Bug 235953

Summary: denied avc's - create_floppy_d name="fd0u830" scontext=system_u:system_r:udev_t:s0-s0:c0.c1023 tcontext=system_u:object_r:default_t:s0 tclass=blk_file
Product: [Fedora] Fedora Reporter: Antonio A. Olivares <olivares14031>
Component: udevAssignee: Harald Hoyer <harald>
Status: CLOSED RAWHIDE QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: rawhide   
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: udev-106-2.fc7 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2007-04-11 10:01:32 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Attachments:
Description Flags
complete dmesg and where the udev references ocurr none

Description Antonio A. Olivares 2007-04-11 00:57:01 UTC
Description of problem:

At bootup, I get a message about a denied avc 

 audit(1176209974.281:4): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1440"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:5): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1680"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:6): avc:  denied  { create } for  pid=991
comm="cIreate_floppy_d" name="fd0u1722"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:7): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1743"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:8): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1760"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:9): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1920"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:10): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1840"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:11): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1600"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:12): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u360"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:13): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u720"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:14): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u820"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:15): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u830"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:16): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1040"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:17): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u1120"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file
 audit(1176209974.281:18): avc:  denied  { create } for  pid=991
comm="create_floppy_d" name="fd0u800"
scontext=system_u:system_r:udev_t:s0-s0:c0.c1023
tcontext=system_u:object_r:default_t:s0 tclass=blk_file

Version-Release number of selected component (if applicable):
[olivares@localhost ~]$ rpm -qa udev*
udev-106-1.fc7
[olivares@localhost ~]$

How reproducible:
   At startup, when booting the machine, the denied avc's show up.  It shows a
udev part "udev_t:s0-s0:c0.c1023".  I asked on fedora-selinux-list
and was asked to post this as a bug.  

Steps to Reproduce:
1.  Boot up computer and get into view messages at startup or remove rhgb from
the grub.conf to see the messages 
2.  If you do not see the message or it goes very fast, run dmesg from the
terminal window.  
3.  Start it again and look for it, it should be there
  
Actual results:


Expected results:


Additional info:

Comment 1 Antonio A. Olivares 2007-04-11 00:57:01 UTC
Created attachment 152190 [details]
complete dmesg and where the udev references ocurr