Bug 537696 - SELinux is preventing /usr/bin/canberra-gtk-play "module_request" access.
Summary: SELinux is preventing /usr/bin/canberra-gtk-play "module_request" access.
Keywords:
Status: CLOSED DUPLICATE of bug 527936
Alias: None
Product: Fedora
Classification: Fedora
Component: selinux-policy
Version: 12
Hardware: i386
OS: Linux
low
medium
Target Milestone: ---
Assignee: Daniel Walsh
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard: setroubleshoot_trace_hash:e2945e38daa...
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2009-11-15 20:19 UTC by Daniel Qarras
Modified: 2011-03-15 02:50 UTC (History)
10 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2009-11-16 00:20:32 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Daniel Qarras 2009-11-15 20:19:23 UTC
Summary:

SELinux is preventing /usr/bin/canberra-gtk-play "module_request" access.

Detailed Description:

[SELinux is in permissive mode. This access was not denied.]

SELinux denied access requested by canberra-gtk-pl. It is not expected that this
access is required by canberra-gtk-pl and this access may signal an intrusion
attempt. It is also possible that the specific version or configuration of the
application is causing it to require additional access.

Allowing Access:

You can generate a local policy module to allow this access - see FAQ
(http://fedora.redhat.com/docs/selinux-faq-fc5/#id2961385) Please file a bug
report.

Additional Information:

Source Context                system_u:system_r:xdm_t:s0-s0:c0.c1023
Target Context                system_u:system_r:kernel_t:s0
Target Objects                None [ system ]
Source                        canberra-gtk-pl
Source Path                   /usr/bin/canberra-gtk-play
Port                          <Unknown>
Host                          (removed)
Source RPM Packages           libcanberra-gtk2-0.22-1.fc12
Target RPM Packages           
Policy RPM                    selinux-policy-3.6.32-41.fc12
Selinux Enabled               True
Policy Type                   targeted
Enforcing Mode                Permissive
Plugin Name                   catchall
Host Name                     (removed)
Platform                      Linux (removed) 2.6.31.5-127.fc12.i686
                              #1 SMP Sat Nov 7 21:41:45 EST 2009 i686 i686
Alert Count                   44
First Seen                    Tue 03 Nov 2009 02:50:59 PM EET
Last Seen                     Sun 15 Nov 2009 10:10:07 PM EET
Local ID                      6160d047-5c43-4a2b-a40d-a0d3b85389af
Line Numbers                  

Raw Audit Messages            

node=(removed) type=AVC msg=audit(1258315807.750:8): avc:  denied  { module_request } for  pid=1216 comm="canberra-gtk-pl" scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=system

node=(removed) type=SYSCALL msg=audit(1258315807.750:8): arch=40000003 syscall=102 success=no exit=-97 a0=1 a1=b2b9d090 a2=5667208 a3=b2000a30 items=0 ppid=1175 pid=1216 auid=4294967295 uid=42 gid=479 euid=42 suid=42 fsuid=42 egid=479 sgid=479 fsgid=479 tty=(none) ses=4294967295 comm="canberra-gtk-pl" exe="/usr/bin/canberra-gtk-play" subj=system_u:system_r:xdm_t:s0-s0:c0.c1023 key=(null)



Hash String generated from  selinux-policy-3.6.32-41.fc12,catchall,canberra-gtk-pl,xdm_t,kernel_t,system,module_request
audit2allow suggests:

#============= xdm_t ==============
allow xdm_t kernel_t:system module_request;

Comment 1 Bradley 2009-11-16 00:20:32 UTC
I assume that you have ipv6 disabled? If so, its because the kernel is trying to load the ipv6 module whenever ipv6 is requested.

*** This bug has been marked as a duplicate of bug 527936 ***


Note You need to log in before you can comment on or make changes to this bug.