"CrackArmor: Multiple vulnerabilities in AppArmor"
Strong opening by the good folks from Qualys:
"First, we discovered a fundamental vulnerability (a "confused-deputy"
problem) that allows an unprivileged local attacker to load, replace,
and remove arbitrary AppArmor profiles"