Bug 965445
Summary: | /usr/lib64/xulrunner/plugin-container is spying on /home user's directory | ||||||
---|---|---|---|---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | Suawomirr <slawomir.iwanek> | ||||
Component: | selinux-policy | Assignee: | Miroslav Grepl <mgrepl> | ||||
Status: | CLOSED INSUFFICIENT_DATA | QA Contact: | Fedora Extras Quality Assurance <extras-qa> | ||||
Severity: | urgent | Docs Contact: | |||||
Priority: | unspecified | ||||||
Version: | 18 | CC: | dominick.grift, dwalsh, jlieskov, lvrabec, mgrepl, slawomir.iwanek | ||||
Target Milestone: | --- | ||||||
Target Release: | --- | ||||||
Hardware: | x86_64 | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | Doc Type: | Bug Fix | |||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2013-10-22 12:51:45 UTC | Type: | Bug | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Attachments: |
|
Description
Suawomirr
2013-05-21 09:12:46 UTC
The bug is specifically in the xulrunner, SELinux in fact saved the system by not allowing the access to the private directory. But why only to one of many subdirectories I got ? xulrunner wanted to read only this particular one ? Strange. (In reply to Suawomirr from comment #1) > The bug is specifically in the xulrunner, SELinux in fact saved the system > by not allowing the access to the private directory. But why only to one of > many subdirectories I got ? xulrunner wanted to read only this particular > one ? > > Strange. Suawomirr, can you clarify what were you doing when this happened? Thank you. Where is the pool command coming from. It could have been locate -r /pool$ Having a file manager running could have triggered this. (In reply to Daniel Walsh from comment #4) Slawomir, can you reply to the query below? > Where is the pool command coming from. It could have been > > locate -r /pool$ > > Having a file manager running could have triggered this. Thank you, Jan. |