further debugging -- running commands with `--isolation=oci` break with apparmor denials as well: Dec 19 15:33:08 autopkgtest-lxd-kakmxr pasta[258607]: Couldn't open PID file /var/tmp/storage-run-1000/containers/networks/rootless-netns/rootless-netns-conn.pid Dec 19 15:33:08 autopkgtest-lxd-kakmxr pasta[258607]: : Permission denied Dec 19 15:33:08 autopkgtest-lxd-kakmxr kernel: audit: type=1400 audit(1766158388.914:5074): apparmor="DENIED" operation="mknod" class="file" profile="pasta" name="/var/tmp/storage-run-1000/containers/networks/rootless-netns/rootless-netns-conn.pid" pid=258607 comm="pasta.avx2" requested_mask="c" denied_mask="c" fsuid=1000 ouid=1000
this can be trivially reproduced by running buildah from ubuntu:noble # assuming you have the correct registries setup buildah run --isolation=oci $CONTAINER_ID echo hello ** Summary changed: - 1.42.1+ds1-2 autopkgtest failures in resolute + 1.42.1+ds1-2 autopkgtest failures in resolute due to various apparmor issues -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2136831 Title: 1.42.1+ds1-2 autopkgtest failures in resolute due to various apparmor issues To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/golang-github-containers-buildah/+bug/2136831/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
