[Bug 1232231] AUDIT-0: mousepad: New PolKit rules added
https://bugzilla.suse.com/show_bug.cgi?id=1232231 https://bugzilla.suse.com/show_bug.cgi?id=1232231#c2 --- Comment #2 from Matthias Gerstner <matthias.gerstner@suse.com> --- This is simply a pkexec action to run the mousepad editor as root. The devs state themselves in the policy file: ``` <!-- SECURITY: - A normal active user can run mousepad without elevated rights. They may wish to modify a file they normally do not have read/write access to. This isn't a good idea, but is common on single user systems. --> ``` Indeed it isn't a good idea. Running a GUI application as root is not a great idea. And writing files as root in potentially dangerious file system locations is also not a great idea. There is little that can be done to improve on this, though. auth_admin is required and its only allowed for locally logged in users. People hopefully know what they are doing when they invoke the editor with privileges. -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com