diff --git a/selinux-policy.spec b/selinux-policy.spec index aba8e69..eab946b 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,6 +1,6 @@ # github repo with selinux-policy sources %global giturl https://github.com/fedora-selinux/selinux-policy -%global commit 284df66be2e1432333b8134606b30fd76c877123 +%global commit 74d69e714236347f733e83eb1c623148628d89c6 %global shortcommit %(c=%{commit}; echo ${c:0:7}) %define distro redhat @@ -23,7 +23,7 @@ %define CHECKPOLICYVER 3.2 Summary: SELinux policy configuration Name: selinux-policy -Version: 36.15 +Version: 36.16 Release: 1%{?dist} License: GPLv2+ Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz @@ -815,6 +815,27 @@ exit 0 %endif %changelog +* Thu Sep 29 2022 Zdenek Pytela - 36.16-1 +- Allow init map its private tmp files +- Allow xenstored change its hard resource limits +- Allow init remount all file_type filesystems +- Add bgpd sys_chroot capability +- Allow samba-dcerpcd work with sssd +- Allow smbd_t process noatsecure permission for winbind_rpcd_t +- Allow samba-bgqd to read a printer list +- Allow winbind-rpcd write to winbind pid files +- Allow samba-bgqd get a printer list +- added policy for systemd-socket-proxyd +- nut-upsd: kernel_read_system_state, fs_getattr_cgroup +- Add numad the ipc_owner capability +- Allow gst-plugin-scanner read virtual memory sysctls +- Allow init read/write inherited user fifo files +- Add the new 'cmd' permission to the 'io_uring' class +- Allow winbind-rpcd read and write its key ring +- Label /run/NetworkManager/no-stub-resolv.conf net_conf_t +- Do not run restorecon /etc/NetworkManager/dispatcher.d in mls and minimum +- Run restorecon for nm-dispatcher directory only if it exists + * Wed Sep 14 2022 Zdenek Pytela - 36.15-1 - blueman-mechanism can read ~/.local/lib/python*/site-packages directory - Allow tor get filesystem attributes diff --git a/sources b/sources index e4aac2f..eab2509 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (selinux-policy-284df66.tar.gz) = c028c39a3ca6fff25942ac131e7d9c2ffc70081faaf85557df75ddfc1f59bf77440a6f6713d932eefccc3f557e742f958a58836a8784e20b9e1c371f1a433478 +SHA512 (selinux-policy-74d69e7.tar.gz) = 099a782e01b8af664be15f181b7daf6024919c0d9ca56349b390d1e94f16e84586566ecf282d80f2133313d1ed6285a4c30f0d5098c163e42f5ca53a546c26a8 SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4 -SHA512 (container-selinux.tgz) = 39ae93d6c6d484a403f34792eac830bd2c9ad769c5bf66a91dd431229111e8b34ef5be2b70554eedb41d5ccd56376bbcc5affea27f3329a4443d6a1499b6f05e +SHA512 (container-selinux.tgz) = 9d29957dcdddc1b3b0b310e2275731e1465ce7b21d8e30bea31b4988f93dbb22e1754dd7e34c2578ab0c314914b485b5678703e3cd9a16ddbb2da1cbed3959e3