Firejail uses 0777 permissions when mounting (1) /dev, (2) /dev/shm, (3) /var/tmp, or (4) /var/lock, which allows local users to gain privileges.Referenceshttp://www.openwall.com/lists/oss-security/2017/01/05/4http://www.openwall.com/lists/oss-security/2017/01/06/2