Description of problem: Objects under /dev/.udev are labeled with wrong (device_t) type Version-Release number of selected component (if applicable): udev-095-14.15.el5 How reproducible: Always Steps to Reproduce: 1. Install some of the RHEL5.2 snapshots 2. After reboot: # setfiles -vqn /etc/selinux/targeted/contexts/files/file_contexts /dev/.udev|\ grep relabeling Actual results: # ls -Zd /dev/.udev drwxr-xr-x root root system_u:object_r:device_t /dev/.udev Expected results: # ls -Zd /dev/.udev drwxr-xr-x root root system_u:object_r:udev_tbl_t /dev/.udev
Created attachment 302746 [details] verified fix
what puzzles me, is that not every entry in /dev/.udev has type udev_tbl_t.
The current SELinux policy only matches on files, not directories, chr_files ...
Verified with udev-095-14.16.el5
An advisory has been issued which should help the problem described in this bug report. This report is therefore being closed with a resolution of ERRATA. For more information on the solution and/or where to find the updated files, please follow the link below. You may reopen this bug report if the solution does not work for you. http://rhn.redhat.com/errata/RHBA-2008-0374.html