Chromium will not load pages with apparmor profile enabled

Bug #692866 reported by Virgil Brummond
14
This bug affects 2 people
Affects Status Importance Assigned to Milestone
apparmor (Ubuntu)
Fix Released
Medium
Jamie Strandboge

Bug Description

Binary package hint: apparmor

When I enable the Chromium apparmor profile the browser is unable to load any pages due to not having permissions for /dev/shm.

ProblemType: Bug
DistroRelease: Ubuntu 10.10
Package: apparmor-profiles 2.5.1-0ubuntu0.10.10.2
ProcVersionSignature: Ubuntu 2.6.35-23.41-generic 2.6.35.7
Uname: Linux 2.6.35.7-workstation x86_64
Architecture: amd64
Date: Tue Dec 21 01:34:17 2010
Dependencies:

InstallationMedia: Ubuntu 10.10 "Maverick Meerkat" - Release amd64 (20101007)
ProcEnviron:
 LANG=en_GB.utf8
 SHELL=/bin/bash
ProcKernelCmdline: BOOT_IMAGE=/boot/vmlinuz-2.6.35.7-workstation root=UUID=3d1ce99d-2d86-4ed2-a3b0-65f26bf0cb7f ro elevator=cfq quiet splash
SourcePackage: apparmor

Related branches

Revision history for this message
Virgil Brummond (uraharakisuke153) wrote :
Changed in apparmor (Ubuntu):
assignee: nobody → Jamie Strandboge (jdstrand)
importance: Undecided → Medium
status: New → Triaged
Revision history for this message
Virgil Brummond (uraharakisuke153) wrote :

I get the following errors while running Chromium;

virgil@ubuntu:~$ chromium-browser
[9489:9511:59917032014:ERROR:base/shared_memory_posix.cc(193)] Creating shared memory in /dev/shm/.org.chromium.4YSRJM failed: Permission denied
[9489:9489:59917202336:ERROR:base/shared_memory_posix.cc(193)] Creating shared memory in /dev/shm/.org.chromium.z4ro24 failed: Permission denied
[9489:9489:59917202515:ERROR:base/shared_memory_posix.cc(193)] Creating shared memory in /dev/shm/.org.chromium.UySWkn failed: Permission denied
/usr/lib/nspluginwrapper/noarch/npviewer: 5: uname: Permission denied
/usr/lib/nspluginwrapper/noarch/npviewer: 6: uname: Permission denied
/usr/lib/nspluginwrapper/noarch/npviewer: 86: which: Permission denied
[9489:9515:59917425238:ERROR:base/shared_memory_posix.cc(193)] Creating shared memory in /dev/shm/.org.chromium.LWOzaG failed: Permission denied

Changed in apparmor (Ubuntu):
status: Triaged → Fix Committed
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package apparmor - 2.6~devel+bzr1617-0ubuntu1

---------------
apparmor (2.6~devel+bzr1617-0ubuntu1) natty; urgency=low

  * Merge with upstream bzr revision 1617. Closes the following bugs:
    - LP: #692406: temporarily disable the defunct repository until an
      alternative can be used
    - LP: #649497: add ibus abstraction
    - LP: #652562: allow 'rw' to /var/log/samba/cores/
    - LP: #658135: allow access to /usr/lib32 and /usr/lib64 for dri modules
  * 0002-add-chromium-browser.patch: add /dev/shm/.org.chromium.*
    (LP: #692866)
  * rename debian/patches/0010-ubuntu-buildd.patch to 0001-ubuntu-buildd.patch
    and adjust debian/patches/series
  * debian/patches/0003-add-libvirt-support-to-dnsmasq.patch (LP: #697239):
    - allow read and write access to libvirt pid files for dnsmasq
    - allow net_admin capability for DHCP server
    - allow net_raw and network inet raw for ICMP pings when used as a DHCP
      server
  * debian/patches/0004-lp698194 (LP: #698194):
    - abstractions/private-files: don't allow wl to autostart directories
    - abstractions/private-files-strict: don't allow access to chromium,
      kwallet and popular mail clients
 -- Jamie Strandboge <email address hidden> Fri, 07 Jan 2011 12:44:26 -0600

Changed in apparmor (Ubuntu):
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Duplicates of this bug

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.