missing seccomp whitelist for qemu-kvm
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
qemu (Ubuntu) |
Fix Released
|
High
|
Unassigned |
Bug Description
Steps to reproduce:
1) set "seccomp_sandbox = 1" in /etc/libvirt/
2) restart libvirt-bin
3) create a guest using the attached .xml file
4) start the guest
Current behavior: the guest will remain in the "paused" state and fail to start because of this:
audit: type=1326 audit(145858232
Expected behavior: the guest would start normally
ProblemType: Bug
DistroRelease: Ubuntu 16.04
Package: libvirt-bin 1.3.1-1ubuntu6
ProcVersionSign
Uname: Linux 4.4.0-15-generic x86_64
NonfreeKernelMo
ApportVersion: 2.20-0ubuntu3
Architecture: amd64
CurrentDesktop: Unity
Date: Mon Mar 21 13:40:41 2016
KernLog:
SourcePackage: libvirt
UpgradeStatus: No upgrade log present (probably fresh install)
modified.
modified.
Changed in qemu (Ubuntu): | |
status: | New → Fix Committed |
no longer affects: | libvirt (Ubuntu) |
Changed in qemu (Ubuntu): | |
importance: | Undecided → High |
I'm attaching an even simpler guest definition that also fails to boot.