* ubuntu/1.2: refinements to scopes policy
- use private-files-strict abstraction
- finetune client endpoint policy
- explicitly deny access to the zmq directory for the ubuntu-sdk and
ubuntu-webapp templates
- explicitly deny direct interaction with URL dispatcher to prevent data
leaks
- move ubuntu-scope-local-content template to 'pending' since there are
unresolved issues surrounding its interaction with URL dispatcher.
Adjust autopkgtests accordingly
* ubuntu/calendar: update for upcoming calendar management landing
* ubuntu/*/audio,video: add mediascanner2 DBus access (LP: #1303962)
* ubuntu/1.[12]/music_files_read: remove temporary access to
@{HOME}/.cache/mediascanner/ now that we have policy for mediascanner2
DBus access. Note: normally this would require the change in only the
latest policy, but this policy group has only been used by the music-app
and it is still unconfined
* ubuntu/1.1: also ship debug policy group for 1.1 policy and update
autopkgtests for this (LP: #1323233)
-- Jamie Strandboge <email address hidden> Fri, 06 Jun 2014 07:37:54 -0500
This bug was fixed in the package apparmor- easyprof- ubuntu - 1.2.4
--------------- easyprof- ubuntu (1.2.4) utopic; urgency=medium
apparmor-
* ubuntu/1.2: refinements to scopes policy files-strict abstraction scope-local- content template to 'pending' since there are */audio, video: add mediascanner2 DBus access (LP: #1303962) 1.[12]/ music_files_ read: remove temporary access to /.cache/ mediascanner/ now that we have policy for mediascanner2
- use private-
- finetune client endpoint policy
- explicitly deny access to the zmq directory for the ubuntu-sdk and
ubuntu-webapp templates
- explicitly deny direct interaction with URL dispatcher to prevent data
leaks
- move ubuntu-
unresolved issues surrounding its interaction with URL dispatcher.
Adjust autopkgtests accordingly
* ubuntu/calendar: update for upcoming calendar management landing
* ubuntu/
* ubuntu/
@{HOME}
DBus access. Note: normally this would require the change in only the
latest policy, but this policy group has only been used by the music-app
and it is still unconfined
* ubuntu/1.1: also ship debug policy group for 1.1 policy and update
autopkgtests for this (LP: #1323233)
-- Jamie Strandboge <email address hidden> Fri, 06 Jun 2014 07:37:54 -0500