I have traced this down to how the cred is being handled in a couple hooks. So dependent on program access patterns the new profile may or may not be used. I have placed a test kernel that passes serge's aa_exec test (for me) on people. Please test and confirm this kernel is working
http://people.canonical.com/~jj/linux-image-3.11.0-13-generic_3.11.0-13.20_amd64.deb http://people.canonical.com/~jj/linux-image-extra-3.11.0-13-generic_3.11.0-13.20_amd64.deb -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1236455 Title: Running tasks are not subject to reloaded policies To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1236455/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
