apparmor: fix auditing of domain transition failures due to incomplete policy
When policy specifies a transition to a profile that is not currently loaded, it result in exec being denied. However the failure is not being audited correctly because the audit code is treating this as an allowed permission and thus not reporting it. Signed-off-by:John Johansen <john.johansen@canonical.com> Acked-By:
Steve Beattie <sbeattie@ubuntu.com>
parent
b7ae9f06
Please register or sign in to comment