diff --git a/.gitignore b/.gitignore index cf9ea1a..43d4c77 100644 --- a/.gitignore +++ b/.gitignore @@ -360,3 +360,5 @@ serefpolicy* /selinux-policy-contrib-8659df1.tar.gz /selinux-policy-f8a2347.tar.gz /selinux-policy-379f4fb.tar.gz +/selinux-policy-2163c68.tar.gz +/selinux-policy-contrib-b78d1b1.tar.gz diff --git a/selinux-policy.spec b/selinux-policy.spec index 58bb538..c49b0c9 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 379f4fb842e1b2c7a4b7c365265e0bdab52b2be4 +%global commit0 2163c68418f8ac9e3ae8fa57bb0068a6b648f109 %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 8659df15169ae04f8e92992709feb826fb22016b +%global commit1 b78d1b1ed3768cb6241486b76edd9b473fe60e6f %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.4 -Release: 10%{?dist} +Release: 11%{?dist} License: GPLv2+ Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz Source29: %{git1}/archive/%{commit1}/%{name}-contrib-%{shortcommit1}.tar.gz @@ -787,6 +787,13 @@ exit 0 %endif %changelog +* Fri Apr 12 2019 Lukas Vrabec - 3.14.4-11 +- Allow mongod_t domain to lsearch in cgroups BZ(1698743) +- Allow rngd communication with pcscd BZ(1679217) +- Create cockpit_tmpfs_t and allow cockpit ws and session to use it BZ(1698405) +- Fix broken networkmanager interface for allowing manage lib files for dnsmasq_t. +- Update logging_send_audit_msgs(sudodomain() to control TTY auditing for netlink socket for audit service + * Tue Apr 09 2019 Lukas Vrabec - 3.14.4-10 - Allow systemd_modules_load to read modules_dep_t files - Allow systemd labeled as init_t to setattr on unallocated ttys BZ(1697667) diff --git a/sources b/sources index df29455..cb12096 100644 --- a/sources +++ b/sources @@ -1,4 +1,4 @@ -SHA512 (selinux-policy-contrib-8659df1.tar.gz) = 3b153d7b5190452561e1b6253dcdebac1e8cf20d071734b44f38f0e74b3106a5158a1fbcd004d2b29befaed98cda30a937bc4f38a60be13f2943c57b61296cac -SHA512 (selinux-policy-379f4fb.tar.gz) = 41aabd4e2b63a672e111f0b1ebeb4ee7a9de2e692c43a511856fb02d0c2b42e2d01db617cd4eacf2c0b8d57f4b319f549c7926d444be5defa595a9b79a9652fb -SHA512 (container-selinux.tgz) = dc94c04569fd70e7a4dd955f0b9e50c19e8900fd89659cef0f7001cdd6248e2b535923dd36694ed99cc7dccaf696e1dd18dae91a29b767c9b50f9452de8b6163 +SHA512 (selinux-policy-2163c68.tar.gz) = 39ede15834630559eeb14645246ebb734f342d63d25c95442231ab8044faa22e601c3c7323acea6289ecccd601bb701bb5f7dd7f70b2c94a421f1802a3c52713 +SHA512 (selinux-policy-contrib-b78d1b1.tar.gz) = fcd40a98b4cb183d4f7daa2ebe63412554651f31c2639c86b9a67324d273ea25e4e1529e546a0a6a21160e19594dc11c63c30344d2a2b0b4933c247468922c29 +SHA512 (container-selinux.tgz) = 1b38f927429674c50533eca11ea726579bfd207453474fafae1c0949004fc1ccd7a7cadd6ad01682ff0a1e706a9475c2ccf85d4712f2d43b967c04e200b7f860 SHA512 (macro-expander) = b4f26e7ed6c32b3d7b3f1244e549a0e68cb387ab5276c4f4e832a9a6b74b08bea2234e8064549d47d1b272dbd22ef0f7c6b94cd307cc31ab872f9b68206021b2