fix: use sudo_if rm -f app — delete root-owned binary as app user

This commit is contained in:
Claus Lohmar 2026-06-03 08:18:17 +00:00
parent 5abe8c49d9
commit afd4b6a1cf

View file

@ -102,7 +102,7 @@ if [ "${1:-}" = "-update" ]; then
mkdir -p "${GOMODCACHE}" "${GOCACHE}" 2>/dev/null || sudo_if mkdir -p "${GOMODCACHE}" "${GOCACHE}"
# Ensure build cache and old binary are writable by the app user.
sudo_if chown -R "${APP_USER:-${SUDO_USER:-$(whoami)}}" "${INSTALL_DIR}/.go" "${INSTALL_DIR}/app" 2>/dev/null || true
rm -f app
sudo_if rm -f app
CGO_ENABLED=0 go build -buildvcs=false -ldflags="-s -w" -o app .
else
warn "Go not found — downloading pre-built binary..."
@ -210,7 +210,7 @@ if command -v go &>/dev/null; then
mkdir -p "${GOMODCACHE}" "${GOCACHE}" 2>/dev/null || sudo_if mkdir -p "${GOMODCACHE}" "${GOCACHE}"
# Ensure cache is owned by the app user.
sudo_if chown -R "$(whoami):$(whoami)" "${INSTALL_DIR}/.go" "${INSTALL_DIR}/app" 2>/dev/null || true
rm -f app
sudo_if rm -f app
CGO_ENABLED=0 go build -buildvcs=false -ldflags="-s -w" -o app .
else
info "Go not found — downloading pre-built binary..."