Public bug reported:

We are using ClamAV and require it to access "disconnected" files.
Currently, we add the `attach_disconnected` flag to the
`/usr/sbin/clamd` AppArmor profile. However, when ClamAV updates that
profile, we do not get the changes, which has caused our install to
break in the past.

The simplest fix would be to add the required tag to the default
profile, which has some obvious issues.

Another solution would be to also provide the default profile in the
form of an abstraction that could be included. So if a user wants to add
to the profile, they can disable the default and include the abstraction
in their own, so that they can make modifications and not miss out on
updates to the profile.

Using: Ubuntu 20.04.2 LTS/clamav 0.103.2+dfsg-0ubuntu0.20.04.2

** Affects: clamav (Ubuntu)
     Importance: Undecided
         Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1940975

Title:
  clamd apparmor attach_disconnected

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/clamav/+bug/1940975/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to