On Thu, 24 Jul 2025 at 14:22:08 +0100, Simon McVittie wrote:
In the "journalctl -f" output, I see
this AppArmor denial (uid 0 or adm membership required):
Jul 24 12:27:49 espresso kernel: audit: type=1400 audit(1753356469.641:148): apparmor="DENIED" operation="exec" class="file"
profile="/usr/bin/evince" name="/usr/bin/papers-previewer" pid=12463 comm="gio-launch-desk" requested_mask="x"
denied_mask="x" fsuid=1000 ouid=0
A possible patch:
----8<----
--- debian/apparmor-profile 2025-07-17 14:27:11.713382824 +0100
+++ /etc/apparmor.d/usr.bin.evince 2025-07-24 14:23:39.877301150 +0100
@@ -63,6 +63,7 @@
/usr/bin/evince rmPx,
/usr/bin/evince-previewer Px,
+ /usr/bin/papers-previewer Pix,
/usr/bin/yelp Cx -> sanitized_helper,
/usr/bin/bug-buddy px,
# 'Show Containing Folder' (LP: #1022962)
---->8----
smcv