apparmor security driver broken in 0.9.2
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
libvirt (Ubuntu) |
Fix Released
|
Critical
|
Jamie Strandboge | ||
Oneiric |
Fix Released
|
Critical
|
Jamie Strandboge |
Bug Description
Commit 12317957ecd6c37
While 0.9.2 is not in Ubuntu yet, this functionality must be fixed if we are to have new libvirt releases in Ubuntu.
CVE References
Changed in libvirt (Ubuntu Oneiric): | |
assignee: | nobody → Jamie Strandboge (jdstrand) |
importance: | Undecided → Critical |
milestone: | none → oneiric-alpha-2 |
status: | New → In Progress |
tags: | added: server-ors |
This bug was fixed in the package libvirt - 0.9.2-4ubuntu1
---------------
libvirt (0.9.2-4ubuntu1) oneiric; urgency=low
* Merge from debian unstable. Remaining changes:
open- iscsi-utils in Build-Depends libvirt- bin.apport libvirt- bin.cron. daily libvirt- bin.dirs: libvirt- bin.examples: libvirt- suspendonreboot libvirt- bin.install: libvirt- bin.manpages: libvirt- migrate- qemu-disks. 1 libvirt- bin.postinst:
usr.lib. libvirt. virt-aa- helper migrate- qemu-disks -a' after libvirt- bin.postrm:
usr.lib. libvirt. virt-aa- helper migrate- qemu-disks migrate- qemu-disks. 1 suspendonreboot README. Debian: EXTRA_FLAGS INSTALLINIT_ ARGS to '--upstart-only' install/ libvirt- bin:: and clean:: migrate- qemu-disks patches/ series: libvirt- guests. patch (sysvinit only) network. diff.patch lxc-containers- with-lxcguest. patch (applied upstream) test-poll. patch with-arm. patch (doesnt really fix arm just yet) 2011-2178. patch (applied upstream)
- debian/control:
* set X-Python-Version to 2.7, as 2.6 is not in oneiric.
* set ubuntu maintainer
* Build-Depends:
- remove [linux-any] from all dependencies
- remove [!linux-any] deps
- swap qemu to qemu-kvm and open-iscsi to
- remove virtualbox-ose Build-Depends
- add parted and libapparmor-dev Build-Depends
* convert Vcs-Git to Xs-Debian-Vcs-Git
* libvirt-bin Depends: move netcat-openbsd, bridge-utils, dnsmasq-base
(>= 2.46-1), and iptables from Recommends to Depends
* libvirt-bin Recommends: move qemu to Suggests
* libvirt-bin Suggests: add apparmor
* libvirt0 Recommands: move lvm2 to Suggests
- keep debian/
- keep debian/
- debian/
* add apparmor, cron.daily, and apport dirs
- debian/
* add debian/
- debian/
* add /etc/apparmor.d files
* add apport hook
- debian/
* add debian/
- debian/
* replace libvirt groupname with libvirtd
* add each admin user to libvirtd group
* call apparmor_parser on usr.sbin.libvirtd and
* call 'libvirt-
libvirt-bin has started if migrating from
older than 0.8.3-1ubuntu1
- debian/
* replace libvirt groupname with libvirtd
* remove usr.sbin.libvirtd and
- keep added files under debian/:
* libvirt-bin.upstart
* libvirt-
* libvirt-
* libvirt-
* apparmor profiles
- debian/
* add 'Apparmor Profile' section
* add 'Disk migration' section
- debian/rules:
* move include of debhelper.mk to top of file so DEB_HOST_ARCH_OS
is defined.
* don't build with vbox since virtualbox-ose is in universe
- remove WITH_VBOX, add explicit --without-vbox
* add --with-apparmor to DEB_CONFIGURE_
* set DEB_DH_
* remove unneeded binary-
sections (they only deal with sysvinit stuff)
* add build/libvirt-bin:: section to install
- apparmor files
- apport hooks
- libvirt-
* debian/
- don't apply Debian-specific Debianize-
- don't apply Disable qemu-disable-
* debian/patches:
- dropped patches:
* 9022-allows-
* 9023-disable-
* 9024-ftbfs-
* 9025-CVE-
- k...