← Back to events
ActiveTech

Omarchy: Any User Process Can Escalate to Root

What happened

A security issue in Omarchy’s default Docker configuration meant that essentially every program running in the user’s desktop session could escalate to root without a password, sudo, or a privilege prompt. If you use Omarchy, the most important takeaway is simple: update to 4.0.1. I reported this issue privately through the project’s responsible-disclosure process. The underlying configuration has…

Summary assembled by rule from the sources below

Why it's spreading

Timeline

  1. First appeared on Hacker NewsHacker News
  2. Discussion started on LobstersLobsters

Sources