[Bug 1197047] Re: SDK applications create /tmp/*.sci files
Launchpad Bug Tracker
1197047 at bugs.launchpad.net
Wed Sep 4 17:14:12 UTC 2013
This bug was fixed in the package click - 0.4.3
---------------
click (0.4.3) saucy; urgency=low
* Add support for multiple installation root directories, configured in
/etc/click/databases/. Define /usr/share/click/preinstalled,
/custom/click, and /opt/click.ubuntu.com by default.
* Add --all-users option to "click install" and "click register": this
registers the installed package for a special pseudo-user "@all", making
it visible to all users.
* Add "click hook install-user", which runs all user-level hooks for all
packages for a given user. This is useful at session startup to catch
up with packages that may have been preinstalled and registered for all
users.
* Run "click hook install-user" on session startup from an Upstart user
job.
* Avoid calling "click desktophook" if
/usr/share/click/hooks/upstart-app-launch-desktop.hook exists.
* Force umask to a sane value when dropping privileges (022 for clickpkg,
current-umask | 002 for other users; LP: #1215480).
* Use aa-exec-click rather than aa-exec in .desktop files generated by
"click desktophook" (LP: #1197047).
-- Colin Watson <cjwatson at ubuntu.com> Wed, 04 Sep 2013 17:01:58 +0100
** Changed in: click (Ubuntu Saucy)
Status: Fix Committed => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to click in Ubuntu.
https://bugs.launchpad.net/bugs/1197047
Title:
SDK applications create /tmp/*.sci files
Status in Ubuntu UI Toolkit:
Invalid
Status in “apparmor-easyprof-ubuntu” package in Ubuntu:
Fix Released
Status in “click” package in Ubuntu:
Fix Released
Status in “upstart-app-launch” package in Ubuntu:
Triaged
Status in “apparmor-easyprof-ubuntu” source package in Saucy:
Fix Released
Status in “click” source package in Saucy:
Fix Released
Status in “upstart-app-launch” source package in Saucy:
Triaged
Bug description:
Launching an Ubuntu SDK (QML) application under application confinement results in the following denial:
apparmor="DENIED" operation="mknod" parent=8803 profile="ubuntu-calculator-app" name="/tmp/TJ8938.sci" pid=8938 comm="qmlscene" requested_mask="c" denied_mask="c" fsuid=32011 ouid=32011
We currently have the following AppArmor rule to deal with this:
owner /tmp/*.sci rwk,
But this rule is too lenient and this path needs to be made
application specific. Specifically: $XDG_RUNTIME_DIR/<app id> where
'<app id>' will ultimately be the reverse domain name with Click
packages (see bug #1197037 for details on '<app id>').
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu-ui-toolkit/+bug/1197047/+subscriptions
More information about the foundations-bugs
mailing list