Bug ID 1232527
Summary [SELinux] "systemd-bless-boot good" fail during boot time
Classification openSUSE
Product openSUSE Tumbleweed
Version Current
Hardware Other
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Security
Assignee security-team@suse.de
Reporter danilo.spinella@suse.com
QA Contact security-team@suse.de
Target Milestone ---
Found By ---
Blocker ---

Operating System: openSUSE MicroOS
SELinux status, mode and policy name: enabled, enforcing, targeted
SELinux policy version and repository: 20241021-1.1, openSUSE-Tumbleweed-Oss
The software (incl. version) that is affected by the SELinux issue and the
error message: systemd 256.7, systemd-bless-boot, "Failed to rename
'/loader/entries/opensuse-microos-6.11.5-1-default-1+2-1.conf' to
'/loader/entries/opensuse-microos-6.11.5-1-default-1.conf': Permission Denied"
SELinux Audit log:
type=AVC msg=audit(1730195064.486:34): avc:  denied  { rename } for  pid=1142
comm="systemd-bless-b" name="opensuse-microos-6.11.5-1-default-1+2-1.conf"
dev="vda2" ino=11 scontext=system_u:system_r:init_t:s0
tcontext=system_u:object_r:dosfs_t:s0 tclass=file permissive=0
Any other important details: N/A


You are receiving this mail because: