containers / containers/bubblewrap
Don't implicily enable --unshare-user when not running as root
Open
- Dominant language
- C
- Stars
- 8.7k
- Forks
- 386
- Avg merge
- 3d 17h
- Merged PRs (30d)
- 11
Description
If already in a user namespace, a regular user can have all the required permissions necessary for bubblewrap to function correctly. Hence bubblewrap shouldn't implicitly enable --unshare-user when not running as root if the user has all the required capabilities for bubblewrap to function correctly.
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.