915415 * Wed Jul 10 2024 Zdenek Pytela <zpytela@redhat.com> - 41.8-1

Authored and Committed by Zdenek Pytela 4 months ago
    * Wed Jul 10 2024 Zdenek Pytela <zpytela@redhat.com> - 41.8-1
    - Drop publicfile module
    - Remove permissive domain for systemd_nsresourced_t
    - Change fs_dontaudit_write_cgroup_files() to apply to cgroup_t
    - Label /usr/bin/samba-gpupdate with samba_gpupdate_exec_t
    - Allow to create and delete socket files created by rhsm.service
    - Allow virtnetworkd exec shell when virt_hooks_unconfined is on
    - Allow unconfined_service_t transition to passwd_t
    - Support /var is empty
    - Allow abrt-dump-journal read all non_security socket files
    - Allow timemaster write to sysfs files
    - Dontaudit domain write cgroup files
    - Label /usr/lib/node_modules/npm/bin with bin_t
    - Allow ip the setexec permission
    - Allow systemd-networkd write files in /var/lib/systemd/network
    - Fix typo in systemd_nsresourced_prog_run_bpf()
    
        
file modified
+17 -0
file modified
+2 -2
file modified
+2 -2