Get the latest tech news

Omarchy: Any User Process Can Escalate to Root


A security issue in Omarchy’s default Docker configuration meant that essentially every program running in the user’s desktop session could escalate to root without a password, sudo, or a privilege prompt. If you use Omarchy, the most important takeaway is simple: update to 4.0.1. I reported this issue privately through the project’s responsible-disclosure process. The underlying configuration has since been patched, so I’m publishing the details now to explain what the issue is and let users know to update their systems.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Omarchy

Omarchy

Photo of user process

user process

Related news:

News photo

Omarchy development practices lead to predictable security issues

News photo

Omarchy 4.0 Linux Distro Released With Desktop Shell Now Implemented Via Quickshell

News photo

Omarchy Is Not A Distro