Repository navigation
Conversation
There was a problem hiding this comment.
🟠 1 medium-severity finding
Reviewed commit f1e1bac.
🟠 Medium · Mirroring rejects writes to read-only shadow files after the kernel write succeeds
kernel.write_file has already accepted and committed the Python write, but fs::write re-applies the host sidecar user's DAC permissions to the shadow copy. Because the sidecar is intentionally unprivileged, an API-seeded file whose guest mode is 0444/0000 makes this return EACCES; the RPC reports failure after mutating the kernel and leaves stale shadow bytes that reconciliation can restore. Temporarily add owner-write permission to an existing regular shadow file, write it, and restore the guest mode (including on the error path), or use an equivalent sidecar-owned write helper.
Original location: "crates/native-sidecar/src/filesystem.rs":5130 (new side, not submitted inline).
fs.statpermission for trusted post-write bookkeeping.c3698e6with a bridge built from that checkout; the existing JavaScript/shell regression used published 0.2.22 WASM command assets. No generated assets or version changes are included.