avc: denied { dac_override } for comm="kworker/u17:18" capability=1 scontext=u:r:kernel:s0 tcontext=u:r:kernel:s0 tclass=capability permissive=0
avc: denied { dac_override } for comm="kworker/u17:5" capability=1 scontext=u:r:kernel:s0 tcontext=u:r:kernel:s0 tclass=capability permissive=0
4 lines
112 B
Plaintext
4 lines
112 B
Plaintext
allow kernel vendor_file:file r_file_perms;
|
|
|
|
dontaudit kernel self:capability { dac_override dac_read_search };
|