Linux repositories inspector

apparmor-notify - AppArmor notification system

apparmor-notify provides a utility to display AppArmor denial messages via desktop notifications. The utility can also be used to generate summary reports.
Original maintainer
Homepagehttp://apparmor.net/
2.13.2
Debian iconDebian 10.0
Ubuntu iconUbuntu 19.04
Ubuntu iconUbuntu 19.10
2.12
Ubuntu iconUbuntu 18.04 LTS
Ubuntu iconUbuntu 18.10
2.11.0
Debian iconDebian 9.0
Ubuntu iconUbuntu 17.10
2.10.95
Ubuntu iconUbuntu 16.04 LTS
DistributionVersionSincePackageInstalledPackager
Debian iconDebian 10.0 buster/maindeb2.13.2-10Apr 0173.1 kiB115 kiB
Debian iconDebian 9.0 stretch/maindeb2.11.0-3+deb9u22018-03-1461.4 kiB102 kiB
Ubuntu iconUbuntu 17.10 artful/maindeb2.11.0-2ubuntu172017-11-1011.5 kiB103 kiB
Ubuntu iconUbuntu 17.10 artful-updates/maindeb2.11.0-2ubuntu17.12018-02-0811.5 kiB103 kiB
Ubuntu iconUbuntu 18.04 LTS bionic/maindeb2.12-4ubuntu52018-06-1211.7 kiB109 kiB
Ubuntu iconUbuntu 18.04 LTS bionic-security/maindeb2.12-4ubuntu5.1Jan 1211.7 kiB109 kiB
Ubuntu iconUbuntu 18.04 LTS bionic-updates/maindeb2.12-4ubuntu5.1Jan 1211.7 kiB109 kiB
Ubuntu iconUbuntu 18.10 cosmic/maindeb2.12-4ubuntu8Jan 1411.7 kiB109 kiB
Ubuntu iconUbuntu 19.04 disco/maindeb2.13.2-9ubuntu6Jun 1712.1 kiB115 kiB
Ubuntu iconUbuntu 19.04 disco-proposed/maindeb2.13.2-9ubuntu6.1Jun 2412.1 kiB115 kiB
Ubuntu iconUbuntu 19.10 eoan/maindeb2.13.2-9ubuntu7Jun 1712.1 kiB115 kiB
Ubuntu iconUbuntu 16.04 LTS xenial/maindeb2.10.95-0ubuntu22017-11-1011.4 kiB91 kiB
Ubuntu iconUbuntu 16.04 LTS xenial-security/maindeb2.10.95-0ubuntu2.11Jun 1711.3 kiB93 kiB
Ubuntu iconUbuntu 16.04 LTS xenial-updates/maindeb2.10.95-0ubuntu2.11Jun 1711.3 kiB93 kiB

Applications

AppArmor Notify

Receive on screen notifications of AppArmor denials

Manual pages

aa-notify(8)

aa-notify - display information about logged AppArmor messages.

Latest updates

Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Version 2.13.2-9ubuntu6.1 introduced

Jun 24
Ubuntu 19.10 icon

Ubuntu 19.10 eoan/main: Version 2.13.2-9ubuntu7 introduced

Jun 17
Ubuntu 19.04 icon

Ubuntu 19.04 disco/main: Updated from 2.13.2-9ubuntu5 to 2.13.2-9ubuntu6

Jun 17
Ubuntu 16.04 LTS icon

Ubuntu 16.04 LTS xenial-updates/main: Updated from 2.10.95-0ubuntu2.10 to 2.10.95-0ubuntu2.11

Jun 17
Ubuntu 16.04 LTS icon

Ubuntu 16.04 LTS xenial-security/main: Updated from 2.10.95-0ubuntu2.10 to 2.10.95-0ubuntu2.11

Jun 17
Ubuntu 19.04 icon

Ubuntu 19.04 disco/main: Updated from 2.13.2-9ubuntu4 to 2.13.2-9ubuntu5

Apr 03
Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Version 2.13.2-9ubuntu5 removed

Apr 03
Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Updated from 2.13.2-9ubuntu4 to 2.13.2-9ubuntu5

Apr 02
Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Version 2.13.2-9ubuntu4 reintroduced

Apr 02
Ubuntu 19.04 icon

Ubuntu 19.04 disco/main: Updated from 2.12-4ubuntu10 to 2.13.2-9ubuntu4

Apr 02
Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Version 2.13.2-9ubuntu4 removed

Apr 02
Debian 10.0 icon

Debian 10.0 buster/main: Updated from 2.13.2-9 to 2.13.2-10

Apr 01
  • Don't load AppArmor policy when running in a Debian Live environment that uses overlayfs (Closes: #922378).
    Rationale: the storage stack set up by live-boot with overlayfs is not supported by our AppArmor policy at the moment, resulting in breakage of confined software such as Evince and LibreOffice.
  • Ship nvidia_modprobe in enforce mode (Closes: #923273).
    • Rationale: as explained by Seth Arnold <> on #923273#32, profiles in complain mode can chew up essentially unlimited amounts of non-swappable kernel memory and huge amounts of IO bandwidth logging ALLOWED messages, which can in turn use large amounts of storage. This is why Ubuntu has applied this change already for their upcoming release.
    • Scope of this change: in Buster, this profile is used in one single place — the usr.lib.libreoffice.program.soffice.bin profile — for which it was developed and tested in the first place. So the risk and potential problematic impact of this change seems pretty low.
  • Cherry-pick the most important and non-invasive fixes from the upstream apparmor-2.13 maintenance branch:
    • base abstraction: allow mr on *.so* in common library paths,
      1. e. don't assume all common libraries' name starts with "lib".
      At the very least, this fixes Qt5 applications under some VirtualBox graphics configuration, where otherwise they would not start at all (Closes: Tails#16414).
      Upstream commits: 8dff7dc, 08f9d16
    • Fix 2 segfaults spotted upstream while writing automated tests for the multicache support (upstream MR!348):

      · in overlaydirat_for_each, segfault caused by repeatedly freeing

      the same memory area;

      · when loading policy cache files, due to incorrect size passed

      to qsort().

      Upstream commits: 5704fba, 01aec04

Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Updated from 2.13.2-9ubuntu3 to 2.13.2-9ubuntu4

Mar 27
Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Updated from 2.13.2-9ubuntu2 to 2.13.2-9ubuntu3

Mar 27
Ubuntu 19.04 icon

Ubuntu 19.04 disco-proposed/main: Version 2.13.2-9ubuntu2 introduced

Mar 26
Debian 10.0 icon

Debian 10.0 buster/main: Updated from 2.13.2-7 to 2.13.2-9

Mar 10
  • Revert "Add autopkgtest that checks if apparmor.service starts on package installation". It passes with the schroot and qemu backends locally but fails on ci.debian.net.
Debian 10.0 icon

Debian 10.0 buster/main: Updated from 2.13.2-6 to 2.13.2-7

Feb 01
  • Stop shipping /var/cache/apparmor/CACHEDIR.TAG (Closes: #920682)
  • New patches, cherry-picked from upstream !320, so the "audio" abstraction grants read access to Alsa and libao config files (Closes: #920669, #920670).
Debian 10.0 icon

Debian 10.0 buster/main: Updated from 2.13.2-3 to 2.13.2-6

Jan 30
  • initscript: implement missing aa_log_action_begin and aa_log_action_end functions (Closes: #917962).
Ubuntu 19.04 icon

Ubuntu 19.04 disco/main: Version 2.12-4ubuntu10 introduced

Jan 14
Ubuntu 18.10 icon

Ubuntu 18.10 cosmic/main: Version 2.12-4ubuntu8 introduced

Jan 14

Related packages

apparmor - Mandatory Access Control (MAC) using Linux Security Module (LSM)
⇧ Top