[pkg-apparmor] Bug#962405: /proc/sys/kernel/random/boot_id DENIED

Andrey Rahmatullin wrar at debian.org
Sun Jun 7 16:22:40 BST 2020


Package: apparmor
Version: 2.13.4-2
Severity: normal

audit[495496]: AVC apparmor="DENIED" operation="open" profile="/usr/sbin/cupsd"
name="/proc/sys/kernel/random/boot_id" pid=495496 comm="cupsd"
requested_mask="r" denied_mask="r" fsuid=0 ouid=0

This seems to be fixed in Ubuntu, see
https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1872564 and
https://launchpadlibrarian.net/479552230/apparmor_2.13.3-7ubuntu5_2.13.3-7ubuntu6.diff.gz



-- System Information:
Debian Release: bullseye/sid
  APT prefers unstable-debug
  APT policy: (500, 'unstable-debug'), (500, 'testing-debug'), (500, 'unstable'), (500, 'testing'), (101, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 5.6.0-2-amd64 (SMP w/4 CPU cores)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE
Locale: LANG=ru_RU.UTF-8, LC_CTYPE=ru_RU.UTF-8 (charmap=UTF-8), LANGUAGE= (charmap=UTF-8)
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages apparmor depends on:
ii  debconf [debconf-2.0]  1.5.74
ii  libc6                  2.30-8
ii  lsb-base               11.1.0
ii  python3                3.8.2-3

apparmor recommends no packages.

Versions of packages apparmor suggests:
ii  apparmor-profiles-extra  1.27
ii  apparmor-utils           2.13.4-2

-- debconf information excluded



More information about the pkg-apparmor-team mailing list