Bug 656398 - allowing access
allowing access
Status: CLOSED CANTFIX
Product: Red Hat Enterprise Linux 5
Classification: Red Hat
Component: selinux-policy (Show other bugs)
5.8
Unspecified Unspecified
low Severity medium
: rc
: ---
Assigned To: Miroslav Grepl
BaseOS QE Security Team
:
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2010-11-23 11:24 EST by rama
Modified: 2010-11-24 07:47 EST (History)
1 user (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2010-11-24 07:47:39 EST
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)

  None (edit)
Description rama 2010-11-23 11:24:11 EST
Description of problem:


Version-Release number of selected component (if applicable):


How reproducible:


Steps to Reproduce:
1.
2.
3.
  
Actual results:


Expected results:


Additional info:
Comment 1 rama 2010-11-23 11:27:53 EST
SElinux is preventing /usr/lib/firefox-3,6/firefox from loading /usr/jdk/jdk1.6.0_22/jre/lib/i386/client/libjvm.so which requires text relocation
Comment 2 Miroslav Grepl 2010-11-24 07:47:39 EST
Either fix the label on the file

# semanage fcontext -a -t textrel_shlib_t
'/usr/jdk/jdk1.6.0_22/jre/lib/i386/client/libjvm.so'
# restorecon -R -v /opt/schrodinger/maestro-v90211/lib/Linux-x86

Or turn off the check 

# setsebool -P allow_execmod 1

This is a library that was built without the PIC flag.

Note You need to log in before you can comment on or make changes to this bug.