aa-enforce gives syntax error on snapd config

Bug #1677997 reported by Nick Howden
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
apparmor (Ubuntu)
Fix Released
Undecided
Unassigned

Bug Description

Ubuntu 16.04.02 LTS (Cloud OVA Image)
apparmor 2.10.95-0ubuntu2
snap-confine 2.22.6

When I run aa-enforce I get

 ERROR: Syntax Error: Unknown line found in file /etc/apparmor.d/usr.lib.snapd.snap-confine line 71:
    change_profile unsafe /** -> [^u/]**,

The same command worked around 1 month ago but now exhibits the above error.
I don't think the the offending lines in /etc/apparmor.d/usr.lib.snapd.snap-confine have changed for months.

Revision history for this message
Christian Boltz (cboltz) wrote :

This was fixed in upstream bzr r3490 (2016-07-20), but only in trunk. Looks like nobody backported it to the 2.10 branch or the Ubuntu packages.

See also bug 1584069 (which is referred in the r3490 commit message) - interestingly, there's a comment saying "This bug was fixed in Ubuntu 16.04 with apparmor 2.10.95-0ubuntu2.2"...

Revision history for this message
Nick Howden (malvern-nick) wrote :

The bug is fixed in 2.10.95-0ubuntu2.6
The system that was failing was pulling in 2.10.95-0ubuntu2

description: updated
Changed in apparmor (Ubuntu):
status: New → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.