Hi,
sorry for chiming in so late, but I haven't seen this issue before - the last 
update changed that.
Special chars as reported in comment #26 and comment #15 are an issue, but most 
of them are fixed or at a better error message now.

First of all since Ubuntu 17.10 (~=UCA-Pike) all files in generated
rules are in quotes which formerly they were not - that allows for some
chars like spaces.

Further some other chars are just plain forbidden and would break the
rule - these are mostly apparmor wilcards so these are now rejected
since v3.10.0 by a150b86c instead of later failing when loading the
profile.

That said it is hard for me to track details of the old issue, but with
a recent Ubuntu this should be all fixed.

With space a rule will now look as:
  "/var/lib/uvtool/libvirt/images/a space does not hurt.qcow" rwk,
and work just fine.

But the actual issue - at least with tolerable special chars is fixed in
the latter releases. And the apparmor wildcards do not randomly fail, or
work or be a security issue - instead they always fail now.

I have to admit the message is still the old misleading one in the remaining 
failing cases.
I spawned bug 1767934 for this - but at low prio.

Per above I'd set the bug fix releases at least for the latter releases.
Given the long time this bug slumbers before a person is hit by it again and 
the fact that a simple file rename gets you around makes me not think of SRUs 
for this atm.
So I'll set won't fix for pre-Artful, but hey - discussions welcome.

** Changed in: libvirt (Ubuntu)
       Status: Confirmed => Fix Released

** Also affects: libvirt (Ubuntu Artful)
   Importance: Undecided
       Status: New

** Also affects: libvirt (Ubuntu Bionic)
   Importance: High
       Status: Fix Released

** Also affects: libvirt (Ubuntu Xenial)
   Importance: Undecided
       Status: New

** Changed in: libvirt (Ubuntu Artful)
       Status: New => Fix Released

** Changed in: libvirt (Ubuntu Xenial)
       Status: New => Won't Fix

** Changed in: libvirt (Ubuntu Bionic)
   Importance: High => Medium

** Changed in: libvirt (Ubuntu Artful)
   Importance: Undecided => Medium

** Changed in: libvirt (Ubuntu Xenial)
   Importance: Undecided => Medium

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1384532

Title:
  Unable to set AppArmor profile [...] no such file or directory

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1384532/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to