Verification success for Noble following the SRU test plan:
Without `-proposed`:
```
root@noble-vm:~# apt-cache policy auditd
auditd:
Installed: 1:3.1.2-2.1build1.1
Candidate: 1:3.1.2-2.1build1.1
Version table:
*** 1:3.1.2-2.1build1.1 500
500 http://archive.ubuntu.com/ubuntu noble-updates/main amd64 Packages
100 /var/lib/dpkg/status
1:3.1.2-2.1build1 500
500 http://archive.ubuntu.com/ubuntu noble/main amd64 Packages
root@noble-vm:~# aa-exec --profile=lsb_release bash
bash: /etc/bash.bashrc: Permission denied
bash: /root/.bashrc: Permission denied
bash-5.2#
exit
root@noble-vm:~# ausearch --message AVC
<no matches>
root@noble-vm:~#
```
With `-proposed`:
```
root@noble-vm:~# apt-cache policy auditd
auditd:
Installed: 1:3.1.2-2.1ubuntu0.1
Candidate: 1:3.1.2-2.1ubuntu0.1
Version table:
*** 1:3.1.2-2.1ubuntu0.1 100
100 http://archive.ubuntu.com/ubuntu noble-proposed/main amd64 Packages
100 /var/lib/dpkg/status
1:3.1.2-2.1build1.1 500
500 http://archive.ubuntu.com/ubuntu noble-updates/main amd64 Packages
1:3.1.2-2.1build1 500
500 http://archive.ubuntu.com/ubuntu noble/main amd64 Packages
root@noble-vm:~# aa-exec --profile=lsb_release bash
bash: /etc/bash.bashrc: Permission denied
bash: /root/.bashrc: Permission denied
bash-5.2#
exit
root@noble-vm:~# ausearch --message AVC
----
time->Tue Aug 25 15:07:57 2026
type=AVC msg=audit(1787670477.581:26): apparmor="STATUS"
operation="profile_load" profile="unconfined" name="goldendict" pid=398
comm="apparmor_parser"
----
...
----
time->Tue Aug 25 17:24:29 2026
type=PROCTITLE msg=audit(1787678669.327:294): proctitle="bash"
type=SYSCALL msg=audit(1787678669.327:294): arch=c000003e syscall=257
success=no exit=-13 a0=ffffff9c a1=5e5468cdad00 a2=0 a3=0 items=0 ppid=674
pid=1511 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0
fsgid=0 tty=pts0 ses=4294967295 comm="bash" exe="/usr/bin/bash"
subj=lsb_release key=(null)
type=AVC msg=audit(1787678669.327:294): apparmor="DENIED" operation="open"
class="file" profile="lsb_release" name="/etc/inputrc" pid=1511 comm="bash"
requested_mask="r" denied_mask="r" fsuid=0 ouid=0
root@noble-vm:~#
```
** Tags removed: verification-needed-noble
** Tags added: verification-done-noble
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1117804
Title:
ausearch doesn't show AppArmor denial messages
To manage notifications about this bug go to:
https://bugs.launchpad.net/apparmor/+bug/1117804/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs