Bug#876333: thunderbird: AppArmor profile allows mmap executables from user writable directories

2017-10-28 Thread Carsten Schoenert
Control: tags -1 + pending Control: tags 855346 + pending Hi intrigeri, On Fri, Oct 27, 2017 at 11:37:33AM +0200, intrigeri wrote: > Control: tag -1 + fixed-upstream > > Thanks to Vincas this was fixed upstream at the same time as #855346: >

Bug#876333: thunderbird: AppArmor profile allows mmap executables from user writable directories

2017-10-27 Thread intrigeri
Control: tag -1 + fixed-upstream Thanks to Vincas this was fixed upstream at the same time as #855346: https://git.launchpad.net/apparmor-profiles/tree/ubuntu/17.10/usr.bin.thunderbird Carsten, could you please pull this updated profile? Cheers, -- intrigeri

Bug#876333: thunderbird: AppArmor profile allows mmap executables from user writable directories

2017-10-25 Thread Vincas Dargis
I just removed those 2 lines and ran some tests (calendar, enigmail, etc) and saw no denials. Do you plan to fix this as part of your MR upstream for #855346? Cheers, I totally forgot bout this bug, I guess I could push this in same MR.

Bug#876333: thunderbird: AppArmor profile allows mmap executables from user writable directories

2017-10-25 Thread intrigeri
Hi Vincas & others, Simon Deziel: > On 2017-09-21 02:46 AM, Vincas Dargis wrote: >> /etc/apparmor.d/usr.bin.thunderbird has these lines: >> >> owner /tmp/** m, >> owner /var/tmp/** m, >> >> Is this really necesarry? If Thunderbir actually tries to mmap files with >> executable flags, I believe

Bug#876333: thunderbird: AppArmor profile allows mmap executables from user writable directories

2017-09-21 Thread Simon Deziel
On 2017-09-21 02:46 AM, Vincas Dargis wrote: > /etc/apparmor.d/usr.bin.thunderbird has these lines: > > owner /tmp/** m, > owner /var/tmp/** m, > > Is this really necesarry? If Thunderbir actually tries to mmap files with > executable flags, I believe it should be reported as a bug upstream. >

Bug#876333: thunderbird: AppArmor profile allows mmap executables from user writable directories

2017-09-21 Thread Vincas Dargis
Package: thunderbird Version: 1:52.3.0-4~deb8u2 Severity: normal Tags: upstream Dear Maintainer, /etc/apparmor.d/usr.bin.thunderbird has these lines: owner /tmp/** m, owner /var/tmp/** m, Is this really necesarry? If Thunderbir actually tries to mmap files with executable flags, I believe it