Flatsonar

Virtual Machine Manager

by The Virtual Machine Manager contributors

Graphically manage KVM, Xen, or LXC via libvirt

Dangerous permissions Verified creator GPL-2.0+ v5.1.0
Screenshot 1 of Virtual Machine Manager Screenshot 2 of Virtual Machine Manager Screenshot 3 of Virtual Machine Manager

About

Virtual Machine Manager provides a graphical tool for administering virtual machines for KVM, Xen, and LXC. Start, stop, add or remove virtual devices, connect to a graphical or serial console, and see resource usage statistics for existing VMs on local or remote machines. Uses libvirt as the backend management API.

Permissions

5 permissions weaken the sandbox. Flatsonar asks before installing.

  • all devices (/dev): webcams, disks, raw hardware
    --device=all
  • access to a sensitive location (~/.ssh): credentials or autostart
    --filesystem=~/.ssh
  • X11 display: X11 lets apps read input and windows of other apps
    --socket=x11
  • your SSH agent (can sign with your SSH keys)
    --socket=ssh-auth
  • your keyring / saved passwords
    --talk-name=org.freedesktop.secrets
  • network
    --share=network
  • inter-process communication (needed for X11)
    --share=ipc
  • Wayland display
    --socket=wayland
  • audio
    --socket=pulseaudio
  • X11 display, only when Wayland is unavailable
    --socket=fallback-x11
  • GPU acceleration
    --device=dri
  • access to your music folder
    --filesystem=xdg-music
  • access to your pictures folder
    --filesystem=xdg-pictures
  • access to your public-share folder
    --filesystem=xdg-public-share
  • access to /run/libvirt
    --filesystem=/run/libvirt
  • access to your videos folder
    --filesystem=xdg-videos
  • access to your download folder
    --filesystem=xdg-download
  • access to xdg-run/libvirt
    --filesystem=xdg-run/libvirt
  • access to your documents folder
    --filesystem=xdg-documents
  • system tray
    --talk-name=org.kde.StatusNotifierWatcher
  • owns bus name org.virt-manager.virt-manager
    --own-name=org.virt-manager.virt-manager

Who publishes this

The creator demonstrably controls this app id: Flathub verification, the hosting account owns the namespace, or a well-known file on their domain.

  • verified on Flathub: the developer proved they control this app id
    publisher:flathub

Maintenance

Recent activity on the upstream repository, or built and reviewed by Flathub.

No staleness signals: recent activity, or built and reviewed by Flathub.