Bug 220307

Summary: Perhaps I have a virus?
Product: [Fedora] Fedora Reporter: Need Real Name <bengt.lindholm>
Component: selinux-policyAssignee: Daniel Walsh <dwalsh>
Status: CLOSED CURRENTRELEASE QA Contact: Ben Levenson <benl>
Severity: medium Docs Contact:
Priority: medium    
Version: 6CC: dwalsh
Target Milestone: ---   
Target Release: ---   
Hardware: i386   
OS: Linux   
Whiteboard:
Fixed In Version: Current Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2007-08-22 14:14:06 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Need Real Name 2006-12-20 11:06:07 UTC
I do not know IF THIS IS A BUG


sealert -l e6ccee35-c016-4d52-8789-00b8ef348e6b
Summary
    SELinux is preventing /usr/sbin/irqbalance (irqbalance_t) "search" access to
    net (proc_net_t).

Detailed Description
    SELinux denied access requested by /usr/sbin/irqbalance. It is not expected
    that this access is required by /usr/sbin/irqbalance and this access may
    signal an intrusion attempt. It is also possible that the specific version
    or configuration of the application is causing it to require additional
    access. Please file a http://bugzilla.redhat.com/bugzilla/enter_bug.cgi
    against this package.


Additional Information:

Source Context:               system_u:system_r:irqbalance_t
Target Context:               system_u:object_r:proc_net_t
Target Objects:               net [ dir ]
Affected RPM Packages:        irqbalance-0.55-2.fc6 [application]
Policy RPM:                   selinux-policy-2.4.6-7.fc6
Selinux Enabled:              True
Policy Type:                  targeted
MLS Enabled:                  True
Enforcing Mode:               Enforcing
Plugin Name:                  plugins.disable_trans
Host Name:                    host.mydomain
Platform:                     Linux host.mydomain 2.6.18-1.2868.fc6 #1 SMP Fri
Dec 15 17:32:54 EST 2006 i686 i686
Alert Count:                  9639
Line Numbers:

Raw Audit Messages:

avc: denied { search } for comm="irqbalance" dev=proc egid=0 euid=0
exe="/usr/sbin/irqbalance" exit=-13 fsgid=0 fsuid=0 gid=0 items=0 name="net"
pid=2132 scontext=system_u:system_r:irqbalance_t:s0 sgid=0
subj=system_u:system_r:irqbalance_t:s0 suid=0 tclass=dir
tcontext=system_u:object_r:proc_net_t:s0 tty=(none) uid=0

Comment 1 Daniel Walsh 2006-12-20 18:24:07 UTC
Fixed in selinux-policy-2.4.6-13.fc6

Comment 2 Daniel Walsh 2007-08-22 14:14:06 UTC
Fixed in current release