[apparmor] [PATCH v6.1] apparmor: fix unprivileged local user can do privileged policy management

Keerthana Kalyanasundaram keerthana.kalyanasundaram at broadcom.com
Thu Apr 2 08:03:53 UTC 2026


On Thu, Apr 2, 2026 at 11:31 AM Greg KH <gregkh at linuxfoundation.org> wrote:

> On Thu, Apr 02, 2026 at 05:47:00AM +0000, Keerthana K wrote:
> > From: John Johansen <john.johansen at canonical.com>
> >
> > commit 6601e13e82841879406bf9f369032656f441a425 upstream.
>
> <snip>
>
> Does your group/company/whatever actually use apparmor?  If so, this
> isn't the only commit that needs to be backported.  I'm waiting on a
> "correct" set of 6.1.y patches from John before applying all of them to
> 6.1.y and then I can take the patch series that he gave me for 5.10.y
> and 5.15.y and will queue them up.
>
> So thanks for this backport, but it's not going to help resolve all of
> the recent fixes that went in as part of this series by just applying
> one of them.
>
> Thanks for the update, Greg. We will wait for John to queue and apply the
complete series of patches to the stable branches.

 thanks,
>
> greg k-h
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/apparmor/attachments/20260402/931d2d29/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 5459 bytes
Desc: S/MIME Cryptographic Signature
URL: <https://lists.ubuntu.com/archives/apparmor/attachments/20260402/931d2d29/attachment-0001.bin>


More information about the AppArmor mailing list