Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 617682 - sys-apps/policycoreutils-2.6, app-admin/setools-4.1.0: semanage crashes
Summary: sys-apps/policycoreutils-2.6, app-admin/setools-4.1.0: semanage crashes
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: SELinux (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Jason Zaman
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2017-05-07 00:46 UTC by Mira Ressel
Modified: 2017-09-23 02:22 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments
Backtrace of crashing semanage (file_617682.txt,1.95 KB, text/plain)
2017-05-07 00:46 UTC, Mira Ressel
Details

Note You need to log in before you can comment on or make changes to this bug.
Description Mira Ressel 2017-05-07 00:46:37 UTC
Created attachment 471840 [details]
Backtrace of crashing semanage

On my system, semanage (e.g. semanage permissive -l) immediately crashes with the attached backtrace.

The involved packages (all of which I've already rebuilt, to no avail) are:
sys-apps/policycoreutils-2.6
app-admin/setools-4.1.0
sys-libs/libse{manage,linux,pol}-2.6
dev-python/sepolgen-2.6
dev-python/networkx-1.10-r1
dev-python/numpy-1.10.4
dev-lang/python-2.7.12 and -3.4.5 (identical backtrace with both)

I would've liked to try setools-9999, but it's currently broken (the remove-gui patch doesn't apply).

Any ideas? I can work around this issue for now, but it's really weird.
Comment 1 Mira Ressel 2017-05-07 00:56:56 UTC
I've also tried uprading networkx and numpy to the latest unstable versions; that didn't help either.
Comment 2 Mira Ressel 2017-05-08 16:03:09 UTC
Apparently semanage now requires the permission to execute semanage_tmp_t files. I've submitted a patch to refpolicy.
Comment 3 Jason Zaman gentoo-dev 2017-05-09 04:56:22 UTC
test-req so we remember to mark it on the next policy release
Comment 4 Jason Zaman gentoo-dev 2017-09-23 02:22:13 UTC
this is in the -r4 policy