Bug#959399: libreoffice-common: Using libreoffice results in many AppArmor "ALLOWED" log messages in kernel syslog
Package: libreoffice-common
Version: 1:6.1.5-3+deb10u5
Severity: normal
Using LibreOffice results in many AppArmor audit log messages marked as "ALLOWED".
These messages repeat many times during normal use of the app, resulting in
quite a bit of log spam.
Perhaps this is the result of the user's home directory being mounted in an alternate location?
A small sampling of messages (obfuscated):
May 1 17:19:49 host kernel: [ 9201.656675] audit: type=1400 audit(1588371589.713:822): apparmor="ALLOWED" operation="mknod" profile="libreoffice-soffice" name="/raid/home/user/.config/libreoffice/4/user/GpDXp7" pid=16453 comm="configmgrWriter" requested_mask="c" denied_mask="c" fsuid=1000 ouid=1000
May 1 17:19:49 host kernel: [ 9201.657039] audit: type=1400 audit(1588371589.713:823): apparmor="ALLOWED" operation="open" profile="libreoffice-soffice" name="/raid/home/user/.config/libreoffice/4/user/GpDXp7" pid=16453 comm="configmgrWriter" requested_mask="wrc" denied_mask="wrc" fsuid=1000 ouid=1000
May 1 17:19:49 host kernel: [ 9201.657107] audit: type=1400 audit(1588371589.717:824): apparmor="ALLOWED" operation="file_lock" profile="libreoffice-soffice" name="/raid/home/user/.config/libreoffice/4/user/GpDXp7" pid=16453 comm="configmgrWriter" requested_mask="wk" denied_mask="wk" fsuid=1000 ouid=1000
May 1 17:19:49 host kernel: [ 9201.670903] audit: type=1400 audit(1588371589.729:825): apparmor="ALLOWED" operation="rename_src" profile="libreoffice-soffice" name="/raid/home/user/.config/libreoffice/4/user/GpDXp7" pid=16453 comm="configmgrWriter" requested_mask="wrd" denied_mask="wrd" fsuid=1000 ouid=1000
May 1 17:19:49 host kernel: [ 9201.670926] audit: type=1400 audit(1588371589.729:826): apparmor="ALLOWED" operation="rename_dest" profile="libreoffice-soffice" name="/raid/home/user/.config/libreoffice/4/user/registrymodifications.xcu" pid=16453 comm="configmgrWriter" requested_mask="wc" denied_mask="wc" fsuid=1000 ouid=1000
-- System Information:
Debian Release: 10.3
APT prefers stable
APT policy: (500, 'stable')
Architecture: amd64 (x86_64)
Kernel: Linux 4.19.0-8-amd64 (SMP w/4 CPU cores)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), LANGUAGE= (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled
Versions of packages libreoffice-common depends on:
ii libnumbertext-data 1.0.5-1
ii libreoffice-style-colibre 1:6.1.5-3+deb10u5
ii libreoffice-style-tango 1:6.1.5-3+deb10u5
ii ure 6.1.5-3+deb10u5
Versions of packages libreoffice-common recommends:
ii apparmor 2.13.2-10
ii fonts-liberation2 2.00.5-1
ii libexttextcat-data 3.4.5-1
ii python3-uno 1:6.1.5-3+deb10u5
ii xdg-utils 1.1.3-1
Versions of packages libreoffice-common suggests:
ii libreoffice-style-colibre [libreoffice-style] 1:6.1.5-3+deb10u5
ii libreoffice-style-tango [libreoffice-style] 1:6.1.5-3+deb10u5
Versions of packages python3-uno depends on:
ii libc6 2.28-10
ii libgcc1 1:8.3.0-6
ii libpython3.7 3.7.3-2+deb10u1
ii libreoffice-core 1:6.1.5-3+deb10u5
ii libstdc++6 8.3.0-6
ii python3 3.7.3-1
ii python3.7 3.7.3-2+deb10u1
ii uno-libs3 6.1.5-3+deb10u5
ii ure 6.1.5-3+deb10u5
-- Configuration Files:
/etc/libreoffice/soffice.sh changed:
FILE_LOCKING=auto
OPENGL_SUPPORT=no
-- no debconf information
Reply to: