etc/apparmor.d/usr.bin.evince should allow /run/user/*/gvfs-metadata/**
Bug #1344810 reported by
Sergio Gelato
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
evince (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
/etc/apparmor.
@{HOME}
However, it is possible (seen on trusty) for session state files to be stored under /run/user/<uid>/ instead of ~/.local/share/ . Please consider adding
owner /run/user/
to the apparmor profile.
Moreover (but this may be worth discussing and tracking separately) I've seen evince being denied "r" access to gvfs-metadata/
Related branches
Changed in evince (Ubuntu): | |
status: | New → In Progress |
To post a comment you must log in.
This bug was fixed in the package evince - 3.10.3-0ubuntu15
---------------
evince (3.10.3-0ubuntu15) utopic; urgency=medium
* debian/ apparmor- profile: 1000/at- spi2-* */gvfs- metadata/ ** (LP: #1344810) /.cache/ dconf/user (LP: #1024605) apparmor- profile. abstraction: lubuntu/ applications/ defaults. list (LP: #1290157, [pP][sS] [fFiI23] (LP: #1330430)
- allow site-wide dconf. Thanks to Lars Masden. (LP: #1355804)
- allow read/write to files we own in /media (LP: #1096837)
- allow read/write to files we own in /run/user/
(LP: #1308488)
- allow 'l' to /run/user/
- allow read/write of @{HOME}
* debian/
- allow read of /etc/xdg/
LP: #1299239)
- allow read of /**.[eE]
-- Jamie Strandboge <email address hidden> Tue, 12 Aug 2014 14:30:43 -0500