Browse Source

fix(apparmor): Fix openSUSE-related AppArmor denies

Add file rules for denies detected only in openSUSE desktop.
reviewable/pr5577/r2
Vincas Dargis 7 years ago
parent
commit
7a1fb927ec
  1. 2
      security/apparmor/2.12.1/usr.bin.qtox
  2. 2
      security/apparmor/2.13.2/usr.bin.qtox

2
security/apparmor/2.12.1/usr.bin.qtox

@ -258,6 +258,8 @@ profile qtox /usr{,/local}/bin/qtox { @@ -258,6 +258,8 @@ profile qtox /usr{,/local}/bin/qtox {
/sys/devices/system/node/ r, # for ld-linux-x86-64.so -> libnuma1.so
/sys/devices/system/node/node[0-9]*/meminfo r, # for ld-linux-x86-64.so -> libnuma1.so
/usr/share/emoticons/{,**} r,
/usr/share/hwdata/pnp.ids r, # For OpenSUSE only?
/usr/share/icu/[0-9]*.[0-9]*/icudt[0-9]*.dat r, # For OpenSUSE only?
/usr/share/kservices5/{,**} r, # file dialog
/usr/share/mime/ r, # file dialog
/usr/share/plasma/look-and-feel/*/contents/defaults r, # TODO: move to kde abstraction?

2
security/apparmor/2.13.2/usr.bin.qtox

@ -265,6 +265,8 @@ profile qtox /usr{,/local}/bin/qtox { @@ -265,6 +265,8 @@ profile qtox /usr{,/local}/bin/qtox {
/sys/devices/system/node/ r, # for ld-linux-x86-64.so -> libnuma1.so
/sys/devices/system/node/node[0-9]*/meminfo r, # for ld-linux-x86-64.so -> libnuma1.so
/usr/share/emoticons/{,**} r,
/usr/share/hwdata/pnp.ids r, # For OpenSUSE only?
/usr/share/icu/[0-9]*.[0-9]*/icudt[0-9]*.dat r, # For OpenSUSE only?
/usr/share/kservices5/{,**} r, # file dialog
/usr/share/mime/ r, # file dialog
/usr/share/plasma/look-and-feel/*/contents/defaults r, # TODO: move to kde abstraction?

Loading…
Cancel
Save