Activity log for bug #388422

Date Who What changed Old value New value Message
2009-06-17 12:17:39 Jamie Strandboge bug added bug
2009-06-17 12:18:05 Jamie Strandboge libvirt (Ubuntu): importance Undecided Wishlist
2009-06-17 12:18:05 Jamie Strandboge libvirt (Ubuntu): status New Triaged
2009-06-17 12:18:05 Jamie Strandboge libvirt (Ubuntu): milestone karmic-alpha-6
2009-06-17 12:18:05 Jamie Strandboge libvirt (Ubuntu): assignee Jamie Strandboge (jdstrand)
2009-06-17 12:49:12 Jamie Strandboge description Virtual machines started by libvirt run unconfined. If there is a bug in the hypervisor a guest could potentially attack other guests or the host. Providing an AppArmor profile would help protect against this. As of libvirt 0.6.1, sVirt has been merged and contains all the necessary hooks through a plugin architecture to confine a virtual machine using SELinux. Providing an AppArmor plugin would help increase security and contain virtual machines in Ubuntu. See http://fedoraproject.org/wiki/Features/SVirt_Mandatory_Access_Control for details. Virtual machines started by libvirt run unconfined. If there is a bug in the hypervisor a guest could potentially attack other guests or the host. Providing an AppArmor profile would help protect against this. As of libvirt 0.6.1, sVirt has been merged and contains all the necessary hooks through a plugin architecture to confine a virtual machine using SELinux. Providing an AppArmor plugin would help increase security and contain virtual machines in Ubuntu. See https://wiki.ubuntu.com/SecurityTeam/Specifications/AppArmorLibvirtProfile and http://fedoraproject.org/wiki/Features/SVirt_Mandatory_Access_Control for details.
2009-06-22 19:50:52 Jamie Strandboge libvirt (Ubuntu): status Triaged In Progress
2009-08-26 04:25:07 Launchpad Janitor libvirt (Ubuntu): status In Progress Fix Released
2009-09-03 16:29:06 Launchpad Janitor branch linked lp:ubuntu/karmic/libvirt