canonical / core18

The core18 base snap
14 stars 26 forks source link

hooks: ensure UID/GID never change on the core image (and kill _apt) #3

Closed mvo5 closed 6 years ago

mvo5 commented 6 years ago

We must ensure that uid/gid never changes in the core image because the UIDs will (potentially) leak out into the filesystem and /etc/passwd and friends are part of the readonly part of the core snap so they can be replaced.

As a drive-by this also removes the _apt user.

mvo5 commented 6 years ago

Closing as this is superseeded by work from sil2100