Bug 563977
| Summary: | SELinux is preventing /usr/lib/cups/backend/cups-pdf "fowner" access. | ||
|---|---|---|---|
| Product: | [Fedora] Fedora | Reporter: | Matt Castelein <matt.castelein> |
| Component: | selinux-policy | Assignee: | Miroslav Grepl <mgrepl> |
| Status: | CLOSED CURRENTRELEASE | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
| Severity: | medium | Docs Contact: | |
| Priority: | low | ||
| Version: | 12 | CC: | dwalsh, mgrepl |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | x86_64 | ||
| OS: | Linux | ||
| Whiteboard: | setroubleshoot_trace_hash:c0571ef8b3b1968919b456585f3a4bd1ba121b50b6cee3468888b4ba4795d0b3 | ||
| Fixed In Version: | Doc Type: | Bug Fix | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2010-02-15 17:24:51 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Matt Castelein
2010-02-11 16:43:43 UTC
Miroslav add this. Could you execute: yum update selinux-policy-targeted And make sure nothing breaks on the update. Updated; Doesn't look like anything broke... Ok, this is a part of selinux-policy.
Could you check it using
# sesearch -A -s cups_pdf_t -t cups_pdf_t --class capability --perm fowner
Found 1 semantic av rules:
allow cups_pdf_t cups_pdf_t : capability { chown dac_override fowner fsetid setgid setuid } ;
What is your output ?
Exactly the same as yours:
[root@arturo ~]# sesearch -A -s cups_pdf_t -t cups_pdf_t --class capability --perm fowner
Found 1 semantic av rules:
allow cups_pdf_t cups_pdf_t : capability { chown dac_override fowner fsetid setgid setuid } ;
Ok, then I am closing this bug. |