You have been subscribed to a public bug:
The ApplicationManager inside unity-mir authorizes any process that has
"qt5/libexec/QtWebProcess" in its cmdline, so a malicious app could just
run itself with `./malicious --ignore qt5/libexec/QtWebProcess`.
** Affects: qtmir (Ubuntu)
Importance: Undecided
Status: New
--
unity-mir authorizes any process with specific cmdline
https://bugs.launchpad.net/bugs/1311011
You received this bug notification because you are a member of Ubuntu Bugs,
which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs