[Bug 1852485] Re: [SRU] Add AssumedAppArmorLabel to fwupd service

Ɓukasz Zemczak 1852485 at bugs.launchpad.net
Mon Dec 2 17:09:16 UTC 2019


Hello Ken, or anyone else affected,

Accepted fwupd-signed into eoan-proposed. The package will build now and
be available at https://launchpad.net/ubuntu/+source/fwupd-signed/1.10.1
in a few hours, and then in the -proposed repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation on how
to enable and use -proposed.  Your feedback will aid us getting this
update out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested and change the tag from
verification-needed-eoan to verification-done-eoan. If it does not fix
the bug for you, please add a comment stating that, and change the tag
to verification-failed-eoan. In either case, without details of your
testing we will not be able to proceed.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance for helping!

N.B. The updated package will be released to -updates after the bug(s)
fixed by this package have been verified and the package has been in
-proposed for a minimum of 7 days.

** Also affects: fwupd-signed (Ubuntu)
   Importance: Undecided
       Status: New

** Changed in: fwupd-signed (Ubuntu Eoan)
       Status: New => Fix Committed

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to fwupd-signed in Ubuntu.
https://bugs.launchpad.net/bugs/1852485

Title:
  [SRU] Add AssumedAppArmorLabel to fwupd service

Status in fwupd package in Ubuntu:
  Fix Released
Status in fwupd-signed package in Ubuntu:
  New
Status in fwupd source package in Bionic:
  New
Status in fwupd-signed source package in Bionic:
  New
Status in fwupd source package in Disco:
  New
Status in fwupd-signed source package in Disco:
  New
Status in fwupd source package in Eoan:
  Fix Committed
Status in fwupd-signed source package in Eoan:
  Fix Committed

Bug description:
  In order for strictly confined snaps to work with the host's fwupd we
  need to add the AssumedAppArmorLabel=unconfined to the DBus service
  file.

  [Impact]

   * Without this label, strictly confined snaps can not work with the
  host's fwupd service

  
  [Test Case]

   * snap install --edge gnome-firmware
   * snap connect gnome-firmware:fwupd
   * snap run gnome-firmware
   * Expected results: Display devices with upgradable firmware
     
  [Regression Potential] 

   * There should be no potential for regression, this is adding an
  optional label that will not effect other services communicating with
  the fwupd service.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/fwupd/+bug/1852485/+subscriptions



More information about the foundations-bugs mailing list