ungoogled-software / ungoogled-chromium-archlinux

Arch Linux packaging for ungoogled-chromium

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Ptrace Protection with Yama LSM( Non Broker ) = No in chrome://sandbox/ with linux-hardened and setting sysctl kernel.unprivileged_userns_clone = 1

Anish-M-code opened this issue · comments

sandboxx

I have no idea if the above is an issue that needs fixing or anything to worry about at all. So some feedback would be appreciated.
I have also ensured that yama lsm is enabled in boot parameters and set sysctl value kernel.yama.ptrace_scope = 3 to ensure yama lsm works.

The same protections apply to a vanilla extra/chromium installation, if you have concerns about that please file an issue in the Arch Linux bugtracker

Thanks for guiding me @networkException .