* Mon Jul 14 2025 Zdenek Pytela <zpytela@redhat.com> - 38.1.61-1

- Fix incorrect /run and /usr/bin file context entries
Resolves: SELINUX-4392
- Dontaudit irqbalance read sssd public files
Resolves: RHEL-1556
- Update sssd_dontaudit_read_public_files()
Resolves: RHEL-1556
- Allow insights-client file transition for files in /var/tmp
Resolves: SELINUX-4392
- Add the virt_exec_virsh() interface
Resolves: SELINUX-4392
- Add the ssh_exec_sshd() interface
Resolves: SELINUX-4392
- Add rhsmcertd interfaces
Resolves: SELINUX-4392
- Add the bind_exec_named_checkconf() interface
Resolves: SELINUX-4392
- Add the auth_write_motd_var_run_files() interface
Resolves: SELINUX-4392
- Add the gpg_domtrans_agent() interface
Resolves: SELINUX-4392
- Add the gpg_read_user_secrets() interface
Resolves: SELINUX-4392
- Add policy for insights-core
Resolves: SELINUX-4392
This commit is contained in:
Zdenek Pytela 2025-07-14 13:46:45 +02:00
parent 3c140941f4
commit f9fa6984ee
2 changed files with 30 additions and 4 deletions

View File

@ -1,6 +1,6 @@
# github repo with selinux-policy sources
%global giturl https://github.com/fedora-selinux/selinux-policy
%global commit f6ab4dcff67f3e4537c142836ab186ce52e1cb28
%global commit f6575d3ef7330b3e669deb116575a345cbd0e46b
%global shortcommit %(c=%{commit}; echo ${c:0:7})
%define distro redhat
@ -26,7 +26,7 @@
%define CHECKPOLICYVER 3.2
Summary: SELinux policy configuration
Name: selinux-policy
Version: 38.1.60
Version: 38.1.61
Release: 1%{?dist}
License: GPLv2+
Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
@ -906,6 +906,32 @@ exit 0
%endif
%changelog
* Mon Jul 14 2025 Zdenek Pytela <zpytela@redhat.com> - 38.1.61-1
- Fix incorrect /run and /usr/bin file context entries
Resolves: SELINUX-4392
- Dontaudit irqbalance read sssd public files
Resolves: RHEL-1556
- Update sssd_dontaudit_read_public_files()
Resolves: RHEL-1556
- Allow insights-client file transition for files in /var/tmp
Resolves: SELINUX-4392
- Add the virt_exec_virsh() interface
Resolves: SELINUX-4392
- Add the ssh_exec_sshd() interface
Resolves: SELINUX-4392
- Add rhsmcertd interfaces
Resolves: SELINUX-4392
- Add the bind_exec_named_checkconf() interface
Resolves: SELINUX-4392
- Add the auth_write_motd_var_run_files() interface
Resolves: SELINUX-4392
- Add the gpg_domtrans_agent() interface
Resolves: SELINUX-4392
- Add the gpg_read_user_secrets() interface
Resolves: SELINUX-4392
- Add policy for insights-core
Resolves: SELINUX-4392
* Thu Jul 03 2025 Zdenek Pytela <zpytela@redhat.com> - 38.1.60-1
- Allow irqbalance execute shell if irqbalance_run_unconfined is on
Resolves: RHEL-1556

View File

@ -1,3 +1,3 @@
SHA512 (selinux-policy-f6ab4dc.tar.gz) = 0d9e59debbdb1feb860f56bf8ac56c754dbd7aa60521c70c9f3cd340cf85dcbeb565684670d43c116fb05af66d45ce9559798a0eb38cf45f141eafe22d150560
SHA512 (selinux-policy-f6575d3.tar.gz) = fbbde10966a2f4a8e809e2c1af46505a2e17bf0fa10f15583344db9a8a9491fc37ea338465e6bf96b917ef9591732e5e25f67d069d2951985f6d05cf9008cc01
SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4
SHA512 (container-selinux.tgz) = 7354da9f58b4722b9a676fd4440240e89467b594a036a3ecb46bcc81559ff4b127453b8b680902ed14cf13aa538b41adc1768ffb14a34d261201d8284a8c7f92
SHA512 (container-selinux.tgz) = 5e45205f237b9fbda454fe2aad38a71e308c71cb0fc452111c36b917cf36773e6d71a9aeb5f520d6a79bff4d974085b642a3ece183ca2702aebe3e107cb5e160