Bug 122597

Summary: kernel 2.6.5-1.349 and 2.6.5-1.350 runs in selinux mode even though selinux=0 set at boot
Product: [Fedora] Fedora Reporter: kb <k_b0000>
Component: kernelAssignee: Arjan van de Ven <arjanv>
Status: CLOSED CURRENTRELEASE QA Contact: Brian Brock <bbrock>
Severity: medium Docs Contact:
Priority: medium    
Version: rawhide   
Target Milestone: ---   
Target Release: ---   
Hardware: i686   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2004-05-19 07:01:05 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description kb 2004-05-06 05:49:34 UTC
From Bugzilla Helper:
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.8a)
Gecko/20040423

Description of problem:
kernel 2.6.5-1.349 and 2.6.5-1.350 runs in selinux mode even though
selinux=0 set at boot

this couses audit messages like (grabbed one from the log):
May  6 07:27:03 computer kernel: audit(1083821196.292:0): avc:  denied
 { read } for  pid=300 exe=/bin/bash name=mysqld dev=hda2 ino=885284
scontext=system_u:system_r:kernel_t
tcontext=system_u:object_r:mysqld_var_run_t tclass=dir

and many more.

last known working kernel is 2.6.5-1.327

policy-1.11.2-21
SysVinit-2.85-25

anything else you need to know?

Version-Release number of selected component (if applicable):


How reproducible:
Always

Steps to Reproduce:
1. install kernel 2.6.5-1.350
2. set the boot configuration in grub.conf or equivalent to:
title Fedora Core (2.6.5-1.350)
	root (hd0,0)
	kernel /vmlinuz-2.6.5-1.350 ro root=LABEL=/ rhgb selinux=0
	initrd /initrd-2.6.5-1.350.img
3. reboot, select this kernel when prompted

Additional info:

Comment 1 kb 2004-05-19 04:59:52 UTC
no problems with 2.6.5-1.358
-> close