changes synced back (using rsync) at the end of the seunshare run. This is hoped to address CVE-2011-1011 Signed-off-by: Eric Paris <eparis@redhat.com> Acked-by: Dan Walsh <dwalsh@redhat.com> |
||
---|---|---|
.. | ||
.gitignore | ||
Makefile | ||
sandbox | ||
sandbox.8 | ||
sandbox.conf | ||
sandbox.conf.5 | ||
sandbox.config | ||
sandbox.init | ||
sandboxX.sh | ||
seunshare.8 | ||
seunshare.c | ||
start | ||
test_sandbox.py |