Repository navigation
Strip setgid and setuid bits from Windows VM mount directories (#13558) - #13800
szaidi-code wants to merge 1 commit into
Conversation
|
Thanks for working on this fix! Verification Summary
Observations
|
|
Triage (not posted): Explicit Please coordinate with maintainers so one canonical PR lands this (several AnPod/stacked PRs also bundle the same harden). No objection to the patch; avoid merging the same three-line fix via many stacked branches. |
|
Thanks for this. The diagnosis is right: It is one of several open pull requests fixing #13558 / #9334 the same way, so I compared them rather than verifying this one separately: #12323, #13750, #13213, #13154, #10338, #10411 and #9605 all change the same Checked by Claude Opus 5.5 reading all eight diffs against |
|
Closing this alternative after #12323 merged into Scope checked by GPT-6 in Codex and Codex Medium against the discussion and landed change; review independence is not guaranteed. No tests were rerun for this cleanup. Omabot on behalf of DHH |
Closes #13558
Summary
When user directories such as
~/Windowsinherit the setgid bit from parent folder permissions, Windows VM mount creation can fail or propagate unexpected permissions.Changes
chmod u-s,g-s) in addition tochmod 0700in mount source and credentials routines inbin/omarchy-windows-vm.