[Bug 1560149] Re: missing seccomp whitelist for qemu-kvm
Mathew Hodson
mathew.hodson at gmail.com
Tue Apr 12 02:20:05 UTC 2016
** No longer affects: libvirt (Ubuntu)
** Changed in: qemu (Ubuntu)
Importance: Undecided => High
--
You received this bug notification because you are a member of Ubuntu
Sponsors Team, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/1560149
Title:
missing seccomp whitelist for qemu-kvm
Status in qemu package in Ubuntu:
Fix Committed
Bug description:
Steps to reproduce:
1) set "seccomp_sandbox = 1" in /etc/libvirt/qemu.conf
2) restart libvirt-bin
3) create a guest using the attached .xml file
4) start the guest
Current behavior: the guest will remain in the "paused" state and fail
to start because of this:
audit: type=1326 audit(1458582324.294:87): auid=4294967295 uid=114
gid=123 ses=4294967295 pid=17695 comm="qemu-system-x86" exe="/usr/bin
/qemu-system-x86_64" sig=31 arch=c000003e syscall=99 compat=0
ip=0x7fc47c3557d7 code=0x0
Expected behavior: the guest would start normally
ProblemType: Bug
DistroRelease: Ubuntu 16.04
Package: libvirt-bin 1.3.1-1ubuntu6
ProcVersionSignature: Ubuntu 4.4.0-15.31-generic 4.4.6
Uname: Linux 4.4.0-15-generic x86_64
NonfreeKernelModules: zfs zunicode zcommon znvpair zavl
ApportVersion: 2.20-0ubuntu3
Architecture: amd64
CurrentDesktop: Unity
Date: Mon Mar 21 13:40:41 2016
KernLog:
SourcePackage: libvirt
UpgradeStatus: No upgrade log present (probably fresh install)
modified.conffile..etc.libvirt.qemu.conf: [inaccessible: [Errno 13] Permission denied: '/etc/libvirt/qemu.conf']
modified.conffile..etc.libvirt.qemu.networks.default.xml: [deleted]
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1560149/+subscriptions
More information about the Ubuntu-sponsors
mailing list