* Thu Jun 15 2023 Zdenek Pytela <zpytela@redhat.com> - 38.1.15-1
- Add fs_delete_pstore_files() interface Resolves: rhbz#2181565 - Add fs_read_pstore_files() interface Resolves: rhbz#2181565 - Allow insights-client getsession process permission Resolves: rhbz#2214581 - Allow insights-client work with pipe and socket tmp files Resolves: rhbz#2214581 - Allow insights-client map generic log files Resolves: rhbz#2214581 - Allow insights-client read unconfined service semaphores Resolves: rhbz#2214581 - Allow insights-client get quotas of all filesystems Resolves: rhbz#2214581 - Allow haproxy read hardware state information Resolves: rhbz#2164691 - Allow cupsd dbus chat with xdm Resolves: rhbz#2143641 - Allow dovecot_deliver_t create/map dovecot_spool_t dir/file Resolves: rhbz#2165863 - Add none file context for polyinstantiated tmp dirs Resolves: rhbz#2099194 - Add support for the systemd-pstore service Resolves: rhbz#2181565 - Label /dev/userfaultfd with userfaultfd_t Resolves: rhbz#2175290 - Allow collectd_t read proc_net link files Resolves: rhbz#2209650 - Label smtpd with sendmail_exec_t Resolves: rhbz#2213573 - Label msmtp and msmtpd with sendmail_exec_t Resolves: rhbz#2213573 - Allow dovecot-deliver write to the main process runtime fifo files Resolves: rhbz#2211787 - Allow subscription-manager execute ip Resolves: rhbz#2211566 - Allow ftpd read network sysctls Resolves: rhbz#2175856
This commit is contained in:
parent
e6300e8cc0
commit
ca4271f5cc
@ -1,6 +1,6 @@
|
|||||||
# github repo with selinux-policy sources
|
# github repo with selinux-policy sources
|
||||||
%global giturl https://github.com/fedora-selinux/selinux-policy
|
%global giturl https://github.com/fedora-selinux/selinux-policy
|
||||||
%global commit b4e2d74e978b62e5a4941786536ff32f05c578d1
|
%global commit fe2a2f5e8e3fbf00a0804e65c2fb20dbe6ff9be1
|
||||||
%global shortcommit %(c=%{commit}; echo ${c:0:7})
|
%global shortcommit %(c=%{commit}; echo ${c:0:7})
|
||||||
|
|
||||||
%define distro redhat
|
%define distro redhat
|
||||||
@ -23,7 +23,7 @@
|
|||||||
%define CHECKPOLICYVER 3.2
|
%define CHECKPOLICYVER 3.2
|
||||||
Summary: SELinux policy configuration
|
Summary: SELinux policy configuration
|
||||||
Name: selinux-policy
|
Name: selinux-policy
|
||||||
Version: 38.1.14
|
Version: 38.1.15
|
||||||
Release: 1%{?dist}
|
Release: 1%{?dist}
|
||||||
License: GPLv2+
|
License: GPLv2+
|
||||||
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
|
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
|
||||||
@ -809,6 +809,46 @@ exit 0
|
|||||||
%endif
|
%endif
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Thu Jun 15 2023 Zdenek Pytela <zpytela@redhat.com> - 38.1.15-1
|
||||||
|
- Add fs_delete_pstore_files() interface
|
||||||
|
Resolves: rhbz#2181565
|
||||||
|
- Add fs_read_pstore_files() interface
|
||||||
|
Resolves: rhbz#2181565
|
||||||
|
- Allow insights-client getsession process permission
|
||||||
|
Resolves: rhbz#2214581
|
||||||
|
- Allow insights-client work with pipe and socket tmp files
|
||||||
|
Resolves: rhbz#2214581
|
||||||
|
- Allow insights-client map generic log files
|
||||||
|
Resolves: rhbz#2214581
|
||||||
|
- Allow insights-client read unconfined service semaphores
|
||||||
|
Resolves: rhbz#2214581
|
||||||
|
- Allow insights-client get quotas of all filesystems
|
||||||
|
Resolves: rhbz#2214581
|
||||||
|
- Allow haproxy read hardware state information
|
||||||
|
Resolves: rhbz#2164691
|
||||||
|
- Allow cupsd dbus chat with xdm
|
||||||
|
Resolves: rhbz#2143641
|
||||||
|
- Allow dovecot_deliver_t create/map dovecot_spool_t dir/file
|
||||||
|
Resolves: rhbz#2165863
|
||||||
|
- Add none file context for polyinstantiated tmp dirs
|
||||||
|
Resolves: rhbz#2099194
|
||||||
|
- Add support for the systemd-pstore service
|
||||||
|
Resolves: rhbz#2181565
|
||||||
|
- Label /dev/userfaultfd with userfaultfd_t
|
||||||
|
Resolves: rhbz#2175290
|
||||||
|
- Allow collectd_t read proc_net link files
|
||||||
|
Resolves: rhbz#2209650
|
||||||
|
- Label smtpd with sendmail_exec_t
|
||||||
|
Resolves: rhbz#2213573
|
||||||
|
- Label msmtp and msmtpd with sendmail_exec_t
|
||||||
|
Resolves: rhbz#2213573
|
||||||
|
- Allow dovecot-deliver write to the main process runtime fifo files
|
||||||
|
Resolves: rhbz#2211787
|
||||||
|
- Allow subscription-manager execute ip
|
||||||
|
Resolves: rhbz#2211566
|
||||||
|
- Allow ftpd read network sysctls
|
||||||
|
Resolves: rhbz#2175856
|
||||||
|
|
||||||
* Fri May 26 2023 Nikola Knazekova <nknazeko@redhat.com> - 38.1.14-1
|
* Fri May 26 2023 Nikola Knazekova <nknazeko@redhat.com> - 38.1.14-1
|
||||||
- Allow firewalld rw ica_tmpfs_t files
|
- Allow firewalld rw ica_tmpfs_t files
|
||||||
Resolves: rhbz#2207487
|
Resolves: rhbz#2207487
|
||||||
|
4
sources
4
sources
@ -1,3 +1,3 @@
|
|||||||
SHA512 (selinux-policy-b4e2d74.tar.gz) = 9cfaa214fe28a16c64eacf37e07e4f05b678e88c25c18e2efa9e80c916898da12a8ebd91d82bb098e7699e02c3a1ae8cc6ab5ee7377037b5285f9478e2f9e39f
|
SHA512 (selinux-policy-fe2a2f5.tar.gz) = 12240a169137af610b4f53574b43a7c6b91ed71a2dde8c1fea5b5eae56262b97f497352247a84ccddcb3ee7e3bdc054413a5f41110978a20daf693cd7320b6d9
|
||||||
SHA512 (container-selinux.tgz) = 2bf09742b7bc586a2172284a33131a6f50e9b2724880907d78340f08b79b34bdfefbf854c775338ceadfc3f8e79fbe3c5afbe2711e9f3f852f2af680ec55ded0
|
|
||||||
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
|
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
|
||||||
|
SHA512 (container-selinux.tgz) = 321834ea1ab793e1724d8f3e0deb13285159ab77f6e3221f4b0f0bb5f764c35903804b87e000f67830fe5dd2f4dd23bc33688189a2f8e0893e5112ec8f95d1ab
|
||||||
|
Loading…
Reference in New Issue
Block a user