This is happening to me on a 12.04 install:
[1793012.835201] type=1400 audit(1336690883.803:534): apparmor="DENIED" operation="open" parent=26571 profile="/usr/sbin/clamd" name="/proc/26820/status" pid=26820 comm="clamd" requested_mask="r" denied_mask="r" fsuid=110 ouid=0
If I remove "owner" from the @{PROC}/[0-9]*/status line in the apparmor policy, it works. I'm not sure if that's "safe" though.
This is happening to me on a 12.04 install: 3.803:534) : apparmor="DENIED" operation="open" parent=26571 profile= "/usr/sbin/ clamd" name="/ proc/26820/ status" pid=26820 comm="clamd" requested_mask="r" denied_mask="r" fsuid=110 ouid=0
[1793012.835201] type=1400 audit(133669088
If I remove "owner" from the @{PROC} /[0-9]* /status line in the apparmor policy, it works. I'm not sure if that's "safe" though.