| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: enable-no_new_privs | Distribution: openSUSE Tumbleweed |
| Version: 1.0 | Vendor: openSUSE |
| Release: 1.1 | Build date: Thu Dec 18 10:36:38 2025 |
| Group: Unspecified | Build host: reproducible |
| Size: 1732 | Source RPM: enable-no_new_privs-1.0-1.1.src.rpm |
| Packager: https://bugs.opensuse.org | |
| Summary: System configuration to enforce NoNewPrivs by default | |
This package provides the configuration files and dependencies necessary to enforce the no_new_privs kernel flag system-wide. When enabled, this flag prevents processes from granting privileges that were not already held by their parent. Consequently, setuid and setgid binaries will no longer function to elevate permissions.
BSD-2-Clause
* Thu Dec 18 2025 Thorsten Kukuk <kukuk@suse.com> - Update dependencies to account-utils and run0-wrappers * Tue Dec 16 2025 Thorsten Kukuk <kukuk@suse.com> - Rename from disable-setuid to enable-no_new_privs * Wed Dec 10 2025 Thorsten Kukuk <kukuk@suse.com> - Move presets to systemd-presets-common-SUSE * Wed Dec 03 2025 Thorsten Kukuk <kukuk@suse.com> - Don't conflict with pkexec, run0-wrappers handles this * Tue Dec 02 2025 Thorsten Kukuk <kukuk@suse.com> - Don't remove pam_unix_ng on de-install * Fri Nov 28 2025 Thorsten Kukuk <kukuk@suse.com> - Replace run0-sudo requires with run0-wrappers * Thu Nov 13 2025 Thorsten Kukuk <kukuk@suse.com> - Remove setuid bit from polkit agent * Thu Nov 13 2025 Thorsten Kukuk <kukuk@suse.com> - Require splitted shadow package * Wed Nov 12 2025 Thorsten Kukuk <kukuk@suse.com> - Require run0-sudo * Mon Nov 10 2025 Thorsten Kukuk <kukuk@suse.com> - Enable newidmapd.socket by default * Mon Nov 10 2025 Thorsten Kukuk <kukuk@suse.com> - Adjust minimal polkit version * Wed Nov 05 2025 Thorsten Kukuk <kukuk@suse.com> - Rebuild initrd since the systemd.conf changes end there * Wed Nov 05 2025 Thorsten Kukuk <kukuk@suse.com> - Add preset file for polkit-agent, pwaccess and pwupd * Sun Nov 02 2025 Thorsten Kukuk <kukuk@suse.com> - Require account-utils > 0.3+git20251101 - Conflicts with cron and pkexec * Fri Oct 31 2025 Thorsten Kukuk <kukuk@suse.com> - Initial version
/usr/lib/systemd/system.conf.d /usr/lib/systemd/system.conf.d/10-enable-NoNewPrivs.conf /usr/share/doc/packages/enable-no_new_privs /usr/share/doc/packages/enable-no_new_privs/README /usr/share/licenses/enable-no_new_privs /usr/share/licenses/enable-no_new_privs/LICENSE
Generated by rpm2html 1.8.1
Fabrice Bellet, Thu Jan 1 22:21:14 2026