apparmor denied messages when opening dvi files with previewer and thumbnailer

Bug #650533 reported by Jamie Strandboge
10
This bug affects 2 people
Affects Status Importance Assigned to Milestone
evince (Ubuntu)
Fix Released
Low
Jamie Strandboge

Bug Description

Binary package hint: evince

Running QRT, I noticed the following
type=AVC msg=audit(1285699344.220:156): apparmor="DENIED" operation="open" parent=8226 profile="/usr/bin/evince-previewer" name="/etc/texmf/dvips/" pid=13775 comm="evince-previewe" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
type=AVC msg=audit(1285699344.220:157): apparmor="DENIED" operation="open" parent=8226 profile="/usr/bin/evince-previewer" name="/etc/texmf/" pid=13775 comm="evince-previewe" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0

The files open fine, so this seems to just be a bit of noise.

Changed in evince (Ubuntu):
assignee: nobody → Jamie Strandboge (jdstrand)
importance: Undecided → Low
status: New → Triaged
status: Triaged → Fix Committed
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Committed the fix to r101 in bzr. This doesn't seem important enough to warrant a separate upload, so leaving as 'Fix Committed'.

Revision history for this message
chef (adotei) wrote :

I get a similar message to the one above when I try opening a eps file in evince. Evince starts up with a loading animation in the top right corner but the file isn't opened. The kernel (default ubuntu kernel) log message I get is posted below.

kernel: [15222.891720] type=1400 audit(1286811411.455:36): apparmor="DENIED" operation="open" parent=1 profile="/usr/bin/evince" name="/var/lib/ghostscript/fonts/Fontmap" pid=25822 comm="evince" requested_mask="r"
denied_mask="r" fsuid=1000 ouid=0

I am running Ubuntu 10.10 upgraded from 10.04.

Revision history for this message
Jamie Strandboge (jdstrand) wrote :

chef,

/var/lib/ghostscript/fonts/Fontmap should already be handled by the AppArmor profile as of 2.30.3-0ubuntu3. It seems as if the profile didn't get reloaded properly (did you reboot after upgrading?).

Please do:
$ sudo apparmor_parser -r -T -W /etc/apparmor.d/usr.bin.evince

and try again. If that does not work, can you please attach the eps file?

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package evince - 2.32.0-0ubuntu2

---------------
evince (2.32.0-0ubuntu2) natty; urgency=low

  * debian/control:
    - Use standards-version 3.9.1
  * debian/patches/02_libice.patch:
   - Link against libice to fix FTBFS

  [ Jamie Strandboge ]
  * debian/apparmor-profile.abstraction: allow reading of /etc/texmf/ and
    /etc/texmf/** (LP: #650533)
  * debian/apparmor-profile*: allow fdf files (LP: #607573)
 -- Robert Ancell <email address hidden> Mon, 06 Dec 2010 15:18:49 +1100

Changed in evince (Ubuntu):
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.