Description of problem: SELinux is preventing prio-rpc-virtqe from 'open' accesses on the fichier /proc/<pid>/stat. ***** Plugin catchall (100. confidence) suggests ************************** Si vous pensez que prio-rpc-virtqe devrait être autorisé à accéder open sur stat file par défaut. Then vous devriez rapporter ceci en tant qu'anomalie. Vous pouvez générer un module de stratégie local pour autoriser cet accès. Do autoriser cet accès pour le moment en exécutant : # ausearch -c "prio-rpc-virtqe" --raw | audit2allow -M my-priorpcvirtqe # semodule -X 300 -i my-priorpcvirtqe.pp Additional Information: Source Context system_u:system_r:virtqemud_t:s0 Target Context system_u:system_r:unconfined_service_t:s0 Target Objects /proc/<pid>/stat [ file ] Source prio-rpc-virtqe Source Path prio-rpc-virtqe Port <Inconnu> Host (removed) Source RPM Packages Target RPM Packages SELinux Policy RPM selinux-policy-targeted-40.23-1.fc40.noarch Local Policy RPM selinux-policy-targeted-40.23-1.fc40.noarch Selinux Enabled True Policy Type targeted Enforcing Mode Enforcing Host Name (removed) Platform Linux (removed) 6.9.6-200.fc40.x86_64 #1 SMP PREEMPT_DYNAMIC Fri Jun 21 15:48:21 UTC 2024 x86_64 Alert Count 24 First Seen 2024-05-07 22:49:03 CEST Last Seen 2024-06-26 07:53:59 CEST Local ID 3102fa83-2295-4962-97b2-2e603b2a65d0 Raw Audit Messages type=AVC msg=audit(1719381239.381:556): avc: denied { open } for pid=38864 comm="prio-rpc-virtqe" path="/proc/43118/stat" dev="proc" ino=165723 scontext=system_u:system_r:virtqemud_t:s0 tcontext=system_u:system_r:unconfined_service_t:s0 tclass=file permissive=1 Hash: prio-rpc-virtqe,virtqemud_t,unconfined_service_t,file,open Version-Release number of selected component: selinux-policy-targeted-40.23-1.fc40.noarch Additional info: reporter: libreport-2.17.15 reason: SELinux is preventing prio-rpc-virtqe from 'open' accesses on the fichier /proc/<pid>/stat. package: selinux-policy-targeted-40.23-1.fc40.noarch component: selinux-policy hashmarkername: setroubleshoot type: libreport kernel: 6.9.6-200.fc40.x86_64 component: selinux-policy
Created attachment 2038312 [details] File: description
Created attachment 2038313 [details] File: os_info
*** This bug has been marked as a duplicate of bug 2294366 ***