[Bug 1067473] [NEW] [quantal] dhclient sometimes runs unconfined

Jamie Strandboge jamie at ubuntu.com
Tue Oct 16 18:40:11 UTC 2012


Public bug reported:

I was doing install audits of 12.10 and noticed this with 'sudo aa-status':
1 processes are unconfined but have a profile defined.
   /sbin/dhclient (<pid removed>)

This is a regression over 12.04 and needs to be fixed in an SRU. I don't know what introduced the regression, but it is very likely a race condition. I saw it on 12.10 server but not on 12.10 desktop. It seems to be at least somewhat reproducible (rebooting once showed it is still affected) with an amd64 VM with 1024M of ram with installation defaults (except home directory is encrypted) and the following tasks installed:
Basic Ubuntu server
OpenSSH server
DNS server 
LAMP server
Mail server
PostgreSQL database
Print server
Samba file server
Tomcat Java server
Virtual Machine host

** Affects: isc-dhcp (Ubuntu)
     Importance: High
         Status: New

** Affects: isc-dhcp (Ubuntu Quantal)
     Importance: High
         Status: New

** Affects: isc-dhcp (Ubuntu R-series)
     Importance: Undecided
         Status: New


** Tags: apparmor regression-release

** Also affects: isc-dhcp (Ubuntu Quantal)
   Importance: High
       Status: New

** Also affects: isc-dhcp (Ubuntu R-series)
   Importance: Undecided
       Status: New

** Tags added: regression-release

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to isc-dhcp in Ubuntu.
https://bugs.launchpad.net/bugs/1067473

Title:
  [quantal] dhclient sometimes runs unconfined

Status in “isc-dhcp” package in Ubuntu:
  New
Status in “isc-dhcp” source package in Quantal:
  New
Status in “isc-dhcp” source package in r-series:
  New

Bug description:
  I was doing install audits of 12.10 and noticed this with 'sudo aa-status':
  1 processes are unconfined but have a profile defined.
     /sbin/dhclient (<pid removed>)

  This is a regression over 12.04 and needs to be fixed in an SRU. I don't know what introduced the regression, but it is very likely a race condition. I saw it on 12.10 server but not on 12.10 desktop. It seems to be at least somewhat reproducible (rebooting once showed it is still affected) with an amd64 VM with 1024M of ram with installation defaults (except home directory is encrypted) and the following tasks installed:
  Basic Ubuntu server
  OpenSSH server
  DNS server 
  LAMP server
  Mail server
  PostgreSQL database
  Print server
  Samba file server
  Tomcat Java server
  Virtual Machine host

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/isc-dhcp/+bug/1067473/+subscriptions




More information about the foundations-bugs mailing list