openSUSE:Security Notices

Jump to: navigation, search

openSUSE Security Notices

This page lists security related recommendations and notices provided by the SUSE Security Team. These are intended for users of openSUSE to make informed decisions about the security of their Linux distribution.


Privileged File Operations in Dolphin (KDE) and Nautilus (GNOME) File Managers

KDE's file manager Dolphin offers an admin mode to operate on files as root, which is based on the kio-admin package. A similar mechanism is found in GNOME's Nautilus file manager by using the admin:// protocol, which is based on the gvfs package.

Both approaches to editing files as root in graphical applications can have security implications in some scenarios. You can find a detailed technical explanation in our blog. Furthermore we provide recommendations regarding the safe use of these features. You should carefully through them if you are using these features in Dolphin or Nautilus to reduce the risk of security issues on your system.