victorgrant replied

398 weeks ago

I'm showing you that the script starts as root in systemd, then we switch user. You can trivially change the user in the systemd unit, but then you'll need to take care of some things. Most significantly.
Ensure that apt-pkg runs as a privileged context in the add-on [1]
Ensure hostname / timezone updates can be made as a regular user [2]
Ensure updater (manual-update) segment can run [3]
Not actually that bad. This won't protect against the many other ways of escalating privileges though.
Please help

I didn't find the right solution from the Internet.


Wireless Device Video
Please log in to post a reply.