From 577aeb8fa36b54d95f5b68b6c1533b170105e6ed Mon Sep 17 00:00:00 2001 From: Vincas Dargis Date: Sat, 26 Jan 2019 16:13:25 +0200 Subject: [PATCH] fix(apparmor): Fix hunspell access AppArmor denies access to hunspell files: ``` type=AVC msg=audit(1548511779.241:1773): apparmor="DENIED" operation="open" profile="qtox" name="/usr/share/hunspell/lt_LT.aff" pid=9833 comm="qtox" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0 type=AVC msg=audit(1548511779.241:1774): apparmor="DENIED" operation="open" profile="qtox" name="/usr/share/hunspell/lt_LT.dic" pid=9833 comm="qtox" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0 ``` Add rule to allow reading hunspell dictionaries. --- security/apparmor/2.12.1/usr.bin.qtox | 1 + security/apparmor/2.13.2/usr.bin.qtox | 1 + 2 files changed, 2 insertions(+) diff --git a/security/apparmor/2.12.1/usr.bin.qtox b/security/apparmor/2.12.1/usr.bin.qtox index a4020286b..dfaffd478 100644 --- a/security/apparmor/2.12.1/usr.bin.qtox +++ b/security/apparmor/2.12.1/usr.bin.qtox @@ -50,6 +50,7 @@ profile qtox /usr{,/local}/bin/qtox { # System files + /usr/share/hunspell/* r, @{qtox_additional_rw_dirs}/ r, @{qtox_additional_rw_dirs}/** rw, diff --git a/security/apparmor/2.13.2/usr.bin.qtox b/security/apparmor/2.13.2/usr.bin.qtox index 096297a27..13bb1d278 100644 --- a/security/apparmor/2.13.2/usr.bin.qtox +++ b/security/apparmor/2.13.2/usr.bin.qtox @@ -56,6 +56,7 @@ profile qtox /usr{,/local}/bin/qtox { # System files + /usr/share/hunspell/* r, @{qtox_additional_rw_dirs}/ r, @{qtox_additional_rw_dirs}/** rw,