This bug was fixed in 14.04 LTS. $ cat /proc/version_signature Ubuntu 3.13.0-24.46-generic 3.13.9
$ gcc -o socketpair socketpair.c -lapparmor && ./socketpair con = "unconfined"; mode = "(null)" $ echo "profile f { file, }" | sudo apparmor_parser -qr $ aa-exec -p f ./socketpair con = "f"; mode = "enforce" ** Changed in: linux (Ubuntu) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1235478 Title: AppArmor doesn't label AF_UNIX sockets created with socketpair() To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1235478/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs