Note: This is a public test instance of Red Hat Bugzilla. The data contained within is a snapshot of the live data so any changes you make will not be reflected in the production Bugzilla. Email is disabled so feel free to test any aspect of the site that you want. File any problems you find or give feedback at bugzilla.redhat.com.
Bug 1949712
Summary: | SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-7hye6voX3Y. | ||
---|---|---|---|
Product: | [Fedora] Fedora | Reporter: | cube00 <cube_00> |
Component: | selinux-policy | Assignee: | Zdenek Pytela <zpytela> |
Status: | NEW --- | QA Contact: | Fedora Extras Quality Assurance <extras-qa> |
Severity: | unspecified | Docs Contact: | |
Priority: | unspecified | ||
Version: | 34 | CC: | brian, bugzilla.redhat, carl, chrisa, decathorpe, dwalsh, grepl.miroslav, jeremy.linton, jwadodson, lvrabec, mikelazer7, mmalik, mwolf, nathan, omosnace, plautrba, r3pek, rafal.boruc, roshan.shariff, thedatum+bz, tony, uckelman, vincent, vmojzis, zpytela |
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | x86_64 | ||
OS: | Unspecified | ||
Whiteboard: | abrt_hash:1d3d8f1b9a61b0958fc77ee0c9c711307f6d3048203e29ddc052926e4c1c144d;VARIANT_ID=workstation; | ||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | Type: | --- | |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
cube00
2021-04-14 21:23:08 UTC
Similar problem has been detected: Happens every time I log into a GNOME session (Xorg, if that matters). hashmarkername: setroubleshoot kernel: 5.11.13-300.fc34.x86_64 package: selinux-policy-targeted-34.3-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-B6LDpHB9pK. type: libreport *** Bug 1950642 has been marked as a duplicate of this bug. *** Similar problem has been detected: F34 testing, clean install f34 server, dnf group install "Fedora Workstation" login, install some apps, point ff at cockpit, spin up a container,logout. hashmarkername: setroubleshoot kernel: 5.11.12-300.fc34.aarch64 package: selinux-policy-targeted-34-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-wWVTPGCBgB. type: libreport Similar problem has been detected: After login into Cinnamon hashmarkername: setroubleshoot kernel: 5.11.16-300.fc34.x86_64 package: selinux-policy-targeted-34.3-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-fhn9EU9tAf. type: libreport *** Bug 1956802 has been marked as a duplicate of this bug. *** Similar problem has been detected: Shows up on boot after upgrading to Fedora 34. hashmarkername: setroubleshoot kernel: 5.11.17-300.fc34.x86_64 package: selinux-policy-targeted-34.4-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-w2wJTPzxCu. type: libreport Similar problem has been detected: Log in to GNOME hashmarkername: setroubleshoot kernel: 5.11.17-300.fc34.x86_64 package: selinux-policy-targeted-34.4-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-iiIAGHOXaB. type: libreport Similar problem has been detected: Happens right after a normal boot hashmarkername: setroubleshoot kernel: 5.12.9-300.fc34.x86_64 package: selinux-policy-targeted-34.11-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-DYc1JVls2z. type: libreport Similar problem has been detected: Happens every boot after login. hashmarkername: setroubleshoot kernel: 5.12.10-300.fc34.x86_64 package: selinux-policy-targeted-34.11-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-uUd7l3I7Bm. type: libreport I get this same problem - among other selinux problems that really should have been seen in testing & not allowed to get this far. How can we encourage better pre-release testing? type=AVC msg=audit(15/06/21 22:00:19.863:669) : avc: denied { write } for pid=1081 comm=gnome-session-c name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(15/06/21 22:00:20.689:670) : avc: denied { write } for pid=1102 comm=gnome-shell name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(15/06/21 22:00:21.315:685) : avc: denied { write } for pid=1134 comm=ibus-x11 name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(15/06/21 22:00:21.992:692) : avc: denied { write } for pid=1232 comm=gsd-media-keys name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(15/06/21 22:00:21.995:693) : avc: denied { write } for pid=1242 comm=gsd-power name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(15/06/21 22:00:22.006:694) : avc: denied { write } for pid=1215 comm=gsd-wacom name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(15/06/21 22:00:22.021:695) : avc: denied { write } for pid=1219 comm=gsd-color name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(15/06/21 22:00:22.040:696) : avc: denied { write } for pid=1222 comm=gsd-keyboard name=dbus-i1j6NBZFlC dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 More today after boot/login... type=AVC msg=audit(21/06/21 08:25:33.396:669) : avc: denied { write } for pid=1080 comm=gnome-session-c name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(21/06/21 08:25:34.189:670) : avc: denied { write } for pid=1102 comm=gnome-shell name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(21/06/21 08:25:34.744:684) : avc: denied { write } for pid=1130 comm=ibus-x11 name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(21/06/21 08:25:35.261:692) : avc: denied { write } for pid=1231 comm=gsd-media-keys name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(21/06/21 08:25:35.269:693) : avc: denied { write } for pid=1220 comm=gsd-keyboard name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(21/06/21 08:25:35.285:694) : avc: denied { write } for pid=1213 comm=gsd-wacom name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(21/06/21 08:25:35.305:695) : avc: denied { write } for pid=1217 comm=gsd-color name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 type=AVC msg=audit(21/06/21 08:25:35.373:696) : avc: denied { write } for pid=1243 comm=gsd-power name=dbus-2EbzofzkPG dev="tmpfs" ino=43 scontext=system_u:system_r:xdm_t:s0-s0:c0.c1023 tcontext=system_u:object_r:tmp_t:s0 tclass=sock_file permissive=0 Similar problem has been detected: Logged in after upgrade from F33 to F34 hashmarkername: setroubleshoot kernel: 5.12.12-300.fc34.x86_64 package: selinux-policy-targeted-34.11-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-YdsL6u9Bx8. type: libreport Similar problem has been detected: The alert was present on the desktop following waking my laptop following it being in sleep mode overnight. The system did not immediately "wake" when the lid was opened but after about a minute is screen did wake to the login. hashmarkername: setroubleshoot kernel: 5.12.9-300.fc34.x86_64 package: selinux-policy-targeted-34.11-1.fc34.noarch reason: SELinux is preventing gnome-session-c from 'write' accesses on the sock_file dbus-MSFZRjTpPp. type: libreport |