[Bug 1089629] [NEW] lxc-attach must switch to container's apparmor profile

Serge Hallyn 1089629 at bugs.launchpad.net
Wed Dec 12 21:01:40 UTC 2012


Public bug reported:

Otherwise programs executed from the container's fs and in its
namespaces are able to bypass apparmor.  For instance to write under
/proc/sys/.

** Affects: lxc (Ubuntu)
     Importance: High
         Status: Triaged

** Changed in: lxc (Ubuntu)
   Importance: Undecided => High

** Changed in: lxc (Ubuntu)
       Status: New => Triaged

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to lxc in Ubuntu.
https://bugs.launchpad.net/bugs/1089629

Title:
  lxc-attach must switch to container's apparmor profile

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1089629/+subscriptions



More information about the Ubuntu-server-bugs mailing list