central apparmor profile for net-tools causes hostname -F to fail
Bug #2133738 reported by
Lena Voytek
This bug affects 1 person
| Affects | Status | Importance | Assigned to | Milestone | |
|---|---|---|---|---|---|
| AppArmor |
New
|
Unknown
|
|||
| apparmor (Ubuntu) |
Triaged
|
Low
|
Lena Voytek | ||
| net-tools (Ubuntu) |
Won't Fix
|
Undecided
|
Lena Voytek | ||
Bug Description
hostname -F requires an arbitrary file read in order to grab a hostname from file contents. Currently only a few specific files can be read, including /etc/hostname.
This currently affects the hostname-set-get autopkgtest for net-tools
| description: | updated |
| tags: | added: server-todo |
| Changed in apparmor (Ubuntu): | |
| assignee: | nobody → Lena Voytek (lvoytek) |
| Changed in net-tools (Ubuntu): | |
| assignee: | nobody → Lena Voytek (lvoytek) |
| tags: | added: sec-8110 |
| affects: | net-tools → apparmor |
| Changed in apparmor: | |
| status: | Unknown → New |
To post a comment you must log in.

This did not end up blocking the migration of net-tools in Ubuntu, so the priority is lower. This should still be fixed in some way for hostname -F to work at all though