View Issue Details

IDProjectCategoryView StatusLast Update
0015806CentOS-7selinux-policypublic2019-02-10 01:17
Reporterwrthissell 
PrioritynormalSeverityminorReproducibilityhave not tried
Status newResolutionopen 
PlatformOSOS Version7
Product Version 
Target VersionFixed in Version 
Summary0015806: SELinux is preventing /usr/sbin/bumblebeed from 'open' accesses on the file /usr/lib/modules/4.20.7-1.el7.elrepo.x86_64/modul...
DescriptionDescription of problem:
SELinux is preventing /usr/sbin/bumblebeed from 'open' accesses on the file /usr/lib/modules/4.20.7-1.el7.elrepo.x86_64/modules.softdep.

***** Plugin catchall (100. confidence) suggests **************************

If you believe that bumblebeed should be allowed open access on the modules.softdep file by default.
Then you should report this as a bug.
You can generate a local policy module to allow this access.
Do
allow this access for now by executing:
# ausearch -c 'bumblebeed' --raw | audit2allow -M my-bumblebeed
# semodule -i my-bumblebeed.pp

Additional Information:
Source Context system_u:system_r:bumblebee_t:s0
Target Context unconfined_u:object_r:modules_object_t:s0
Target Objects /usr/lib/modules/4.20.7-1.el7.elrepo.x86_64/module
                              s.softdep [ file ]
Source bumblebeed
Source Path /usr/sbin/bumblebeed
Port <Unknown>
Host (removed)
Source RPM Packages bumblebee-3.3.0-4.el7.x86_64
Target RPM Packages
Policy RPM selinux-policy-3.13.1-229.el7_6.9.noarch
Selinux Enabled True
Policy Type targeted
Enforcing Mode Permissive
Host Name (removed)
Platform Linux (removed) 4.20.7-1.el7.elrepo.x86_64 #1 SMP
                              Wed Feb 6 13:17:46 EST 2019 x86_64 x86_64
Alert Count 1
First Seen 2019-02-08 22:33:01 EST
Last Seen 2019-02-08 22:33:01 EST
Local ID aca65ade-f074-444f-8027-f7496c908ce2

Raw Audit Messages
type=AVC msg=audit(1549683181.901:176): avc: denied { open } for pid=1333 comm="bumblebeed" path="/usr/lib/modules/4.20.7-1.el7.elrepo.x86_64/modules.softdep" dev="dm-0" ino=134891775 scontext=system_u:system_r:bumblebee_t:s0 tcontext=unconfined_u:object_r:modules_object_t:s0 tclass=file permissive=1


type=SYSCALL msg=audit(1549683181.901:176): arch=x86_64 syscall=open success=yes exit=ESRCH a0=7ffd987eab40 a1=80000 a2=7ffd987eab77 a3=6f7065726c652e37 items=1 ppid=1 pid=1333 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm=bumblebeed exe=/usr/sbin/bumblebeed subj=system_u:system_r:bumblebee_t:s0 key=(null)

type=CWD msg=audit(1549683181.901:176): cwd=/

type=PATH msg=audit(1549683181.901:176): item=0 name=/lib/modules/4.20.7-1.el7.elrepo.x86_64/modules.softdep inode=134891775 dev=fd:00 mode=0100644 ouid=0 ogid=0 rdev=00:00 obj=unconfined_u:object_r:modules_object_t:s0 nametype=NORMAL cap_fp=0000000000000000 cap_fi=0000000000000000 cap_fe=0 cap_fver=0

Hash: bumblebeed,bumblebee_t,modules_object_t,file,open

Version-Release number of selected component:
selinux-policy-3.13.1-229.el7_6.9.noarch
Additional Informationreporter: libreport-2.1.11.1
hashmarkername: setroubleshoot
kernel: 4.20.7-1.el7.elrepo.x86_64
reproducible: Not sure how to reproduce the problem
type: libreport
TagsNo tags attached.
abrt_hashd3c1300a9f38d5782e8ebc0ae5f61a19b94a890e735baa973c85dfa9b3795bdd
URL

Activities

There are no notes attached to this issue.

Issue History

Date Modified Username Field Change
2019-02-10 01:17 wrthissell New Issue