* Mon Jan 27 2025 Zdenek Pytela <zpytela@redhat.com> - 40.13.24-1

- Allow systemd-generator connect to syslog over a unix datagram socket
Resolves: RHEL-75879
- Allow ssh_t to change role to system_r
Resolves: RHEL-53972
- Allow virtnodedev create /etc/mdevctl.d/scripts.d with bin_t type
Resolves: RHEL-39893
- Allow virtqemud manage fixed disk device nodes
Resolves: RHEL-71656
- Allow samba-bgqd connect to cupsd over an unix domain stream socket
Resolves: RHEL-72861
- Allow systemd-machined read the vsock device
Resolves: RHEL-74280
- Allow pcmsensor write nmi_watchdog state information
Resolves: RHEL-52838
- Label /proc/sys/kernel/nmi_watchdog with sysctl_nmi_watchdog_t
Resolves: RHEL-52838
This commit is contained in:
Zdenek Pytela 2025-01-27 17:55:43 +01:00
parent 998e8bfebb
commit 90793b11a8
3 changed files with 23 additions and 5 deletions

View File

@ -1,3 +1,21 @@
* Mon Jan 27 2025 Zdenek Pytela <zpytela@redhat.com> - 40.13.24-1
- Allow systemd-generator connect to syslog over a unix datagram socket
Resolves: RHEL-75879
- Allow ssh_t to change role to system_r
Resolves: RHEL-53972
- Allow virtnodedev create /etc/mdevctl.d/scripts.d with bin_t type
Resolves: RHEL-39893
- Allow virtqemud manage fixed disk device nodes
Resolves: RHEL-71656
- Allow samba-bgqd connect to cupsd over an unix domain stream socket
Resolves: RHEL-72861
- Allow systemd-machined read the vsock device
Resolves: RHEL-74280
- Allow pcmsensor write nmi_watchdog state information
Resolves: RHEL-52838
- Label /proc/sys/kernel/nmi_watchdog with sysctl_nmi_watchdog_t
Resolves: RHEL-52838
* Fri Jan 24 2025 Zdenek Pytela <zpytela@redhat.com> - 40.13.23-2
- Rebuild other packages with with selinux-policy-40.13.23
Resolves: RHEL-36741

View File

@ -5,7 +5,7 @@
# github repo with selinux-policy sources
%global giturl https://github.com/fedora-selinux/selinux-policy
%global commit 049c14b918202275ad6fd4f63b3c94d3c6e8898d
%global commit f13cb453322580ba0fcf31157b3e6dd83c81c5d9
%global shortcommit %(c=%{commit}; echo ${c:0:7})
%define distro redhat
@ -17,8 +17,8 @@
%define CHECKPOLICYVER 3.8
Summary: SELinux policy configuration
Name: selinux-policy
Version: 40.13.23
Release: 2%{?dist}
Version: 40.13.24
Release: 1%{?dist}
License: GPL-2.0-or-later
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
Source1: Makefile.devel

View File

@ -1,3 +1,3 @@
SHA512 (selinux-policy-049c14b.tar.gz) = 7740132bc38c37e479d0760e217f5d246db2e1a33ef86f7fe22ac333f8ed97d0da9c2dd4cc8f564d3acba197b7a31fda15a51d5ffd94d052d73151519d4a0b89
SHA512 (selinux-policy-f13cb45.tar.gz) = 0d78bda93ec6204e2e28995640bc5036407ecb18b8306ddb59995b84f5d960b7b5ecb362b5031cc53c5228abb5b3b3ac716bcf4beb88560d29bc2f228b22a9b3
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
SHA512 (container-selinux.tgz) = 51eabb30a79aa80e41e8d8fa4ae3570eb121151768c059307bc04c3f0f477090a0044a7d4cf3246375945ef37c1b269b288ce6107f75bf1b280a9132e14eb858
SHA512 (container-selinux.tgz) = 28ab5fd91690607d56a47a57844faf8b6ba38799d40291ab05c31bed7d8dbc6e89d8f4c7f07cb44ed56f8871d11800e14210757141d9765bc8e861fdf00f770f