selinux denies wine and xorg
Daniel J Walsh
dwalsh at redhat.com
Tue Sep 18 16:47:02 UTC 2007
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Adam Jackson wrote:
> On Wed, 2007-09-12 at 16:32 -0700, Antonio Olivares wrote:
>> https://bugzilla.redhat.com/show_bug.cgi?id=288671
>>
>> Just following the advice given here:
>> Please file a http://bugzilla.redhat.com/bugzilla/enter_bug.cgi
>>
>> against this package.
>>
>> Summary
>> SELinux is preventing /usr/bin/Xorg (xdm_xserver_t) "unix_read unix_write"
>> to <Unknown> (wine_t).
>>
>> Detailed Description
>> SELinux denied access requested by /usr/bin/Xorg. It is not expected that
>> this access is required by /usr/bin/Xorg and this access may signal an
>> intrusion attempt. It is also possible that the specific version or
>> configuration of the application is causing it to require additional access.
>>
>> Allowing Access
>> You can generate a local policy module to allow this access - see
>> http://fedora.redhat.com/docs/selinux-faq-fc5/#id2961385 Or you can disable
>> SELinux protection altogether. Disabling SELinux protection is not
>> recommended. Please file a http://bugzilla.redhat.com/bugzilla/enter_bug.cgi
>> against this package.
>>
>> Additional Information
>>
>> Source Context system_u:system_r:xdm_xserver_t:SystemLow-
>> SystemHigh
>> Target Context system_u:system_r:wine_t
>> Target Objects None [ shm ]
>
> That's... quite odd. Whatever shm objects X wants to talk to should be
> fine, but it's not clear what kind of object it is from this report.
>
> - ajax
>
Fixed in selinux-policy-3.0.8-1
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)
Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org
iD8DBQFG8AEGrlYvE4MpobMRAkidAJ4huVxe/B0n5N4JOkDPP5i0S7KN8wCfVOLl
bRs/0rnjIRVkG6Fv/QE/hjA=
=CQ93
-----END PGP SIGNATURE-----
More information about the fedora-test-list
mailing list