Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 907590 (CVE-2016-1585)

Summary: <sec-policy/apparmor-profiles-3.0.10, <sys-apps/apparmor-3.0.10, <sys-apps/apparmor-utils-3.0.10, <sys-libs/libapparmor-3.0.10: Incorrect policy compilation
Product: Gentoo Security Reporter: Sam James <sam>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: IN_PROGRESS ---    
Severity: minor CC: hardened, kensington
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
See Also: https://gitlab.com/apparmor/apparmor/-/merge_requests/333
https://gitlab.com/apparmor/apparmor/-/merge_requests/1029
Whiteboard: B3 [glsa? cleanup]
Package list:
Runtime testing required: ---
Bug Depends on: 876965, 900867, 909207    
Bug Blocks:    

Description Sam James archtester Gentoo Infrastructure gentoo-dev Security 2023-06-01 05:13:03 UTC
From https://ubuntu.com/security/CVE-2016-1585:
"In all versions of AppArmor mount rules are accidentally widened when compiled."

Spotted at https://gitlab.com/apparmor/apparmor/-/releases/v3.0.10#important-note.
Comment 1 John Helmert III archtester Gentoo Infrastructure gentoo-dev Security 2023-08-02 05:28:43 UTC
Please cleanup