https://bugzilla.redhat.com/show_bug.cgi?id=1659905
Bug ID: 1659905 Summary: Incorrect SELinux label of fontconfig cache directory Product: Fedora Version: 29 Status: NEW Component: fontconfig Assignee: tagoh@redhat.com Reporter: maciek.borzecki@gmail.com QA Contact: extras-qa@fedoraproject.org CC: ajax@redhat.com, fonts-bugs@lists.fedoraproject.org, i18n-bugs@lists.fedoraproject.org, john.j5live@gmail.com, mclasen@redhat.com, pnemade@redhat.com, rhughes@redhat.com, rstrode@redhat.com, sandmann@redhat.com, tagoh@redhat.com Target Milestone: --- Classification: Fedora
Description of problem:
The /usr/lib/fontconfig/cache directly is labeled as lib_t, but should be labeled as fonts_cache_t, same as /var/cache/fontconfig was before.
[guest@localhost ~]$ ls -laZ /usr/lib/fontconfig/cache/ total 40 drwxr-xr-x. 2 root root system_u:object_r:lib_t:s0 4096 Dec 17 07:35 . drwxr-xr-x. 3 root root system_u:object_r:lib_t:s0 4096 Dec 17 07:35 .. -rw-r--r--. 1 root root unconfined_u:object_r:lib_t:s0 136 Dec 17 07:35 14f2600e-0a03-4bcf-ad84-39369899c767-le64.cache-7 -rw-r--r--. 1 root root unconfined_u:object_r:lib_t:s0 20904 Dec 17 07:35 6d2e07ad-8b0a-44cf-ad7a-4c0d0bc787a2-le64.cache-7 -rw-r--r--. 1 root root unconfined_u:object_r:lib_t:s0 200 Dec 17 07:35 CACHEDIR.TAG
Either a missing piece of the core policy or /usr/lib/fontconfig/cache ought to be created with proper labeling.
Version-Release number of selected component (if applicable):
fontconfig-2.13.1-3.fc29.x86_64 selinux-policy-3.14.2-44.fc29.noarch selinux-policy-devel-3.14.2-44.fc29.noarch selinux-policy-targeted-3.14.2-44.fc29.noarch
How reproducible: always