[Pkg-libvirt-maintainers] Bug#878203: AA breaks libvirt when running with kernel 4.13

Martin Pitt mpitt at debian.org
Wed Dec 6 22:17:27 UTC 2017


Control: tag -1 patch -unreproducible

Michael Biebl [2017-10-23 18:22 +0200]:
> This is what I get when I *shut down* a VM in virt-manager:
> $ journalctl -f | grep DENIED
> Okt 23 18:20:31 pluto audit[8603]: AVC apparmor="DENIED"
> operation="open" profile="libvirt-4e5a8920-a2a1-4c6b-b7f1-528c20878cdd"
> name="/proc/718/cmdline" pid=8603 comm="qemu-system-x86"
> requested_mask="r" denied_mask="r" fsuid=114 ouid=0
> Okt 23 18:20:31 pluto kernel: audit: type=1400 audit(1508775631.299:55):
> apparmor="DENIED" operation="open"
> profile="libvirt-4e5a8920-a2a1-4c6b-b7f1-528c20878cdd"
> name="/proc/718/cmdline" pid=8603 comm="qemu-system-x86"
> requested_mask="r" denied_mask="r" fsuid=114 ouid=0

I see something similar in the Cockpit integration tests, e. g. [1]

    Error: audit: type=1400 audit(1512597807.993:50): apparmor="DENIED" operation="open" profile="libvirt-538b45d5-e9a6-4598-a140-ef5963e70191" name="/proc/521/cmdline" pid=828 comm="qemu-system-x86" requested_mask="r" denied_mask="r" fsuid=64055 ouid=0

Other reporters confirmed that it's relatively harmless, the Ubuntu package
already got a fix [2], and apparently several others reproduced it as well, so
updating tags.

Thanks,

Martin

[1] http://209.132.184.41/logs/pull-8219-20171206-214646-d2e9e141-verify-debian-testing/log.html#2
[2] https://git.launchpad.net/~libvirt-maintainers/ubuntu/+source/libvirt/commit/?h=ubuntu/artful&id=38ccdf8fe9a9d5
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-libvirt-maintainers/attachments/20171206/16023e34/attachment.sig>


More information about the Pkg-libvirt-maintainers mailing list