Firefox 99
mozilla.org
Firefox 99
1–7 of 7 posts
Re: Firefox 99
#2That is a very significant step. I wonder if this applies to Wayland users as well or if this was already a non-issue.
Re: Firefox 99
#3> The Linux sandbox has been strengthened: processes exposed to web content no longer have access to the X Window system (X11). That is a very significant step. I wonder if this applies to Wayland users as well or if this was already a non-issue.
One of the selling points of wayland is that it does not.
EDIT: See child replies. I am outdated info.
Re: Firefox 99
#4> The Linux sandbox has been strengthened: processes exposed to web content no longer have access to the X Window system (X11). That is a very significant step. I wonder if this applies to Wayland users as well or if this was already a non-issue.
The issue with Xorg is that it runs as root by default (there seems to be ways to run it as non-root according to Gentoo Wiki, but I'm pretty sure most popular distros runs it as root). One of the selling points of wayland is that it does not. EDIT: See child replies. I am outdated info.
XWayland definitely doesn't run as root, but still has a lot of access to any X applications that you are running.
Re: Firefox 99
#5Earlier quoted context omitted.
The issue with Xorg is that it runs as root by default (there seems to be ways to run it as non-root according to Gentoo Wiki, but I'm pretty sure most popular distros runs it as root). One of the selling points of wayland is that it does not. EDIT: See child replies. I am outdated info.
I don't think most distributions run X as root anymore. But it does generally have a lot of access as it can open apps and log keys. XWayland definitely doesn't run as root, but still has a lot of access to any X applications that you are running.
Re: Firefox 99
#6> The Linux sandbox has been strengthened: processes exposed to web content no longer have access to the X Window system (X11). That is a very significant step. I wonder if this applies to Wayland users as well or if this was already a non-issue.
Re: Firefox 99
#7> The Linux sandbox has been strengthened: processes exposed to web content no longer have access to the X Window system (X11). That is a very significant step. I wonder if this applies to Wayland users as well or if this was already a non-issue.
Clients can't randomly snoop onto what others are doing (e.g.: record keystrokes while on background).
There's still _some_ attack surface on Wayland, but less than there was on Xorg.
BTW: Note sure if this feature was implemented for Wayland, but it sounds like it wasn't.