From 2efd5f44c1855a307d24522c7ddb121c3e59e9ee Mon Sep 17 00:00:00 2001 From: Zdenek Pytela Date: Nov 14 2023 20:12:27 +0000 Subject: * Tue Nov 14 2023 Zdenek Pytela - 39.2-1 - Allow graphical applications work in Wayland - Allow map xserver_tmpfs_t files when xserver_clients_write_xshm is on - Allow kdump work with PrivateTmp - Allow dovecot-auth work with PrivateTmp - Allow nfsd get attributes of all filesystems - Allow fido-device-onboard (FDO) read the crack database - Allow winbind_rpcd_t processes access when samba_export_all_* is on - Allow ntp to bind and connect to ntske port. - Allow apcupsd cgi scripts read /sys - Allow rpcbind read network sysctls --- diff --git a/selinux-policy.spec b/selinux-policy.spec index c419f30..909e569 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,6 +1,6 @@ # github repo with selinux-policy sources %global giturl https://github.com/fedora-selinux/selinux-policy -%global commit 559054ccd9fa5e14d96f0f0d58a60290e8aff432 +%global commit 88bb7525b82e382df71897362bbaf92803994a2c %global shortcommit %(c=%{commit}; echo ${c:0:7}) %define distro redhat @@ -23,7 +23,7 @@ %define CHECKPOLICYVER 3.2 Summary: SELinux policy configuration Name: selinux-policy -Version: 39.1 +Version: 39.2 Release: 1%{?dist} License: GPL-2.0-or-later Source: %{giturl}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz @@ -814,6 +814,18 @@ exit 0 %endif %changelog +* Tue Nov 14 2023 Zdenek Pytela - 39.2-1 +- Allow graphical applications work in Wayland +- Allow map xserver_tmpfs_t files when xserver_clients_write_xshm is on +- Allow kdump work with PrivateTmp +- Allow dovecot-auth work with PrivateTmp +- Allow nfsd get attributes of all filesystems +- Allow fido-device-onboard (FDO) read the crack database +- Allow winbind_rpcd_t processes access when samba_export_all_* is on +- Allow ntp to bind and connect to ntske port. +- Allow apcupsd cgi scripts read /sys +- Allow rpcbind read network sysctls + * Thu Nov 02 2023 Zdenek Pytela - 39.1-1 - Support using systemd containers - Allow kernel_t to manage and relabel all files diff --git a/sources b/sources index 6606758..af6e824 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (selinux-policy-559054c.tar.gz) = dd04f3c22ba91a73b100d0f758501d3daaa81ec9bab9976d21b0fade7f146f2456dca86549e122f5bb6fd691e996b2a49262e3db6bdd6e375d48954a764bbe42 -SHA512 (container-selinux.tgz) = ff73fb485289c92229ae699fc7711b39060cfea0eec1fa06deb5bc2766c5dfbe444c125a31e78013d53315a84a3d58cb6ae4789b5c5232181780a050cc26aef0 +SHA512 (selinux-policy-88bb752.tar.gz) = f40481243ad9c6450588ce75aa4942e795b02a15541b72219add118dd108c7c53758dd26fc471c915435d95a939f4fd844ec18d4bda4151e25a1c841a0e6d310 +SHA512 (container-selinux.tgz) = 77a1f58a2913290cc2b341ade6b8d3b3eb88cd886fb92eee2c60c66530f9413b8ef93b7f7405a9cb09bf810cfeeb3adf0e9b2976dbc9359f3ddde1c9f20774a0 SHA512 (macro-expander) = 243ee49f1185b78ac47e56ca9a3f3592f8975fab1a2401c0fcc7f88217be614fe31805bacec602b728e7fcfc21dcc17d90e9a54ce87f3a0c97624d9ad885aea4