SELinux is preventing /usr/lib/cups/backend/hp (hplip_t) "read write" to socket:[41030] (cupsd_t).

Antonio Olivares olivares14031 at yahoo.com
Tue Sep 25 14:02:03 UTC 2007


Thanks for fixing the other issues :)

Now this one started as of today :(


Summary
    SELinux is preventing /usr/lib/cups/backend/hp (hplip_t) "read write" to
    socket:[41030] (cupsd_t).

Detailed Description
    SELinux denied access requested by /usr/lib/cups/backend/hp. It is not
    expected that this access is required by /usr/lib/cups/backend/hp and this
    access may signal an intrusion attempt. It is also possible that the
    specific version or configuration of the application is causing it to
    require additional access.

Allowing Access
    You can generate a local policy module to allow this access - see
    http://fedora.redhat.com/docs/selinux-faq-fc5/#id2961385 Or you can disable
    SELinux protection altogether. Disabling SELinux protection is not
    recommended. Please file a http://bugzilla.redhat.com/bugzilla/enter_bug.cgi
    against this package.

Additional Information        

Source Context                system_u:system_r:hplip_t:SystemLow-SystemHigh
Target Context                system_u:system_r:cupsd_t:SystemLow-SystemHigh
Target Objects                socket:[41030] [ unix_stream_socket ]
Affected RPM Packages         hplip-2.7.7-4.fc8 [application]
Policy RPM                    selinux-policy-3.0.8-11.fc8
Selinux Enabled               True
Policy Type                   targeted
MLS Enabled                   True
Enforcing Mode                Enforcing
Plugin Name                   plugins.catchall
Host Name                     localhost
Platform                      Linux localhost 2.6.23-0.202.rc8.fc8 #1 SMP Mon
                              Sep 24 22:09:05 EDT 2007 i686 athlon
Alert Count                   1
First Seen                    Tue 25 Sep 2007 08:54:39 AM CDT
Last Seen                     Tue 25 Sep 2007 08:54:39 AM CDT
Local ID                      7cbc1a88-cda1-4ff4-b13b-218173d9ae7f
Line Numbers                  

Raw Audit Messages            

avc: denied { read, write } for comm=hp dev=sockfs egid=7 euid=4
exe=/usr/lib/cups/backend/hp exit=0 fsgid=7 fsuid=4 gid=7 items=0
path=socket:[41030] pid=3214 scontext=system_u:system_r:hplip_t:s0-s0:c0.c1023
sgid=7 subj=system_u:system_r:hplip_t:s0-s0:c0.c1023 suid=4
tclass=unix_stream_socket tcontext=system_u:system_r:cupsd_t:s0-s0:c0.c1023
tty=(none) uid=4


Thanks,

Antonio 




       
____________________________________________________________________________________
Pinpoint customers who are looking for what you sell. 
http://searchmarketing.yahoo.com/




More information about the test mailing list