[PATCH 0/8] Further Debian/Ubuntu Apparmor Delta

Christian Ehrhardt posted 8 patches 3 years, 8 months ago
Test syntax-check failed
Patches applied successfully (tree, apply log)
git fetch https://github.com/patchew-project/libvirt tags/patchew/20200803123346.3987430-1-christian.ehrhardt@canonical.com
There is a newer version of this series
src/security/apparmor/libvirt-qemu                      | 9 +++++++++
src/security/apparmor/usr.lib.libvirt.virt-aa-helper.in | 5 +++++
src/security/apparmor/usr.sbin.libvirtd.in              | 1 +
3 files changed, 15 insertions(+)
[PATCH 0/8] Further Debian/Ubuntu Apparmor Delta
Posted by Christian Ehrhardt 3 years, 8 months ago
Hi,
I don't even remember which number of submissions that is #5 maybe?
Anyway - I'm hereby continuing to bring Debian and Ubuntu apparmor
Delta into upstream libvirt.

I have kept out all patches that are either Distro-specific or we ran
into trouble/discussions in the past. But there are enough left for a
new submission.

I have kept the most-original (read the earliest - as some patches
appeared in Ubuntu and later with a different Author in Debian) patch
author that I could find intact and git-send-email should auto-cc them.

I added some more bug links and descriptions so one can understand the
case a commit tries to fix without knowing too much context.

Christian Ehrhardt (2):
  apparmor: allow virt-aa-helper nameservices
  apparmor: let qemu load old shared objects after upgrades

Jamie Strandboge (1):
  apparmor: read only access to overcommit_memory

Sam Hartman (1):
  apparmor: allow default pki path

Serge Hallyn (1):
  apparmor: allow virt-aa-helper to read openvswitch sockets

Stefan Bader (3):
  apparmor: allow libvirtd to call pygrub
  apparmor: qemu access to @{PROC}/*/auxv for hw_cap
  apparmor: allow virt-aa-helper to read from tmp

 src/security/apparmor/libvirt-qemu                      | 9 +++++++++
 src/security/apparmor/usr.lib.libvirt.virt-aa-helper.in | 5 +++++
 src/security/apparmor/usr.sbin.libvirtd.in              | 1 +
 3 files changed, 15 insertions(+)

-- 
2.27.0