From 1ccb908a67ef8605116a6412a32ebf02c26f62c2 Mon Sep 17 00:00:00 2001 From: CentOS Sources Date: Sep 15 2015 09:08:46 +0000 Subject: import selinux-policy-3.13.1-23.el7_1.18 --- diff --git a/SOURCES/policy-rhel-7.1.z-contrib.patch b/SOURCES/policy-rhel-7.1.z-contrib.patch index 135f5bc..36beef2 100644 --- a/SOURCES/policy-rhel-7.1.z-contrib.patch +++ b/SOURCES/policy-rhel-7.1.z-contrib.patch @@ -807,6 +807,18 @@ index 231f2e2..56fba2e 100644 allow passenger_t self:unix_stream_socket { create_stream_socket_perms connectto }; can_exec(passenger_t, passenger_exec_t) +diff --git a/qpid.te b/qpid.te +index fc17eee..9f4739c 100644 +--- a/qpid.te ++++ b/qpid.te +@@ -53,6 +53,7 @@ manage_files_pattern(qpidd_t, qpidd_var_run_t, qpidd_var_run_t) + files_pid_filetrans(qpidd_t, qpidd_var_run_t, { file dir }) + + kernel_read_system_state(qpidd_t) ++kernel_read_network_state(qpidd_t) + + auth_read_passwd(qpidd_t) + diff --git a/rhcs.if b/rhcs.if index bf60580..29df561 100644 --- a/rhcs.if diff --git a/SPECS/selinux-policy.spec b/SPECS/selinux-policy.spec index 7268b48..4bdc83c 100644 --- a/SPECS/selinux-policy.spec +++ b/SPECS/selinux-policy.spec @@ -19,7 +19,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.13.1 -Release: 23%{?dist}.17 +Release: 23%{?dist}.18 License: GPLv2+ Group: System Environment/Base Source: serefpolicy-%{version}.tgz @@ -608,6 +608,10 @@ SELinux Reference policy mls base module. %endif %changelog +* Thu Sep 3 2015 Miroslav Grepl 3.13.1-23.el7_1.18 +- Allow qpidd access to /proc//net/psched +Resolves: #1254318 + * Wed Aug 28 2015 Miroslav Grepl 3.13.1-23.el7_1.17 - Dontaudit chrome to read passwd file. Resolves:#1257816