diff --git a/.gitignore b/.gitignore index 6283ef6..9c20f8a 100644 --- a/.gitignore +++ b/.gitignore @@ -1,3 +1,3 @@ SOURCES/container-selinux.tgz -SOURCES/selinux-policy-a7e85c6.tar.gz -SOURCES/selinux-policy-contrib-de298c0.tar.gz +SOURCES/selinux-policy-4646374.tar.gz +SOURCES/selinux-policy-contrib-3ea5231.tar.gz diff --git a/.selinux-policy.metadata b/.selinux-policy.metadata index 45936aa..b5771c2 100644 --- a/.selinux-policy.metadata +++ b/.selinux-policy.metadata @@ -1,3 +1,3 @@ -3d506da2d5cd9fa27422e9eb221bf6db6f8eb0c4 SOURCES/container-selinux.tgz -2a6ec8f210558023c7a04c086e24b41da86dcc81 SOURCES/selinux-policy-a7e85c6.tar.gz -148932e85db4650ccd9655e028339d261481b318 SOURCES/selinux-policy-contrib-de298c0.tar.gz +ef411248d42ced76bbb265cc8dbad21754e543bc SOURCES/container-selinux.tgz +4762890749afbb866a589f9adf6ff18925951650 SOURCES/selinux-policy-4646374.tar.gz +deb30dd93e805aa4c129ec9418dd452ba6ea8af1 SOURCES/selinux-policy-contrib-3ea5231.tar.gz diff --git a/SPECS/selinux-policy.spec b/SPECS/selinux-policy.spec index c898d29..48d07f3 100644 --- a/SPECS/selinux-policy.spec +++ b/SPECS/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 a7e85c695fd9c8fc26aa5d2dc4668363b997619e +%global commit0 464637407b7bd6226bc1cbeb2afd7409ee3a8419 %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 de298c09b9c949291effa80a5d975f3cd4362ef6 +%global commit1 3ea5231d3764b0c8d8576f92f14db89496780410 %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.3 -Release: 74%{?dist} +Release: 75%{?dist} License: GPLv2+ Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz Source29: %{git1}/archive/%{commit1}/%{name}-contrib-%{shortcommit1}.tar.gz @@ -715,6 +715,26 @@ exit 0 %endif %changelog +* Thu Jul 29 2021 Zdenek Pytela - 3.14.3-75 +- Add the unconfined_dgram_send() interface +Resolves: rhbz#1978562 +- Change dev_getattr_infiniband_dev() to use getattr_chr_files_pattern() +Resolves: rhbz#1936522 +- Add checkpoint_restore cap2 capability +Resolves: rhbz#1973325 +- Allow fcoemon talk with unconfined user over unix domain datagram socket +Resolves: rhbz#1978562 +- Allow hostapd bind UDP sockets to the dhcpd port +Resolves: rhbz#1977676 +- Allow NetworkManager read and write z90crypt device +Resolves: rhbz#1938203 +- Allow abrt_domain read and write z90crypt device +Resolves: rhbz#1938203 +- Label /usr/lib/pcs/pcs_snmp_agent with cluster_exec_t +Resolves: rhbz#1937111 +- Allow mdadm read iscsi pid files +Resolves: rhbz#1924716 + * Fri Jul 16 2021 Zdenek Pytela - 3.14.3-74 - Allow dyntransition from sshd_t to unconfined_t Resolves: rhbz#1947841