@pid_eins @jamesh @mariusor This is largely a gap between ideological purity and practical security. No ordinary user on non shared machine has ever gotten pwned because the system let them keep an open fd to something. Plenty have gotten pwned because polkit handed out root to an unprivileged junk process that asked nicely.