Bug 400171 - SELinux is preventing gok (xdm_t) "execute" to (gconfd_exec_t).
Summary: SELinux is preventing gok (xdm_t) "execute" to (gconfd_exec_t).
Keywords:
Status: CLOSED CURRENTRELEASE
Alias: None
Product: Fedora
Classification: Fedora
Component: selinux-policy
Version: 8
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Daniel Walsh
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2007-11-26 21:28 UTC by morgan read
Modified: 2008-01-30 19:19 UTC (History)
1 user (show)

Fixed In Version: Current
Clone Of:
Environment:
Last Closed: 2008-01-30 19:19:23 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)
attached selinux_alert.txt (2.11 KB, text/plain)
2007-11-26 21:28 UTC, morgan read
no flags Details

Description morgan read 2007-11-26 21:28:29 UTC
Description of problem:
23 SELinux hits in the last few days

Version-Release number of selected component (if applicable):
[morgan@morgansmachine ~]$ rpm -q gok
gok-1.3.7-1.fc8
[morgan@morgansmachine ~]$ 

How reproducible:
Seems often

Steps to Reproduce:
1. No step, keeps reproducing all by itself
2.
3.
  
Actual results:
SELinux alert reports

Expected results:
No SELinux alert reports

Additional info:
See attached selinux_alert.txt

Comment 1 morgan read 2007-11-26 21:28:29 UTC
Created attachment 269311 [details]
attached selinux_alert.txt

Comment 2 David Zeuthen 2007-11-26 22:28:53 UTC
wrong component

Comment 3 Daniel Walsh 2007-11-27 03:24:14 UTC
Ray does this get started in the session or does gdm exec gok somewhere else?

Comment 4 Ray Strode [halfline] 2007-11-29 15:44:37 UTC
gdm can start gok I believe if you press a key combo or do a mouse gesture (to
help with login)

Comment 5 Daniel Walsh 2007-11-30 14:22:05 UTC
You can allow this for now by executing 

# audit2allow -M mypol -i /var/log/audit/audit.log 
# semodule -i mypol.pp

Fixed in selinux-policy-3.0.8-63.fc8

Comment 6 Daniel Walsh 2008-01-30 19:19:23 UTC
Bulk closing all bugs in Fedora updates in the modified state.  If you bug is
not fixed, please reopen.


Note You need to log in before you can comment on or make changes to this bug.