From 4b6b09119b5d63ec6f723dd69942e840593f50cf Mon Sep 17 00:00:00 2001 From: Lukas Vrabec Date: May 21 2018 20:06:46 +0000 Subject: * Mon May 21 2018 Lukas Vrabec - 3.14.1-26 - Disable secure mode environment cleansing for dirsrv_t - Allow udev execute /usr/libexec/gdm-disable-wayland in xdm_t domain which allows create /run/gdm/custom.conf with proper xdm_var_run_t label. --- diff --git a/.gitignore b/.gitignore index 68fb9ad..94ce76c 100644 --- a/.gitignore +++ b/.gitignore @@ -278,3 +278,5 @@ serefpolicy* /selinux-policy-2874230.tar.gz /selinux-policy-contrib-608e3d6.tar.gz /selinux-policy-cb236ab.tar.gz +/selinux-policy-0abb218.tar.gz +/selinux-policy-contrib-012057a.tar.gz diff --git a/selinux-policy.spec b/selinux-policy.spec index f5f6ade..eae95d6 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -1,11 +1,11 @@ # github repo with selinux-policy base sources %global git0 https://github.com/fedora-selinux/selinux-policy -%global commit0 cb236abc70e83b8563be2ac9ea3b68f123f0f244 +%global commit0 0abb218a48e7c4dc866fba0a056cbade4f9a40dc %global shortcommit0 %(c=%{commit0}; echo ${c:0:7}) # github repo with selinux-policy contrib sources %global git1 https://github.com/fedora-selinux/selinux-policy-contrib -%global commit1 608e3d60937224770e85c4aa91817b0c4c5eac27 +%global commit1 012057a8ec3e3fc42db67548012b48ce3314fe4a %global shortcommit1 %(c=%{commit1}; echo ${c:0:7}) %define distro redhat @@ -29,7 +29,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.14.1 -Release: 25%{?dist} +Release: 26%{?dist} License: GPLv2+ Group: System Environment/Base Source: %{git0}/archive/%{commit0}/%{name}-%{shortcommit0}.tar.gz @@ -718,6 +718,10 @@ exit 0 %endif %changelog +* Mon May 21 2018 Lukas Vrabec - 3.14.1-26 +- Disable secure mode environment cleansing for dirsrv_t +- Allow udev execute /usr/libexec/gdm-disable-wayland in xdm_t domain which allows create /run/gdm/custom.conf with proper xdm_var_run_t label. + * Mon May 21 2018 Lukas Vrabec - 3.14.1-25 - Add dac_override capability to remote_login_t domain - Allow chrome_sandbox_t to mmap tmp files diff --git a/sources b/sources index 856a146..7a6a9f6 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (selinux-policy-contrib-608e3d6.tar.gz) = 0d029ea7065479b03d305a8d22bc95ef27e190a0729adf61a8dedea5afeeac25bdfff7b6b4f211922da19961b7ddd3473ec14e84dc392f581c21f87d81a51d58 -SHA512 (selinux-policy-cb236ab.tar.gz) = 962e158813992877edec0c4e5e6eeb1d7e9a94e29155a3484ac4d59fc7b66ed63cfe6d01be165e78a4d1e3d6bd9182eeada5efaf21f2eca3fa459664308582c9 -SHA512 (container-selinux.tgz) = 30dca9db85c175851f750198d80ce7285ed47661113db65f41c439325472ecf9baa4814f6b677ab67106404b98b6775f5149a90bc6bdf4fdccf2804f27381a4a +SHA512 (selinux-policy-0abb218.tar.gz) = b9b55e215e70bd8b88bda91b857125737fb911154dcb5e2147b584befdc7fd92b8b7f36db5900e8d279e126dbff9e87ddb9174639a8e15f9572b791e5a2bccb6 +SHA512 (selinux-policy-contrib-012057a.tar.gz) = c85ff4cf5b1ab81323c6117e12e2f397b54eae4cc870acd3474a07bfa4e0af44563d2319429743c2e4c78f6b498536fdbe0f7bff1840674b0ed5fdc00f884a03 +SHA512 (container-selinux.tgz) = 17e293f0cff800aded2e4ee015a6ce22f17dd1f7904cc8f519c1ca74ee9ae6627edb139fd6f7e08d46dcf586ec2ec659dc3c180118fce8f161579b074f90620e