6d182c * Fri Nov 20 2015 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-155

Authored and Committed by lvrabec 4 years ago
    * Fri Nov 20 2015 Lukas Vrabec <lvrabec@redhat.com> 3.13.1-155
    - Allow antivirus_t to bind to all unreserved ports. Clamd binds to random unassigned port (by default in range 1024-2048). #1248785
    - Allow abrt-hook-ccpp to change SELinux user identity for created objects.
    - Allow abrt-hook-ccpp to get attributes of all processes because of core_pattern.
    - Allow setuid/setgid capabilities for abrt-hook-ccpp.
    - Add default labeling for /etc/Pegasus/cimserver_current.conf. It is a correct patch instead of the current /etc/Pegasus/pegasus_current.conf.
    - cockpit has grown content in /var/run directory
    - unbound wants to use ephemeral ports as a default configuration. Allow to use also udp sockets.
    -  Allow systemd-networkd to bind dhcpd ports if DHCP=yes in *.network conf file. BZ(#1280092)
    - systemd-tmpfiles performs operations on System V IPC objects which requires sys_admin capability. BZ(#1279269)
    - Merge pull request #63 from vmojzis/f23-base
    - Allow systemd-hostnamed to communicate with dhcp via dbus. #1242583
    - Allow systemd-logind to read /run/utmp when shutdown is invoked.
    - systemd-logind remove all IPC objects owned by a user on a logout. This covers also SysV memory. This change allows to destroy unpriviledged user SysV shared memory segments.
    - Add userdom_destroy_unpriv_user_shared_mem() interface.
    - Label /var/run/systemd/shutdown directory as systemd_logind_var_run_t to allow systemd-logind to access it if shutdown is invoked.
    
        
file modified
+109 -93
file modified
+57 -37
file modified
+18 -1