unconfined_execmem_t for /usr/lib/jvm/java-1.5.0-sun-1.5.0.06/jre/bin/java ?

Tom London selinux at gmail.com
Thu May 18 01:21:58 UTC 2006


I'm getting execmem AVCs with latest policy and with SUN Java:
type=AVC msg=audit(1147912677.425:256): avc:  denied  { execmem } for
pid=10059 comm="java" scontext=user_u:system_r:unconfined_t:s0
tcontext=user_u:system_r:unconfined_t:s0 tclass=process
type=SYSCALL msg=audit(1147912677.425:256): arch=40000003 syscall=192
per=400000 success=no exit=-1082810368 a0=bf75a000 a1=3000 a2=7 a3=32
items=0 pid=10059 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0
sgid=0 fsgid=0 tty=pts0 comm="java"
exe="/usr/lib/jvm/java-1.5.0-sun-1.5.0.06/jre/bin/java"
subj=user_u:system_r:unconfined_t:s0

Is it appropriate to label as unconfined_exemem_t?

tom
-- 
Tom London




More information about the fedora-selinux-list mailing list