Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 635384 - selinux: portage_compile_domain() needs to grant portage_tmpfs_t:file map
Summary: selinux: portage_compile_domain() needs to grant portage_tmpfs_t:file map
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: SELinux (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: SE Linux Bugs
URL: https://github.com/atlaua/hardened-re...
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2017-10-25 00:48 UTC by Mira Ressel
Modified: 2017-11-15 21:38 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Mira Ressel 2017-10-25 00:48:45 UTC
The permission mentioned in the title is needed for the firefox build system.

I can't attach patches right now (firefox bug), so please refer to the URL or to the aranea/portage-tmpfs branch in my policy repo.
Comment 1 Larry the Git Cow gentoo-dev 2017-10-29 20:42:56 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/proj/hardened-refpolicy.git/commit/?id=34a5c9f83485ba36ea21940a6ecc3932636f51f3

commit 34a5c9f83485ba36ea21940a6ecc3932636f51f3
Author:     Luis Ressel <aranea@aixah.de>
AuthorDate: 2017-10-25 00:37:05 +0000
Commit:     Jason Zaman <jason@perfinion.com>
CommitDate: 2017-10-29 13:57:28 +0000

    portage: Allow portage compile domains to map portage_tmpfs_t files
    
    This is required by a python script in the firefox build system.
    
    Bug: https://bugs.gentoo.org/635384

 policy/modules/contrib/portage.if | 1 +
 1 file changed, 1 insertion(+)}
Comment 2 Mira Ressel 2017-11-15 21:38:16 UTC
Fixed in 2.20170805-r3.