[Pkg-libvirt-maintainers] Bug#1013906: libvirt-daemon-system: libvirt creates apparmor profiles, but never cleans them up

Michael Still mikal at stillhq.com
Mon Jun 27 08:11:47 BST 2022


Package: libvirt-daemon-system
Version: 7.0.0-3
Severity: important
X-Debbugs-Cc: mikal at stillhq.com

Dear Maintainer,

libvirt on my bullseye systems creates apparmor profiles for each VM in
/etc/apparmor.d/libvirt. These do not appear to be removed when the VM
is undefined, which results in me having thousands of these files lying
around.

-- System Information:
Debian Release: 11.3
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable-security'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 5.10.0-14-amd64 (SMP w/12 CPU threads)
Locale: LANG=en_AU.UTF-8, LC_CTYPE=en_AU.UTF-8 (charmap=UTF-8), LANGUAGE=en_AU:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages libvirt-daemon-system depends on:
ii  adduser                         3.118
ii  debconf [debconf-2.0]           1.5.77
ii  gettext-base                    0.21-4
ii  iptables                        1.8.7-1
ii  libvirt-clients                 7.0.0-3
ii  libvirt-daemon                  7.0.0-3
ii  libvirt-daemon-config-network   7.0.0-3
ii  libvirt-daemon-config-nwfilter  7.0.0-3
ii  libvirt-daemon-system-systemd   7.0.0-3
ii  logrotate                       3.18.0-2
ii  policykit-1                     0.105-31+deb11u1

Versions of packages libvirt-daemon-system recommends:
ii  dmidecode                    3.3-2
ii  dnsmasq-base [dnsmasq-base]  2.85-1
ii  iproute2                     5.10.0-4
ii  mdevctl                      0.81-1
ii  parted                       3.4-1

Versions of packages libvirt-daemon-system suggests:
ii  apparmor    2.13.6-10
pn  auditd      <none>
pn  nfs-common  <none>
pn  open-iscsi  <none>
pn  pm-utils    <none>
pn  radvd       <none>
ii  systemd     247.3-7
pn  systemtap   <none>
pn  zfsutils    <none>

-- debconf information:
  libvirt-daemon-system/id_warning: true



More information about the Pkg-libvirt-maintainers mailing list