cannot read mount namespace identifier of pid 1: Permission denied, on OpenSUSE Tumbleweed with Linux 5.0

Bug #1821396 reported by Linus Kardell on 2019-03-22
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
snapd
High
Zygmunt Krynicki

Bug Description

When I try to run a snap I get an error message saying `cannot read mount namespace identifier of pid 1: Permission denied`, and in /var/log/audit/audit.log I get `type=AVC msg=audit(1553279757.513:482): apparmor="DENIED" operation="ptrace" profile="/usr/lib/snapd/snap-confine" pid=24430 comm="snap-confine" requested_mask="read" denied_mask="read" peer="unconfined"`.
This is on OpenSUSE Tumbleweed 20190318 with Linus 15.0.2 (`Linux sudda.kvasta 5.0.2-1-default #1 SMP Thu Mar 14 08:29:17 UTC 2019 (d1f1d19) x86_64 x86_64 x86_64 GNU/Linux`).

Zygmunt Krynicki (zyga) on 2019-03-22
Changed in snapd:
status: New → Triaged
importance: Undecided → High
assignee: nobody → Zygmunt Krynicki (zyga)
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers