[Bug 1509752] Re: Bug in ensure_not_symlink() from 0003-CVE-2015-1335.patch

Serge Hallyn 1509752 at bugs.launchpad.net
Wed Oct 28 15:36:50 UTC 2015


No, sadly one testcase - lxc-test-unpriv -  still fails:

Oct 28 15:33:49 lxct1 kernel: [ 2659.417204] type=1400
audit(1446046429.177:52): apparmor="DENIED" operation="mount"
info="failed flags match" error=-13 profile="/usr/bin/lxc-start"
name="/home/lxcunpriv/.local/share/lxc/c1/rootfs/dev/console" pid=23805
comm="lxc-start" srcname="/dev/console" flags="rw, bind"

(Note that running unprivileged containers by hand does work)

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to lxc in Ubuntu.
https://bugs.launchpad.net/bugs/1509752

Title:
  Bug in ensure_not_symlink() from 0003-CVE-2015-1335.patch

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1509752/+subscriptions



More information about the Ubuntu-server-bugs mailing list