Skip to content

Commit

Permalink
Allow plymouthd read/write X server miscellaneous devices
Browse files Browse the repository at this point in the history
The commit addresses the following AVC denial:

AVC avc: denied { read write } for pid=995 comm="plymouthd" name="card1" dev="devtmpfs" ino=469 scontext=system_u:system_r:plymouthd_t:s0 tcontext=system_u:object_r:xserver_misc_device_t:s0 tclass=chr_file permissive=0

Resolves: rhbz#2101151
  • Loading branch information
zpytela committed Jun 8, 2023
1 parent b35e471 commit f1e924f
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions policy/modules/contrib/plymouthd.te
Original file line number Diff line number Diff line change
Expand Up @@ -67,6 +67,7 @@ dev_read_sysfs(plymouthd_t)
dev_read_framebuffer(plymouthd_t)
dev_write_framebuffer(plymouthd_t)
dev_map_framebuffer(plymouthd_t)
dev_rw_xserver_misc(plymouthd_t)

domain_use_interactive_fds(plymouthd_t)

Expand Down

0 comments on commit f1e924f

Please sign in to comment.