The apparmor-profile allows reading the whole filesystem and has no exception for /home/
But the specification-page says: "AppArmor rules to completely hide /home"
An other question: Why does the apparmor-profile allows to execute programs from /media/** ?
Yes, same problem here.
The apparmor-profile allows reading the whole filesystem and has no exception for /home/
But the specification-page says: "AppArmor rules to completely hide /home"
An other question: Why does the apparmor-profile allows to execute programs from /media/** ?