chromium needs to be able to execute its own sandbox binary to function
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
apparmor (Ubuntu) |
Confirmed
|
Undecided
|
Unassigned |
Bug Description
[1535661.818433] type=1400 audit(139090075
When /usr/bin/
ProblemType: Bug
DistroRelease: Ubuntu 13.10
Package: apparmor-profiles 2.8.0-0ubuntu31.1
ProcVersionSign
Uname: Linux 3.11.0-15-generic x86_64
ApportVersion: 2.12.5-0ubuntu2.2
Architecture: amd64
Date: Tue Jan 28 09:32:02 2014
EcryptfsInUse: Yes
MarkForUpload: True
PackageArchitec
ProcKernelCmdline: root=UUID=
SourcePackage: apparmor
Syslog:
UpgradeStatus: Upgraded to saucy on 2013-09-17 (132 days ago)
modified.
mtime.conffile.
I found this in the profile:
# Allow transitions to ourself and our sandbox lib/chromium- browser/ chromium- browser ix, lib/chromium- browser/ chromium- browser- sandbox cx -> chromium_ browser_ sandbox,
/usr/
/usr/
This seems to have become insufficient somehow. In the chromium_ browser_ sandbox profile:
/usr/ lib/chromium- browser/ chromium- browser- sandbox r,
So is it just that a sandbox process can't start another one?