Package: colord
Version: 1.3.3-2
Severity: minor

Quack,

I've got a bug similar to #813334 but not identical; log entry:
May  9 11:18:29 Zushi colord[732]: failed to get session [pid 23814]: No
such process
May  9 11:18:29 Zushi colord[732]: CdMain: failed to read
/proc/23814/cmdline: Failed to open file '/proc/23814/cmdline': No such
file or directory

# ps -fe | grep 23814
root     23814     1  1 11:18 ?        00:00:00 /usr/sbin/cupsd -l

Nevertheless colord is not run as root and do not have access to the
full /proc tree because it is mounted with hidepid=2.

hidepid is a fairly common security feature now, and it is in the
security team's todolist
(https://wiki.debian.org/Hardening/Goals?highlight=%28hidepid%29) so I
think another method should be used to find the session.

I have no idea what are the real consequences of this problem, as I
don't see any other errors and printing works fine, so I lowered the BR
severity.

\_o<


-- System Information:
Debian Release: 9.0
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: amd64
 (x86_64)

Kernel: Linux 4.9.0-2-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages colord depends on:
ii  acl                                          2.2.52-3+b1
ii  adduser                                      3.115
ii  colord-data                                  1.3.3-2
ii  dconf-gsettings-backend [gsettings-backend]  0.26.0-2+b1
ii  libc6                                        2.24-10
ii  libcolord2                                   1.3.3-2
ii  libcolorhug2                                 1.3.3-2
ii  libdbus-1-3                                  1.10.18-1
ii  libglib2.0-0                                 2.50.3-2
ii  libgudev-1.0-0                               230-3
ii  libgusb2                                     0.2.9-1+b1
ii  liblcms2-2                                   2.8-4
ii  libpolkit-gobject-1-0                        0.105-17
ii  libsane                                      1.0.25-4
ii  libsqlite3-0                                 3.16.2-3
ii  libsystemd0                                  232-22
ii  libusb-1.0-0                                 2:1.0.21-1
ii  policykit-1                                  0.105-17

colord recommends no packages.

Versions of packages colord suggests:
pn  colord-sensor-argyll  <none>

-- no debconf information

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to