[GH-ISSUE #4899] librewolf: Error: Can't find profile directory #2811

Closed
opened 2026-05-05 09:27:55 -06:00 by gitea-mirror · 5 comments
Owner

Originally created by @mYnDstrEAm on GitHub (Feb 4, 2022).
Original GitHub issue: https://github.com/netblue30/firejail/issues/4899

Description

When I run firejail /usr/share/librewolf/librewolf I get these errors:

Warning: networking feature is disabled in Firejail configuration file
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Parent pid id, child pid id
Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set.
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Child process initialized in ... ms
console.warn: SearchSettings: "get: No settings file exists, new profile?" (new NotFoundError("Could not open the file at /home/username/.librewolf/id.default-default/search.json.mozlz4", (void 0)))
JavaScript error: resource://gre/modules/XULStore.jsm, line 66: Error: Can't find profile directory.
JavaScript error: resource://gre/modules/PromiseWorker.jsm, line 106: Error: Could not get children of file(/home/username/.librewolf/id.default-default/thumbnails) because it does not exist

Steps to Reproduce

  1. Run firejail /usr/share/librewolf/librewolf in the console on Debian11/KDE (never having run librewolf without firejail before)

Expected behavior

No errors

Actual behavior

Errors

Behavior without a profile

Additional context

This hasn't caused problems yet but I was asked to create an issue and it would be good to have this solved sooner or later.

Environment

  • Linux distribution and version: Debian11/KDE with Wayland
  • Firejail version: 0.9.66

Checklist

  • The issues is caused by firejail (i.e. running the program by path (e.g. /usr/bin/vlc) "fixes" it).
  • I can reproduce the issue without custom modifications (e.g. globals.local).
  • The program has a profile. (If not, request one in https://github.com/netblue30/firejail/issues/1139)
  • The profile (and redirect profile if exists) hasn't already been fixed upstream.
  • I have performed a short search for similar issues (to avoid opening a duplicate).
    • I'm aware of browser-allow-drm yes/browser-disable-u2f no in firejail.config to allow DRM/U2F in browsers.
  • I used --profile=PROFILENAME to set the right profile. (Only relevant for AppImages)

Log

Output of LC_ALL=C firejail --debug /path/to/program

The output is very long; these may be most relevant:

...
Disable /usr/lib/llvm-11/bin/llvm-opt-report (requested /usr/bin/llvm-opt-report-11)
Disable /usr/lib/llvm-11/bin/llvm-objcopy (requested /usr/bin/llvm-strip-11)
Disable /usr/lib/llvm-11/bin/llvm-as (requested /usr/bin/llvm-as)
Warning (blacklisting): cannot open /usr/local/sbin/llvm*: Permission denied
Disable /usr/bin/x86_64-linux-gnu-as (requested /usr/bin/as)
Warning (blacklisting): cannot open /usr/local/sbin/as: Permission denied
Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/cc)
Warning (blacklisting): cannot open /usr/local/sbin/cc: Permission denied
Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/c++)
Disable /usr/bin/x86_64-linux-gnu-c++filt (requested /usr/bin/c++filt)
Warning (blacklisting): cannot open /usr/local/sbin/c++*: Permission denied
Disable /usr/bin/c89-gcc (requested /usr/bin/c89)
Disable /usr/bin/c89-gcc
Warning (blacklisting): cannot open /usr/local/sbin/c8*: Permission denied
Disable /usr/bin/c99-gcc
Disable /usr/bin/c99-gcc (requested /usr/bin/c99)
Warning (blacklisting): cannot open /usr/local/sbin/c9*: Permission denied
Disable /usr/bin/x86_64-linux-gnu-cpp-10 (requested /usr/bin/cpp-10)
Disable /usr/bin/x86_64-linux-gnu-cpp-10 (requested /usr/bin/cpp)
Warning (blacklisting): cannot open /usr/local/sbin/cpp*: Permission denied
Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/g++-10)
Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/g++)
Warning (blacklisting): cannot open /usr/local/sbin/g++*: Permission denied
Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/gcc-nm-10)
Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/gcc-ar-10)
Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/gcc-ranlib)
Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/gcc-nm)
Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/gcc-ranlib-10)
Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/gcc)
Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/gcc-10)
Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/gcc-ar)
Warning (blacklisting): cannot open /usr/local/sbin/gcc*: Permission denied
Disable /usr/bin/gdb
Warning (blacklisting): cannot open /usr/local/sbin/gdb: Permission denied
Disable /usr/bin/x86_64-linux-gnu-ld.bfd (requested /usr/bin/ld)
Warning (blacklisting): cannot open /usr/local/sbin/ld: Permission denied
Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/x86_64-linux-gnu-gcc)
Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/x86_64-linux-gnu-gcc-nm)
Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10
Disable /usr/bin/c99-gcc
Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ranlib)
Disable /usr/bin/c89-gcc
Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ar)
Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10
Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10
Disable /usr/bin/x86_64-linux-gnu-gcc-10
Warning (blacklisting): cannot open /usr/local/sbin/*-gcc*: Permission denied
Disable /usr/bin/x86_64-linux-gnu-g++-10
Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/x86_64-linux-gnu-g++)
Warning (blacklisting): cannot open /usr/local/sbin/*-g++*: Permission denied
Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/x86_64-linux-gnu-gcc)
Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/x86_64-linux-gnu-gcc-nm)
Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10
Disable /usr/bin/c99-gcc
Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ranlib)
Disable /usr/bin/c89-gcc
Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ar)
Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10
Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10
Disable /usr/bin/x86_64-linux-gnu-gcc-10
Warning (blacklisting): cannot open /usr/local/sbin/*-gcc*: Permission denied
Disable /usr/bin/x86_64-linux-gnu-g++-10
Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/x86_64-linux-gnu-g++)
Warning (blacklisting): cannot open /usr/local/sbin/*-g++*: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/gccgo: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/go: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/gofmt: Permission denied
Disable /usr/lib/jvm/java-11-openjdk-amd64/bin/java (requested /usr/bin/java)
Warning (blacklisting): cannot open /usr/local/sbin/java: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/javac: Permission denied
Disable /etc/java
Disable /usr/lib/java
Disable /usr/bin/openssl
Warning (blacklisting): cannot open /usr/local/sbin/openssl: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/openssl-1.0: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/rust-gdb: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/rust-lldb: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/rustc: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/tcc: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/x86_64-tcc: Permission denied
...
/tmp/.X11-unix /tmp/.X11-unix rw,nosuid,nodev,noexec,relatime master:1 - ext4 /dev/mapper/hostname--vg-root rw,errors=remount-ro
mountid=2635 fsname=/tmp/.X11-unix dir=/tmp/.X11-unix fstype=ext4
Disable /usr/bin/gjs-console (requested /usr/bin/gjs)
Warning (blacklisting): cannot open /usr/local/sbin/gjs: Permission denied
Disable /usr/bin/gjs-console
Warning (blacklisting): cannot open /usr/local/sbin/gjs-console: Permission denied
Disable /usr/bin/luajithbtex
Disable /usr/bin/luahbtex (requested /usr/bin/lualatex-dev)
Disable /usr/bin/luahbtex
Disable /usr/bin/luatex
Disable /usr/bin/luajittex
Disable /usr/bin/luahbtex (requested /usr/bin/lualatex)
Disable /usr/share/texlive/texmf-dist/scripts/luaotfload/luaotfload-tool.lua (requested /usr/bin/luaotfload-tool)
Warning (blacklisting): cannot open /usr/local/sbin/lua*: Permission denied
Warning (blacklisting): cannot open /usr/include/lua*: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/node: Permission denied
Warning (blacklisting): cannot open /usr/include/node: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/core_perl: Permission denied
Disable /usr/bin/cpan5.32-x86_64-linux-gnu
Disable /usr/bin/cpan
Warning (blacklisting): cannot open /usr/local/sbin/cpan*: Permission denied
Disable /usr/bin/perl
Warning (blacklisting): cannot open /usr/local/sbin/perl: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/site_perl: Permission denied
Warning (blacklisting): cannot open /usr/local/sbin/vendor_perl: Permission denied
Disable /usr/share/perl5
Disable /usr/share/perl
Warning (blacklisting): cannot open /usr/local/sbin/php*: Permission denied
Disable /usr/bin/ruby2.7 (requested /usr/bin/ruby)
Warning (blacklisting): cannot open /usr/local/sbin/ruby: Permission denied
Disable /usr/lib/ruby
Disable /usr/bin/python2.7-dbg (requested /usr/bin/python2-dbg)
Disable /usr/bin/python2.7 (requested /usr/bin/python2)
Disable /usr/bin/x86_64-linux-gnu-python2.7-dbg-config (requested /usr/bin/python2-dbg-config)
Disable /usr/bin/python2.7-dbg
Disable /usr/bin/x86_64-linux-gnu-python2.7-config (requested /usr/bin/python2.7-config)
Disable /usr/bin/x86_64-linux-gnu-python2.7-config (requested /usr/bin/python2-config)
Disable /usr/bin/python2.7
Disable /usr/bin/x86_64-linux-gnu-python2.7-dbg-config (requested /usr/bin/python2.7-dbg-config)
Warning (blacklisting): cannot open /usr/local/sbin/python2*: Permission denied
Warning (blacklisting): cannot open /usr/include/python2*: Permission denied
Disable /usr/lib/python2.7
Disable /usr/local/lib/python2.7
Disable /usr/bin/python3.9
Disable /usr/bin/python3.9-coverage
Disable /usr/bin/python3.9d (requested /usr/bin/python3.9-dbg)
Disable /usr/bin/x86_64-linux-gnu-python3.9-config (requested /usr/bin/python3-config)
Disable /usr/bin/python3-coverage
Disable /usr/bin/python3.9d (requested /usr/bin/python3d)
Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3.9d-config)
Disable /usr/bin/python3.9d (requested /usr/bin/python3-dbg)
Disable /usr/bin/x86_64-linux-gnu-python3.9-config (requested /usr/bin/python3.9-config)
Disable /usr/bin/python3.9 (requested /usr/bin/python3)
Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3.9-dbg-config)
Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3d-config)
Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3-dbg-config)
Disable /usr/bin/python3.9d
Warning (blacklisting): cannot open /usr/local/sbin/python3*: Permission denied
Warning (blacklisting): cannot open /usr/include/python3*: Permission denied
Disable /usr/lib/python3.9
Disable /usr/lib/python3
Disable /usr/lib/python3.5
Disable /usr/lib/python3.7
...
JavaScript error: resource://gre/modules/XULStore.jsm, line 66: Error: Can't find profile directory.
JavaScript error: resource://gre/modules/PageThumbs.jsm, line 718: AbortError: IOUtils.profileBeforeChange getter: IOUtils: profileBeforeChange phase has already finished

Edit: This is likely a duplicate of:

Originally created by @mYnDstrEAm on GitHub (Feb 4, 2022). Original GitHub issue: https://github.com/netblue30/firejail/issues/4899 ### Description When I run `firejail /usr/share/librewolf/librewolf` I get these errors: ``` Warning: networking feature is disabled in Firejail configuration file Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, Parent pid id, child pid id Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set. Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, Child process initialized in ... ms console.warn: SearchSettings: "get: No settings file exists, new profile?" (new NotFoundError("Could not open the file at /home/username/.librewolf/id.default-default/search.json.mozlz4", (void 0))) JavaScript error: resource://gre/modules/XULStore.jsm, line 66: Error: Can't find profile directory. JavaScript error: resource://gre/modules/PromiseWorker.jsm, line 106: Error: Could not get children of file(/home/username/.librewolf/id.default-default/thumbnails) because it does not exist ``` ### Steps to Reproduce 1. Run firejail /usr/share/librewolf/librewolf in the console on Debian11/KDE (never having run librewolf without firejail before) ### Expected behavior No errors ### Actual behavior Errors ### Behavior without a profile ### Additional context This hasn't caused problems yet but I was asked to create an issue and it would be good to have this solved sooner or later. ### Environment - Linux distribution and version: Debian11/KDE with Wayland - Firejail version: 0.9.66 ### Checklist - [x] The issues is caused by firejail (i.e. running the program by path (e.g. `/usr/bin/vlc`) "fixes" it). - [x] I can reproduce the issue without custom modifications (e.g. globals.local). - [x] The program has a profile. (If not, request one in `https://github.com/netblue30/firejail/issues/1139`) - [x] The profile (and redirect profile if exists) hasn't already been fixed [upstream](https://github.com/netblue30/firejail/tree/master/etc). - [x] I have performed a short search for similar issues (to avoid opening a duplicate). - [ ] I'm aware of `browser-allow-drm yes`/`browser-disable-u2f no` in `firejail.config` to allow DRM/U2F in browsers. - [x] I used `--profile=PROFILENAME` to set the right profile. (Only relevant for AppImages) ### Log <details> <summary>Output of <code>LC_ALL=C firejail --debug /path/to/program</code></summary> <p> The output is very long; these may be most relevant: ``` ... Disable /usr/lib/llvm-11/bin/llvm-opt-report (requested /usr/bin/llvm-opt-report-11) Disable /usr/lib/llvm-11/bin/llvm-objcopy (requested /usr/bin/llvm-strip-11) Disable /usr/lib/llvm-11/bin/llvm-as (requested /usr/bin/llvm-as) Warning (blacklisting): cannot open /usr/local/sbin/llvm*: Permission denied Disable /usr/bin/x86_64-linux-gnu-as (requested /usr/bin/as) Warning (blacklisting): cannot open /usr/local/sbin/as: Permission denied Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/cc) Warning (blacklisting): cannot open /usr/local/sbin/cc: Permission denied Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/c++) Disable /usr/bin/x86_64-linux-gnu-c++filt (requested /usr/bin/c++filt) Warning (blacklisting): cannot open /usr/local/sbin/c++*: Permission denied Disable /usr/bin/c89-gcc (requested /usr/bin/c89) Disable /usr/bin/c89-gcc Warning (blacklisting): cannot open /usr/local/sbin/c8*: Permission denied Disable /usr/bin/c99-gcc Disable /usr/bin/c99-gcc (requested /usr/bin/c99) Warning (blacklisting): cannot open /usr/local/sbin/c9*: Permission denied Disable /usr/bin/x86_64-linux-gnu-cpp-10 (requested /usr/bin/cpp-10) Disable /usr/bin/x86_64-linux-gnu-cpp-10 (requested /usr/bin/cpp) Warning (blacklisting): cannot open /usr/local/sbin/cpp*: Permission denied Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/g++-10) Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/g++) Warning (blacklisting): cannot open /usr/local/sbin/g++*: Permission denied Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/gcc-nm-10) Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/gcc-ar-10) Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/gcc-ranlib) Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/gcc-nm) Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/gcc-ranlib-10) Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/gcc) Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/gcc-10) Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/gcc-ar) Warning (blacklisting): cannot open /usr/local/sbin/gcc*: Permission denied Disable /usr/bin/gdb Warning (blacklisting): cannot open /usr/local/sbin/gdb: Permission denied Disable /usr/bin/x86_64-linux-gnu-ld.bfd (requested /usr/bin/ld) Warning (blacklisting): cannot open /usr/local/sbin/ld: Permission denied Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/x86_64-linux-gnu-gcc) Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/x86_64-linux-gnu-gcc-nm) Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 Disable /usr/bin/c99-gcc Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ranlib) Disable /usr/bin/c89-gcc Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ar) Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 Disable /usr/bin/x86_64-linux-gnu-gcc-10 Warning (blacklisting): cannot open /usr/local/sbin/*-gcc*: Permission denied Disable /usr/bin/x86_64-linux-gnu-g++-10 Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/x86_64-linux-gnu-g++) Warning (blacklisting): cannot open /usr/local/sbin/*-g++*: Permission denied Disable /usr/bin/x86_64-linux-gnu-gcc-10 (requested /usr/bin/x86_64-linux-gnu-gcc) Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 (requested /usr/bin/x86_64-linux-gnu-gcc-nm) Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 Disable /usr/bin/c99-gcc Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ranlib) Disable /usr/bin/c89-gcc Disable /usr/bin/x86_64-linux-gnu-gcc-ar-10 (requested /usr/bin/x86_64-linux-gnu-gcc-ar) Disable /usr/bin/x86_64-linux-gnu-gcc-ranlib-10 Disable /usr/bin/x86_64-linux-gnu-gcc-nm-10 Disable /usr/bin/x86_64-linux-gnu-gcc-10 Warning (blacklisting): cannot open /usr/local/sbin/*-gcc*: Permission denied Disable /usr/bin/x86_64-linux-gnu-g++-10 Disable /usr/bin/x86_64-linux-gnu-g++-10 (requested /usr/bin/x86_64-linux-gnu-g++) Warning (blacklisting): cannot open /usr/local/sbin/*-g++*: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/gccgo: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/go: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/gofmt: Permission denied Disable /usr/lib/jvm/java-11-openjdk-amd64/bin/java (requested /usr/bin/java) Warning (blacklisting): cannot open /usr/local/sbin/java: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/javac: Permission denied Disable /etc/java Disable /usr/lib/java Disable /usr/bin/openssl Warning (blacklisting): cannot open /usr/local/sbin/openssl: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/openssl-1.0: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/rust-gdb: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/rust-lldb: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/rustc: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/tcc: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/x86_64-tcc: Permission denied ... /tmp/.X11-unix /tmp/.X11-unix rw,nosuid,nodev,noexec,relatime master:1 - ext4 /dev/mapper/hostname--vg-root rw,errors=remount-ro mountid=2635 fsname=/tmp/.X11-unix dir=/tmp/.X11-unix fstype=ext4 Disable /usr/bin/gjs-console (requested /usr/bin/gjs) Warning (blacklisting): cannot open /usr/local/sbin/gjs: Permission denied Disable /usr/bin/gjs-console Warning (blacklisting): cannot open /usr/local/sbin/gjs-console: Permission denied Disable /usr/bin/luajithbtex Disable /usr/bin/luahbtex (requested /usr/bin/lualatex-dev) Disable /usr/bin/luahbtex Disable /usr/bin/luatex Disable /usr/bin/luajittex Disable /usr/bin/luahbtex (requested /usr/bin/lualatex) Disable /usr/share/texlive/texmf-dist/scripts/luaotfload/luaotfload-tool.lua (requested /usr/bin/luaotfload-tool) Warning (blacklisting): cannot open /usr/local/sbin/lua*: Permission denied Warning (blacklisting): cannot open /usr/include/lua*: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/node: Permission denied Warning (blacklisting): cannot open /usr/include/node: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/core_perl: Permission denied Disable /usr/bin/cpan5.32-x86_64-linux-gnu Disable /usr/bin/cpan Warning (blacklisting): cannot open /usr/local/sbin/cpan*: Permission denied Disable /usr/bin/perl Warning (blacklisting): cannot open /usr/local/sbin/perl: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/site_perl: Permission denied Warning (blacklisting): cannot open /usr/local/sbin/vendor_perl: Permission denied Disable /usr/share/perl5 Disable /usr/share/perl Warning (blacklisting): cannot open /usr/local/sbin/php*: Permission denied Disable /usr/bin/ruby2.7 (requested /usr/bin/ruby) Warning (blacklisting): cannot open /usr/local/sbin/ruby: Permission denied Disable /usr/lib/ruby Disable /usr/bin/python2.7-dbg (requested /usr/bin/python2-dbg) Disable /usr/bin/python2.7 (requested /usr/bin/python2) Disable /usr/bin/x86_64-linux-gnu-python2.7-dbg-config (requested /usr/bin/python2-dbg-config) Disable /usr/bin/python2.7-dbg Disable /usr/bin/x86_64-linux-gnu-python2.7-config (requested /usr/bin/python2.7-config) Disable /usr/bin/x86_64-linux-gnu-python2.7-config (requested /usr/bin/python2-config) Disable /usr/bin/python2.7 Disable /usr/bin/x86_64-linux-gnu-python2.7-dbg-config (requested /usr/bin/python2.7-dbg-config) Warning (blacklisting): cannot open /usr/local/sbin/python2*: Permission denied Warning (blacklisting): cannot open /usr/include/python2*: Permission denied Disable /usr/lib/python2.7 Disable /usr/local/lib/python2.7 Disable /usr/bin/python3.9 Disable /usr/bin/python3.9-coverage Disable /usr/bin/python3.9d (requested /usr/bin/python3.9-dbg) Disable /usr/bin/x86_64-linux-gnu-python3.9-config (requested /usr/bin/python3-config) Disable /usr/bin/python3-coverage Disable /usr/bin/python3.9d (requested /usr/bin/python3d) Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3.9d-config) Disable /usr/bin/python3.9d (requested /usr/bin/python3-dbg) Disable /usr/bin/x86_64-linux-gnu-python3.9-config (requested /usr/bin/python3.9-config) Disable /usr/bin/python3.9 (requested /usr/bin/python3) Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3.9-dbg-config) Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3d-config) Disable /usr/bin/x86_64-linux-gnu-python3.9d-config (requested /usr/bin/python3-dbg-config) Disable /usr/bin/python3.9d Warning (blacklisting): cannot open /usr/local/sbin/python3*: Permission denied Warning (blacklisting): cannot open /usr/include/python3*: Permission denied Disable /usr/lib/python3.9 Disable /usr/lib/python3 Disable /usr/lib/python3.5 Disable /usr/lib/python3.7 ... JavaScript error: resource://gre/modules/XULStore.jsm, line 66: Error: Can't find profile directory. JavaScript error: resource://gre/modules/PageThumbs.jsm, line 718: AbortError: IOUtils.profileBeforeChange getter: IOUtils: profileBeforeChange phase has already finished ``` </p> </details> Edit: This is likely a duplicate of: * #5460
gitea-mirror 2026-05-05 09:27:55 -06:00
Author
Owner

@rusty-snake commented on GitHub (Jun 8, 2022):

Still an issue?

Can you try with never firejail.

What does firejail --profile=librewolf ls ~/.librewolf show?

<!-- gh-comment-id:1149795098 --> @rusty-snake commented on GitHub (Jun 8, 2022): Still an issue? Can you try with never firejail. What does `firejail --profile=librewolf ls ~/.librewolf` show?
Author
Owner

@rusty-snake commented on GitHub (Aug 30, 2022):

I'm closing here due to inactivity, please fell free to request to reopen if you still have this issue.

<!-- gh-comment-id:1231491080 --> @rusty-snake commented on GitHub (Aug 30, 2022): I'm closing here due to inactivity, please fell free to request to reopen if you still have this issue.
Author
Owner

@jcarnat commented on GitHub (Mar 31, 2025):

I do have the same issue using Debian 13 (testing).
FWIW, using firejail on Slackware 15.0 does not have this problem.

Reading profile /etc/firejail/librewolf.profile
Reading profile /etc/firejail/whitelist-usr-share-common.inc
Reading profile /etc/firejail/firefox-common.profile
Reading profile /etc/firejail/disable-common.inc
Reading profile /etc/firejail/disable-devel.inc
Reading profile /etc/firejail/disable-exec.inc
Reading profile /etc/firejail/disable-interpreters.inc
Reading profile /etc/firejail/disable-proc.inc
Reading profile /etc/firejail/disable-programs.inc
Reading profile /etc/firejail/whitelist-common.inc
Reading profile /etc/firejail/whitelist-run-common.inc
Reading profile /etc/firejail/whitelist-runuser-common.inc
Reading profile /etc/firejail/whitelist-var-common.inc
Warning: networking feature is disabled in Firejail configuration file
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Parent pid 4158, child pid 4162
Warning: cannot find /var/run/utmp
Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set.
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Warning: cleaning all supplementary groups
Warning: Replacing profile instead of stacking it. It is a legacy behavior that can result in relaxation of the protection. It is here as a temporary measure to unbreak the software that has been broken by switching to the stacking behavior.
Warning: Cannot confine the application using AppArmor.
Maybe firejail-default AppArmor profile is not loaded into the kernel.
As root, run "aa-enforce firejail-default" to load it.
Child process initialized in 149.60 ms
JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory.
JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory.
JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory.
JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory.

Parent is shutting down, bye...

$ firejail --profile=/etc/firejail/librewolf.profile ls ~/.librewolf
Reading profile /etc/firejail/librewolf.profile
Reading profile /etc/firejail/whitelist-usr-share-common.inc
Reading profile /etc/firejail/firefox-common.profile
Reading profile /etc/firejail/disable-common.inc
Reading profile /etc/firejail/disable-devel.inc
Reading profile /etc/firejail/disable-exec.inc
Reading profile /etc/firejail/disable-interpreters.inc
Reading profile /etc/firejail/disable-proc.inc
Reading profile /etc/firejail/disable-programs.inc
Reading profile /etc/firejail/whitelist-common.inc
Reading profile /etc/firejail/whitelist-run-common.inc
Reading profile /etc/firejail/whitelist-runuser-common.inc
Reading profile /etc/firejail/whitelist-var-common.inc
Warning: networking feature is disabled in Firejail configuration file
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Parent pid 4364, child pid 4368
Warning: cannot find /var/run/utmp
Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set.
Seccomp list in: !chroot, check list: @default-keep, prelist: unknown,
Warning: cleaning all supplementary groups
Warning: Replacing profile instead of stacking it. It is a legacy behavior that can result in relaxation of the protection. It is here as a temporary measure to unbreak the software that has been broken by switching to the stacking behavior.
Warning: Cannot confine the application using AppArmor.
Maybe firejail-default AppArmor profile is not loaded into the kernel.
As root, run "aa-enforce firejail-default" to load it.
Child process initialized in 178.61 ms
047nuqac.joel

Parent is shutting down, bye...

$ firejail --version
firejail version 0.9.72

Compile time support:
        - always force nonewprivs support is disabled
        - AppArmor support is enabled
        - AppImage support is enabled
        - chroot support is enabled
        - D-BUS proxy support is enabled
        - file transfer support is enabled
        - firetunnel support is disabled
        - IDS support is enabled
        - networking support is enabled
        - output logging is enabled
        - overlayfs support is disabled
        - private-home support is enabled
        - private-cache and tmpfs as user enabled
        - SELinux support is enabled
        - user namespace support is enabled
        - X11 sandboxing support is enabled

$ aa-enabled 
Yes

The command aa-enforce firejail-default has been run but Librewolf still does not appear in the aa-status list. Not sure what this means...

<!-- gh-comment-id:2766219848 --> @jcarnat commented on GitHub (Mar 31, 2025): I do have the same issue using Debian 13 (testing). FWIW, using firejail on Slackware 15.0 does not have this problem. ```$ /usr/local/bin/librewolf --profileManager Reading profile /etc/firejail/librewolf.profile Reading profile /etc/firejail/whitelist-usr-share-common.inc Reading profile /etc/firejail/firefox-common.profile Reading profile /etc/firejail/disable-common.inc Reading profile /etc/firejail/disable-devel.inc Reading profile /etc/firejail/disable-exec.inc Reading profile /etc/firejail/disable-interpreters.inc Reading profile /etc/firejail/disable-proc.inc Reading profile /etc/firejail/disable-programs.inc Reading profile /etc/firejail/whitelist-common.inc Reading profile /etc/firejail/whitelist-run-common.inc Reading profile /etc/firejail/whitelist-runuser-common.inc Reading profile /etc/firejail/whitelist-var-common.inc Warning: networking feature is disabled in Firejail configuration file Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, Parent pid 4158, child pid 4162 Warning: cannot find /var/run/utmp Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set. Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, Warning: cleaning all supplementary groups Warning: Replacing profile instead of stacking it. It is a legacy behavior that can result in relaxation of the protection. It is here as a temporary measure to unbreak the software that has been broken by switching to the stacking behavior. Warning: Cannot confine the application using AppArmor. Maybe firejail-default AppArmor profile is not loaded into the kernel. As root, run "aa-enforce firejail-default" to load it. Child process initialized in 149.60 ms JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory. JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory. JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory. JavaScript error: resource://gre/modules/XULStore.sys.mjs, line 84: Error: Can't find profile directory. Parent is shutting down, bye... $ firejail --profile=/etc/firejail/librewolf.profile ls ~/.librewolf Reading profile /etc/firejail/librewolf.profile Reading profile /etc/firejail/whitelist-usr-share-common.inc Reading profile /etc/firejail/firefox-common.profile Reading profile /etc/firejail/disable-common.inc Reading profile /etc/firejail/disable-devel.inc Reading profile /etc/firejail/disable-exec.inc Reading profile /etc/firejail/disable-interpreters.inc Reading profile /etc/firejail/disable-proc.inc Reading profile /etc/firejail/disable-programs.inc Reading profile /etc/firejail/whitelist-common.inc Reading profile /etc/firejail/whitelist-run-common.inc Reading profile /etc/firejail/whitelist-runuser-common.inc Reading profile /etc/firejail/whitelist-var-common.inc Warning: networking feature is disabled in Firejail configuration file Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, Parent pid 4364, child pid 4368 Warning: cannot find /var/run/utmp Warning: An abstract unix socket for session D-BUS might still be available. Use --net or remove unix from --protocol set. Seccomp list in: !chroot, check list: @default-keep, prelist: unknown, Warning: cleaning all supplementary groups Warning: Replacing profile instead of stacking it. It is a legacy behavior that can result in relaxation of the protection. It is here as a temporary measure to unbreak the software that has been broken by switching to the stacking behavior. Warning: Cannot confine the application using AppArmor. Maybe firejail-default AppArmor profile is not loaded into the kernel. As root, run "aa-enforce firejail-default" to load it. Child process initialized in 178.61 ms 047nuqac.joel Parent is shutting down, bye... $ firejail --version firejail version 0.9.72 Compile time support: - always force nonewprivs support is disabled - AppArmor support is enabled - AppImage support is enabled - chroot support is enabled - D-BUS proxy support is enabled - file transfer support is enabled - firetunnel support is disabled - IDS support is enabled - networking support is enabled - output logging is enabled - overlayfs support is disabled - private-home support is enabled - private-cache and tmpfs as user enabled - SELinux support is enabled - user namespace support is enabled - X11 sandboxing support is enabled $ aa-enabled Yes ``` The command `aa-enforce firejail-default` has been run but Librewolf still does not appear in the `aa-status list`. Not sure what this means...
Author
Owner

@kmk3 commented on GitHub (Mar 31, 2025):

I do have the same issue using Debian 13 (testing).

FWIW, using firejail on Slackware 15.0 does not have this problem.

Note that this issue was closed years ago, so please open a new one.

Basic debugging information is missing; please follow the bug report template:

firejail version 0.9.72

Note that we do not maintain that version of firejail:

Versions other than the latest usually have outdated profiles and may contain
bugs and security vulnerabilities that were fixed in later versions.

See also:

<!-- gh-comment-id:2766533123 --> @kmk3 commented on GitHub (Mar 31, 2025): > I do have the same issue using Debian 13 (testing). > > FWIW, using firejail on Slackware 15.0 does not have this problem. Note that this issue was closed years ago, so please open a new one. Basic debugging information is missing; please follow the bug report template: * <https://github.com/netblue30/firejail/issues/new?template=bug_report.md> > firejail version 0.9.72 Note that we do not maintain that version of firejail: * <https://github.com/netblue30/firejail/blob/master/SECURITY.md> Versions other than the latest usually have outdated profiles and may contain bugs and security vulnerabilities that were fixed in later versions. See also: * <https://github.com/netblue30/firejail#installing>
Author
Owner

@jcarnat commented on GitHub (Mar 31, 2025):

I do have the same issue using Debian 13 (testing).
FWIW, using firejail on Slackware 15.0 does not have this problem.

Note that this issue was closed years ago, so please open a new one.

Basic debugging information is missing; please follow the bug report template:

* https://github.com/netblue30/firejail/issues/new?template=bug_report.md

firejail version 0.9.72

Note that we do not maintain that version of firejail:

* https://github.com/netblue30/firejail/blob/master/SECURITY.md

Versions other than the latest usually have outdated profiles and may contain bugs and security vulnerabilities that were fixed in later versions.

See also:

* https://github.com/netblue30/firejail#installing

Oh! I haven't noticed it wasn't the latest version... Sorry.
I'm gonna look at upgrading firejail.

<!-- gh-comment-id:2766600903 --> @jcarnat commented on GitHub (Mar 31, 2025): > > I do have the same issue using Debian 13 (testing). > > FWIW, using firejail on Slackware 15.0 does not have this problem. > > Note that this issue was closed years ago, so please open a new one. > > Basic debugging information is missing; please follow the bug report template: > > * https://github.com/netblue30/firejail/issues/new?template=bug_report.md > > > > firejail version 0.9.72 > > Note that we do not maintain that version of firejail: > > * https://github.com/netblue30/firejail/blob/master/SECURITY.md > > > Versions other than the latest usually have outdated profiles and may contain bugs and security vulnerabilities that were fixed in later versions. > > See also: > > * https://github.com/netblue30/firejail#installing Oh! I haven't noticed it wasn't the latest version... Sorry. I'm gonna look at upgrading firejail.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: github-starred/firejail#2811
No description provided.