Description of problem: When I tried to install eric on an F7 box, I got the following AVC denials: avc: denied { create } for comm="semanage" dev=dm-0 egid=0 euid=0 exe="/usr/bin/python" exit=6 fsgid=0 fsuid=0 gid=0 items=0 name="sitecustomize.pyc" pid=19082 scontext=system_u:system_r:semanage_t:s0 sgid=0 subj=system_u:system_r:semanage_t:s0 suid=0 tclass=file tcontext=system_u:object_r:lib_t:s0 tty=(none) uid=0 avc: denied { write } for comm="semanage" dev=dm-0 egid=0 euid=0 exe="/usr/bin/python" exit=224 fsgid=0 fsuid=0 gid=0 items=0 name="sitecustomize.pyc" path="/usr/lib/python2.5/site-packages/sitecustomize.pyc" pid=19082 scontext=system_u:system_r:semanage_t:s0 sgid=0 subj=system_u:system_r:semanage_t:s0 suid=0 tclass=file tcontext=system_u:object_r:lib_t:s0 tty=(none) uid=0 I suspect this is the real problem: [root@localhost ~]# rpm -qf /usr/lib/python2.5/site-packages/sitecustomize.py eric-3.9.2-2.fc7.1 [root@localhost ~]# rpm -qf /usr/lib/python2.5/site-packages/sitecustomize.pyo eric-3.9.2-2.fc7.1 [root@localhost ~]# rpm -qf /usr/lib/python2.5/site-packages/sitecustomize.pyc file /usr/lib/python2.5/site-packages/sitecustomize.pyc is not owned by any package Version-Release number of selected component (if applicable): eric-3.9.2-2.fc7.1 How reproducible: Always Steps to Reproduce: 1. Install eric with yum Actual results: The AVC denials given above are issued. Expected results: There should be no AVC denials. Additional info:
Did you run eric as root (ever)?
No. This happened at yum install time. In fact, I haven't run eric as an ordinary user yet, either.
WORKSFORME, /usr/lib/python2.5/site-packages/sitecustomize.pyc doesn't exist nor is created on my f7 box. I don't know how it got there, but I'd recommend: rm -f /usr/lib/python2.5/site-packages/sitecustomize.pyc
marking WORKSFORME (for now). Please re-open if you can reproduce.
see also #254421
* Mon Aug 27 2007 Rex Dieter <rdieter[AT]fedoraproject.org> 3.9.2-3 ... - don't set PYTHONOPTIMIZE, let brp-python-bytecompile do it's job, addresses selinux issues (#243163, #254421)
eric-3.9.2-3.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.