Focal 5.15 kernel apparmor mismatch missing snap_validate_preseed functionality in livecd-rootfs
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
livecd-rootfs (Ubuntu) |
New
|
Undecided
|
Unassigned | ||
Focal |
Fix Committed
|
Undecided
|
Unassigned |
Bug Description
kernel bug
https:/
introduced an apparmor change to the 5.15. This rolled down to the Focal HWE 5.15 kernel, causing failures to properly snap seed
The original functionality was added into ubuntu/master and ubuntu/jammy with this bug:
https:/
which happened during the HWE roll to the 5.19 kernel. There was an assumption that a breaking change like this would not affect Focal, as rolls were done. However, 2045384 shows that this is not necessarily true.
To fix 2045384, a backport to focal of the functionality in snap_validate_seed allowing matching on kernel version, and the creation of kernel specific directories is required
[ Impact ]
Boot will be slowed by ~200ms until this is resolved in livecd-rootfs
[ Test Plan ]
* for focal build any cloud image with preseeded snaps with HWE 5.15 kernel
* boot
* run `snap debug seeding`
* assert the test described above passes
[ Where problems could occur ]
* Similar patches already exist for later releases 6.2, 6.5 kernel etc. and have been used on other private customer kernels and all kernels released after 22.04, so there is already a good track record for this patchset and it shouldn't create any issues.
[ Other Info ]
* This is a time-sensitive issue for a paying customer
Related branches
- Catherine Redfield (community): Approve
- John Chittum (community): Approve
- Canonical Foundations Team: Pending requested
-
Diff: 12 lines (+2/-0)1 file modifieddebian/changelog (+2/-0)
description: | updated |
Patch for updating the changelog to cover the added function as well as the new apparmor directory