diff --git a/selinux-policy.spec b/selinux-policy.spec index 862f5c3..414bfb1 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,6 +1,6 @@ # github repo with selinux-policy sources %global giturl https://github.com/fedora-selinux/selinux-policy -%global commit b4e2d74e978b62e5a4941786536ff32f05c578d1 +%global commit fe2a2f5e8e3fbf00a0804e65c2fb20dbe6ff9be1 %global shortcommit %(c=%{commit}; echo ${c:0:7}) %define distro redhat @@ -23,7 +23,7 @@ %define CHECKPOLICYVER 3.2 Summary: SELinux policy configuration Name: selinux-policy -Version: 38.1.14 +Version: 38.1.15 Release: 1%{?dist} License: GPLv2+ Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz @@ -809,6 +809,46 @@ exit 0 %endif %changelog +* Thu Jun 15 2023 Zdenek Pytela - 38.1.15-1 +- Add fs_delete_pstore_files() interface +Resolves: rhbz#2181565 +- Add fs_read_pstore_files() interface +Resolves: rhbz#2181565 +- Allow insights-client getsession process permission +Resolves: rhbz#2214581 +- Allow insights-client work with pipe and socket tmp files +Resolves: rhbz#2214581 +- Allow insights-client map generic log files +Resolves: rhbz#2214581 +- Allow insights-client read unconfined service semaphores +Resolves: rhbz#2214581 +- Allow insights-client get quotas of all filesystems +Resolves: rhbz#2214581 +- Allow haproxy read hardware state information +Resolves: rhbz#2164691 +- Allow cupsd dbus chat with xdm +Resolves: rhbz#2143641 +- Allow dovecot_deliver_t create/map dovecot_spool_t dir/file +Resolves: rhbz#2165863 +- Add none file context for polyinstantiated tmp dirs +Resolves: rhbz#2099194 +- Add support for the systemd-pstore service +Resolves: rhbz#2181565 +- Label /dev/userfaultfd with userfaultfd_t +Resolves: rhbz#2175290 +- Allow collectd_t read proc_net link files +Resolves: rhbz#2209650 +- Label smtpd with sendmail_exec_t +Resolves: rhbz#2213573 +- Label msmtp and msmtpd with sendmail_exec_t +Resolves: rhbz#2213573 +- Allow dovecot-deliver write to the main process runtime fifo files +Resolves: rhbz#2211787 +- Allow subscription-manager execute ip +Resolves: rhbz#2211566 +- Allow ftpd read network sysctls +Resolves: rhbz#2175856 + * Fri May 26 2023 Nikola Knazekova - 38.1.14-1 - Allow firewalld rw ica_tmpfs_t files Resolves: rhbz#2207487 diff --git a/sources b/sources index d1df73f..dea5855 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (selinux-policy-b4e2d74.tar.gz) = 9cfaa214fe28a16c64eacf37e07e4f05b678e88c25c18e2efa9e80c916898da12a8ebd91d82bb098e7699e02c3a1ae8cc6ab5ee7377037b5285f9478e2f9e39f -SHA512 (container-selinux.tgz) = 2bf09742b7bc586a2172284a33131a6f50e9b2724880907d78340f08b79b34bdfefbf854c775338ceadfc3f8e79fbe3c5afbe2711e9f3f852f2af680ec55ded0 +SHA512 (selinux-policy-fe2a2f5.tar.gz) = 12240a169137af610b4f53574b43a7c6b91ed71a2dde8c1fea5b5eae56262b97f497352247a84ccddcb3ee7e3bdc054413a5f41110978a20daf693cd7320b6d9 SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4 +SHA512 (container-selinux.tgz) = 321834ea1ab793e1724d8f3e0deb13285159ab77f6e3221f4b0f0bb5f764c35903804b87e000f67830fe5dd2f4dd23bc33688189a2f8e0893e5112ec8f95d1ab