Uploaded image for project: ' AGL Development'
  1. AGL Development
  2. SPEC-2492

lightmediascanner access denied through smack

XMLWordPrintable

      [  436.194834] audit: type=1006 audit(1555641655.809:174): pid=3375 uid=0 subj=System old-auid=4294967295 auid=200 tty=(none) old-ses=4294967295 ses=62 res=1
      [  436.668310] audit: type=1400 audit(1555641656.279:175): lsm=SMACK fn=smack_inode_permission action=denied subject=\"System\" object=\"_\" requested=wx pid=3391 comm=\"lightmediascann\" name=\"/\" dev=\"tmpfs\" ino=133
      [  436.687338] audit: type=1300 audit(1555641656.279:175): arch=40000028 syscall=39 per=800000 success=no exit=-13 a0=61ed88 a1=1ed a2=73f85900 a3=73f85900 items=0 ppid=3375 pid=3391 auid=200 uid=200 gid=200 euid=200 suid=200 fsuid=200 egid=200 sgid=200 fsgid=200 tty=(none) ses=62 comm=\"lightmediascann\" exe=\"/usr/bin/lightmediascannerd\" subj=System key=(null)
      [  436.720338] audit: type=1327 audit(1555641656.279:175): proctitle=2F7573722F62696E2F6C696768746D656469617363616E6E657264002D2D737461727475702D7363616E002D2D64622D706174683D2F746D702F3230302F6C696768746D656469617363616E6E6572642E6462002D2D6469726563746F72793D2F6D65646961002D2D6469726563746F72793D2F72756E2F706C6174666F726D
      [  436.751761] audit: type=1701 audit(1555641656.279:176): auid=200 uid=200 gid=200 ses=62 subj=System pid=3391 comm=\"lightmediascann\" exe=\"/usr/bin/lightmediascannerd\" sig=5 res=1
      [  437.341635] audit: type=1006 audit(1555641656.949:177): pid=3400 uid=0 subj=System old-auid=4294967295 auid=200 tty=(none) old-ses=4294967295 ses=63 res=1
      [  437.807542] audit: type=1400 audit(1555641657.419:178): lsm=SMACK fn=smack_inode_permission action=denied subject=\"System\" object=\"_\" requested=wx pid=3405 comm=\"lightmediascann\" name=\"/\" dev=\"tmpfs\" ino=133
      [  437.843578] audit: type=1300 audit(1555641657.419:178): arch=40000028 syscall=39 per=800000 success=no exit=-13 a0=2003d88 a1=1ed a2=e00cc00 a3=e00cc00 items=0 ppid=3400 pid=3405 auid=200 uid=200 gid=200 euid=200 suid=200 fsuid=200 egid=200 sgid=200 fsgid=200 tty=(none) ses=63 comm=\"lightmediascann\" exe=\"/usr/bin/lightmediascannerd\" subj=System key=(null)
      [  437.881367] audit: type=1327 audit(1555641657.419:178): proctitle=2F7573722F62696E2F6C696768746D656469617363616E6E657264002D2D737461727475702D7363616E002D2D64622D706174683D2F746D702F3230302F6C696768746D656469617363616E6E6572642E6462002D2D6469726563746F72793D2F6D65646961002D2D6469726563746F72793D2F72756E2F706C6174666F726D
      [  437.911662] audit: type=1701 audit(1555641657.419:179): auid=200 uid=200 gid=200 ses=63 subj=System pid=3405 comm=\"lightmediascann\" exe=\"/usr/bin/lightmediascannerd\" sig=5 res=1

       

      I'm adding mranostay initially, but we'll also need jobol-iot .

       

      I think we should at least get rid of the access to tmpfs and the kernel log messages.

        No reviews matched the request. Check your Options in the drop-down menu of this sections header.

            jobol-iot jose bollo
            jsmoeller Jan-Simon Moeller
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

              Created:
              Updated:
              Resolved: