Bug 1284967
Summary: | SELinux is preventing abrt-dump-xorg from 'execute' accesses on the file /usr/bin/Xorg. | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Alex <liolick> |
Component: | selinux-policy | Assignee: | Lukas Vrabec <lvrabec> |
Status: | CLOSED ERRATA | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | 23 | CC: | dominick.grift, dwalsh, jfilak, lvrabec, mgrepl, plautrba |
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | x86_64 | ||
OS: | Unspecified | ||
Whiteboard: | abrt_hash:23edfb6aa475d193ca457599fd6388b36ee25826cf9e20495b34993872e910a8; | ||
Fixed In Version: | selinux-policy-3.13.1-158.5.fc23 selinux-policy-3.13.1-158.6.fc23 | Doc Type: | Bug Fix |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2016-02-17 03:50:25 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Alex
2015-11-24 14:53:40 UTC
A new functionality? Yes, we test if /usr/bin/Xorg has X attribute to make sure the found backtrace was produced by that program: https://github.com/abrt/abrt/blob/master/src/plugins/xorg-utils.c#L106 commit acae975716c88fc93d8a11d0ed1c8bd5c6c188f4 Author: Lukas Vrabec <lvrabec> Date: Mon Feb 8 11:11:17 2016 +0100 Allow abrt_dump_oops_t to check permissions for a /usr/bin/Xorg. rhbz#1284967 AVC caused by this line in abrt: https://github.com/abrt/abrt/blob/master/src/plugins/xorg-utils.c#L107 selinux-policy-3.13.1-158.6.fc23 has been submitted as an update to Fedora 23. https://bodhi.fedoraproject.org/updates/FEDORA-2016-36a160982c selinux-policy-3.13.1-158.6.fc23 has been pushed to the Fedora 23 testing repository. If problems still persist, please make note of it in this bug report. See https://fedoraproject.org/wiki/QA:Updates_Testing for instructions on how to install test updates. You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2016-36a160982c selinux-policy-3.13.1-158.6.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report. |