A security issue in Omarchy’s default Docker configuration meant that
essentially every program running in the user’s desktop session could escalate
to root without a password, sudo, or a privilege prompt.
If you use Omarchy, the most important takeaway is
simple: update to 4.0.1.
I reported this issue privately through the project’s responsible-disclosure
process. The underlying configuration has since been patched, so I’m publishing
the details now to explain what the issue is and let users know to update their
systems.
I use the word “meme” very lightly here, which is a mixture of hate, second-hand embarrassment, making fun of the distro and its users and so on. For the issues it had in the past and being no longer trustworthy for many. Also people meme about Ubuntu for the Snaps, and the focus on Rust (I personally like Rust…), being best friend with Microsoft and so on.