* Tue Jun 07 2022 Zdenek Pytela <zpytela@redhat.com> - 37.4-1

- Allow auditd_t noatsecure for a transition to audisp_remote_t
- Allow ctdbd nlmsg_read on netlink_tcpdiag_socket
- Allow pcp_domain execute its private memfd: objects
- Add support for samba-dcerpcd
- Add policy for wireguard
- Confine targetcli
- Allow systemd work with install_t unix stream sockets
- Allow iscsid the sys_ptrace userns capability
- Allow xdm connect to unconfined_service_t over a unix stream socket
This commit is contained in:
Zdenek Pytela 2022-06-07 22:33:10 +02:00
parent f69f4a323f
commit 75ed729ffd
2 changed files with 15 additions and 4 deletions

View File

@ -1,6 +1,6 @@
# github repo with selinux-policy sources
%global giturl https://github.com/fedora-selinux/selinux-policy
%global commit 2a051bc60695ca5b381b806acbf2e2af040c0158
%global commit 7694f3d5ddc360f428e54f168b521859ff0a4ee1
%global shortcommit %(c=%{commit}; echo ${c:0:7})
%define distro redhat
@ -23,7 +23,7 @@
%define CHECKPOLICYVER 3.2
Summary: SELinux policy configuration
Name: selinux-policy
Version: 37.3
Version: 37.4
Release: 1%{?dist}
License: GPLv2+
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
@ -813,6 +813,17 @@ exit 0
%endif
%changelog
* Tue Jun 07 2022 Zdenek Pytela <zpytela@redhat.com> - 37.4-1
- Allow auditd_t noatsecure for a transition to audisp_remote_t
- Allow ctdbd nlmsg_read on netlink_tcpdiag_socket
- Allow pcp_domain execute its private memfd: objects
- Add support for samba-dcerpcd
- Add policy for wireguard
- Confine targetcli
- Allow systemd work with install_t unix stream sockets
- Allow iscsid the sys_ptrace userns capability
- Allow xdm connect to unconfined_service_t over a unix stream socket
* Fri May 27 2022 Zdenek Pytela <zpytela@redhat.com> - 37.3-1
- Allow nm-dispatcher custom plugin execute systemctl
- Allow nm-dispatcher custom plugin dbus chat with nm

View File

@ -1,3 +1,3 @@
SHA512 (selinux-policy-2a051bc.tar.gz) = 162c5f63765783160867c85bfb1f07c89c6be6b64ae227e3322a433fae644aebc7b8fc5d3fad2091b132af0d9c0da2f3d86cae1403ace2a1dda7c9681be53826
SHA512 (container-selinux.tgz) = d54c20aa0f8f78a8f5300a7f35a72936d7c674a3fb99c0a1b751720219b98d64064acbcb7de8b1af9a4d245c473f26d23f3f83cda8361f05d8bd6ad7ff7f0439
SHA512 (selinux-policy-7694f3d.tar.gz) = 7c2f3ed062b36eb286b40d114138cdac231686316cedc53768646eb26bfa475fe68ac64a480f47c7fc94fb3c525e5ae3df7f2fecaef8ae2d1dc9c244130601fd
SHA512 (container-selinux.tgz) = d8f6aa5e61318a132e5b965ea19fd03d2c7745d6562ba919ce9497dd2dbed71562f68f31ddb0b61f6f7f9c121333dbbe2c887dca0e66202c7fc6203fde2380b7
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4