Login
Log in using an SSO provider:
Fedora Account System
Red Hat Associate
Red Hat Customer
Login using a Red Hat Bugzilla account
Forgot Password
Create an Account
Red Hat Bugzilla – Bug 2021529
Home
New
Search
Simple Search
Advanced Search
My Links
Browse
Requests
Reports
Current State
Search
Tabular reports
Graphical reports
Duplicates
Other Reports
User Changes
Plotly Reports
Bug Status
Bug Severity
Non-Defaults
Product Dashboard
Help
Page Help!
Bug Writing Guidelines
What's new
Browser Support Policy
5.0.4.rh90 Release notes
FAQ
Guides index
User guide
Web Services
Contact
Legal
[?]
This site requires JavaScript to be enabled to function correctly, please enable it.
Bug 2021529
-
Secure_mode boolean allows staff SELinux user switch to unconfined
Summary:
Secure_mode boolean allows staff SELinux user switch to unconfined
Keywords
:
Triaged
Status
:
CLOSED DUPLICATE of
bug 2076681
Alias:
None
Product:
Red Hat Enterprise Linux 9
Classification:
Red Hat
Component:
selinux-policy
Sub Component:
---
Version:
9.0
Hardware:
All
OS:
Linux
Priority:
high
Severity:
high
Target Milestone:
rc
Target Release
:
9.1
Assignee:
Zdenek Pytela
QA Contact:
Milos Malik
Docs Contact:
Mirek Jahoda
URL:
Whiteboard:
Duplicates (1)
:
2023462
(
view as bug list
)
Depends On:
1947841
2022763
2076681
Blocks:
1778780
TreeView+
depends on
/
blocked
Reported:
2021-11-09 14:34 UTC by
Zdenek Pytela
Modified:
2022-11-07 10:07 UTC (
History
)
CC List:
12 users
(
show
)
amkulkar
gfialova
kborole
lvrabec
mjahoda
mmalik
pkoncity
plautrba
rmetrich
ssekidde
wdh
zpytela
Fixed In Version:
Doc Type:
Known Issue
Doc Text:
.SELinux `staff_u` users can incorrectly switch to `unconfined_r` When the `secure_mode` boolean is enabled, `staff_u` users can incorrectly switch to the `unconfined_r` role. As a consequence, `staff_u` users can perform privileged operations affecting the security of the system.
Clone Of:
1947841
Environment:
Last Closed:
2022-08-03 15:26:13 UTC
Type:
Bug
Target Upstream Version:
Embargoed:
Dependent Products:
Container Native Virtualization (CNV)
OpenShift Container Platform
Red Hat Certificate System
Red Hat Directory Server
Red Hat Enterprise Virtualization Manager
Red Hat OpenStack
Attachments
(Terms of Use)
Links
System
ID
Private
Priority
Status
Summary
Last Updated
Red Hat Issue Tracker
RHELPLAN-102174
0
None
None
None
2021-11-09 14:39:26 UTC
Comment 3
Zdenek Pytela
2021-11-16 07:35:41 UTC
***
Bug 2023462
has been marked as a duplicate of this bug. ***
Note
You need to
log in
before you can comment on or make changes to this bug.