Mailinglist Archive: opensuse-bugs (5421 mails)

< Previous Next >
[Bug 691072] New: Apparmor profile prevents access to /var/mail = symlink to /var/spool/mail
  • From: bugzilla_noreply@xxxxxxxxxx
  • Date: Sat, 30 Apr 2011 21:37:50 +0000
  • Message-id: <bug-691072-21960@http.bugzilla.novell.com/>

https://bugzilla.novell.com/show_bug.cgi?id=691072

https://bugzilla.novell.com/show_bug.cgi?id=691072#c0


Summary: Apparmor profile prevents access to /var/mail =
symlink to /var/spool/mail
Classification: openSUSE
Product: openSUSE 11.4
Version: Final
Platform: Other
OS/Version: openSUSE 11.4
Status: NEW
Severity: Normal
Priority: P5 - None
Component: AppArmor
AssignedTo: jeffm@xxxxxxxxxx
ReportedBy: joop.boonen@xxxxxxxxxx
QAContact: qa@xxxxxxx
Found By: ---
Blocker: ---


User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:2.0.0) Gecko/20100101
Firefox/4.0

As Apparmor doesn't allow following symlinks (what I think should be like
that). The mail files /var/spool/mail/* is missing in the apparmor profile
files for dovecot.

This is for dovecot 1.2.16.
For dovecot 2.0.9 this profile isn't correct at all.

I wonder if it would be an idea to separate the apparmor profiles partly from
apparmor. And have separate apparmor profiles for different programs.
With <packagename>-apparmor like for instance dovecot12-apparmor and
dovecot20-apparmor.

Reproducible: Always

Steps to Reproduce:
1.
2.
3.

--
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.

< Previous Next >
Follow Ups