[Bug 1172318] New: AUDIT-0: Veyon: Request review for polkit-untracked-privilege
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318 Bug ID: 1172318 Summary: AUDIT-0: Veyon: Request review for polkit-untracked-privilege Classification: openSUSE Product: openSUSE Tumbleweed Version: Current Hardware: Other OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Network Assignee: security-team@suse.de Reporter: andythe_great@pm.me QA Contact: qa-bugs@suse.de Found By: --- Blocker: --- I build Veyon with help from malcolmlewis. https://build.opensuse.org/package/show/home:andythe_great:branches:home:lru... I would like to submit this to factory, but need review for the error below. [ 396s] veyon.x86_64: E: polkit-untracked-privilege (Badness: 10) io.veyon.pkexec.veyon-configurator (auth_admin_keep:auth_admin_keep:auth_admin_keep) [ 396s] The privilege is not listed in /etc/polkit-default-privs.* There are some unrelated warning position-independent-executable-suggested, which suggest me to add -fPIE flag to it, but adding -fPIE flag stil not fix it. Not sure if it a problem. Kind Regards, Andy -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318
andy great
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318#c3
--- Comment #3 from andy great
I'll look into this.
Thank you, I thinking of submitting to X11:common:Factory and then factory once veyon get approve. -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318#c6
--- Comment #6 from andy great
So there is one finding that is security related. I opened bug 1172318 for this (still private). When this finding is fixed then I can whitelist this polkit-untracked-privilege.
I have to wait for that bug to be fix before I can submit to factory right? It is private so I cannot see that bug report? -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318#c9
--- Comment #9 from andy great
Upstream fixed the issue by now. Can you please package their new release 4.4.0:
https://github.com/veyon/veyon/releases/tag/v4.4.0
This includes the fix for bug 1172659.
When you packaged the new version we can whitelistin the package and you can continue submitting this new package to Factory.
Thanks so much. I submit this to Education repo, waiting for approval. Once it is accepted, I will submit it to fatory. https://build.opensuse.org/request/show/814232 -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318
http://bugzilla.opensuse.org/show_bug.cgi?id=1172318#c10
--- Comment #10 from andy great
participants (1)
-
bugzilla_noreply@suse.com