What if someone added the following to /etc/apparmor.d/usr.sbin.clamd:
owner @{HOME}/ r, owner @{HOME}/** r,
Then ran: $ sudo apparmor_parser -r /etc/apparmor.d/usr.sbin.clamd
This should allow someone to scan anything under their home directory.
What if someone added the following to /etc/apparmor. d/usr.sbin. clamd:
owner @{HOME}/ r,
owner @{HOME}/** r,
Then ran: d/usr.sbin. clamd
$ sudo apparmor_parser -r /etc/apparmor.
This should allow someone to scan anything under their home directory.