I think this should be added to the mir framework-policy, not the core system policy. Eg, add this to overlay/meta/framework- policy/apparmor/policygroups/client:
# this is an information leak until AppArmor implements kernel variables owner @{PROC}/@{pid}/cmdline r, -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1470998 Title: qmlscene needs read access to its own /proc/$(pid)/cmdline file To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ubuntu-core-security/+bug/1470998/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs