[Bug 1862262] Re: [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and product_name

2020-02-21 Thread Simon Déziel
So this bug will be fixed when snapd's 2.43 SRU goes through. I
appreciate the pointer for the gpu-process sanboxing problem and its
workaround! Many thanks Jalon!

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1862262

Title:
  [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and
  product_name

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/chromium-browser/+bug/1862262/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1862262] Re: [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and product_name

2020-02-21 Thread Jalon Funk
The "denials on /sys/devices/virtual/dmi/id/sys_vendor and product_name"
will be fixed in next snapd release (2.43.4?):
https://github.com/snapcore/snapd/commit/3ad3e7fbba13721eeaab8dd85a5640316b1c1606

The "ERROR:sandbox_linux.cc(374)] InitializeSandbox() called with
multiple threads in process gpu-process." is known chromium bug which
results in disabled gpu sandbox:
https://bugs.chromium.org/p/chromium/issues/detail?id=264818

This isn't related to snap and the only fix for now is to set
MESA_GLSL_CACHE_DISABLE=true environment variable.

@walterav your issues seem unrelated to those. Please open separate
report.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1862262

Title:
  [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and
  product_name

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/chromium-browser/+bug/1862262/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1862262] Re: [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and product_name

2020-02-20 Thread Simon Déziel
** Tags added: snap

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1862262

Title:
  [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and
  product_name

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/chromium-browser/+bug/1862262/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1862262] Re: [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and product_name

2020-02-20 Thread walterav
Also affected here, with alot more messages from audit: type=1400
apparmor="DENIED" operation="mknod / open / unlink / truncate /
dbus_method_call etc..."

[ 7817.510475] audit: type=1400 audit(1582191723.992:6264): apparmor="DENIED" 
operation="truncate" profile="snap.chromium.chromium" 
name="/home/username/snap/chromium/1026/.config/chromium/Default/Favicons-journal"
 pid=4639 comm="Chrome_HistoryT" requested_mask="w" denied_mask="w" fsuid=1000 
ouid=1000
[ 7825.615310] audit: type=1400 audit(1582191732.100:6278): apparmor="DENIED" 
operation="open" profile="snap.chromium.chromium" 
name=2F686F6D652F756174702F736E61702F6368726F6D69756D2F313032362F2E636F6E6669672F6368726F6D69756D2F44656661756C742F43757272656E742053657373696F6E
 pid=4639 comm="ThreadPoolForeg" requested_mask="wc" denied_mask="wc" 
fsuid=1000 ouid=1000
[ 7827.273968] audit: type=1400 audit(1582191733.756:6281): apparmor="DENIED" 
operation="mknod" profile="snap.chromium.chromium" 
name="/home/username/snap/chromium/1026/.config/chromium/.org.chromium.Chromium.mrO80f"
 pid=4639 comm="ThreadPoolForeg" requested_mask="c" denied_mask="c" fsuid=1000 
ouid=1000
[ 8365.423097] audit: type=1400 audit(1582192271.910:7069): apparmor="DENIED" 
operation="unlink" profile="snap.chromium.chromium" 
name="/home/username/snap/chromium/1026/.config/chromium/SingletonLock" 
pid=4639 comm="chrome" requested_mask="d" denied_mask="d" fsuid=1000 ouid=1000
[ 8417.535810] audit: type=1107 audit(1582192324.023:7286): pid=1299 uid=103 
auid=4294967295 ses=4294967295 msg='apparmor="DENIED" 
operation="dbus_method_call"  bus="system" path="/" 
interface="org.freedesktop.DBus.ObjectManager" member="GetManagedObjects" 
mask="send" name="org.bluez" pid=11273 label="snap.chromium.chromium"

$ snap list
Name   Version  Rev   Tracking  Publisher   Notes
chromium   80.0.3987.1161036  stablecanonical✓  -

$ uname -a
Linux lacol 5.3.0-40-generic #32-Ubuntu SMP Fri Jan 31 20:24:34 UTC 2020 x86_64 
x86_64 x86_64 GNU/Linux

$ lsb_release -rd
Description:Ubuntu 19.10
Release:19.10

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1862262

Title:
  [snap] apparmor denials on /sys/devices/virtual/dmi/id/sys_vendor and
  product_name

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/chromium-browser/+bug/1862262/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs