RPM Community Forums

Mailing List Message of <rpm-devel>

SELinux & -lrpmmisc text relocations

From: Jeff Johnson <n3npq@mac.com>
Date: Sun 26 Oct 2008 - 20:17:21 CET
Message-id: <45FA561A-0A4F-4EE7-B1E1-4F83EB5CCD08@mac.com>

On Oct 26, 2008, at 2:46 PM, Jeff Johnson wrote:

> This change alone is likely sufficient to justify releasing rpm-5.1.7.
>
> There are these other fixes pending soonishly too:
>    1) SELinux is still not right.

This warning is (at least) part of the remaining selinux problem in  
rpm-5.1.6+:

The sealert application attempted to load /usr/lib/librpmmisc-5.0.so  
which requires text relocation. This is a potential security problem.  
Most libraries do not need this permission. Libraries are sometimes  
coded incorrectly and request this permission. The SELinux Memory  
Protection Tests web page explains how to remove this requirement. You  
can configure SELinux temporarily to allow /usr/lib/librpmmisc-5.0.so  
to use relocation as a workaround, until the library is fixed. Please  
file a bug report against this package.

Isn't selinux funner?

73 de Jeff
Received on Sun Oct 26 20:17:25 2008
Driven by Jeff Johnson and the RPM project team.
Hosted by OpenPKG and Ralf S. Engelschall.
Powered by FreeBSD and OpenPKG.