Skip to content

Fedora 33: "Generating initramfs" causes AVC denial and SELINUX_ERR #2343

Closed
@Mershl

Description

@Mershl

Host system details
selinux-policy-3.14.6-30.fc33.noarch
rpm-ostree-2020.8-1.fc33.x86_64

Seen Behavior

rpm-ostree override replace kernel*.rpm
...
Generating initramfs...    // AVC denial and SELINUX_ERR reported
ausearch -i -m avc,user_avc,selinux_err,user_selinux_err:
----
type=AVC msg=audit(29.11.2020 23:35:58.798:534) : avc:  denied  { nnp_transition nosuid_transition } for  pid=42690 comm=dracut scontext=system_u:system_r:install_t:s0 tcontext=system_u:system_r:setfiles_mac_t:s0 tclass=process2 permissive=0 
----
type=SELINUX_ERR msg=audit(29.11.2020 23:35:58.798:535) : op=security_bounded_transition seresult=denied oldcontext=system_u:system_r:install_t:s0 newcontext=system_u:system_r:setfiles_mac_t:s0

Fedora Bugzilla ticket
https://bugzilla.redhat.com/show_bug.cgi?id=1902522

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions