diff --git a/policy-F16.patch b/policy-F16.patch index 922b4d2..29e1ca4 100644 --- a/policy-F16.patch +++ b/policy-F16.patch @@ -66791,7 +66791,7 @@ index 808ba93..ed84884 100644 ######################################## diff --git a/policy/modules/system/libraries.te b/policy/modules/system/libraries.te -index e5836d3..c76046b 100644 +index e5836d3..eae9427 100644 --- a/policy/modules/system/libraries.te +++ b/policy/modules/system/libraries.te @@ -61,7 +61,7 @@ allow ldconfig_t self:capability { dac_override sys_chroot }; @@ -66834,7 +66834,17 @@ index e5836d3..c76046b 100644 ifdef(`hide_broken_symptoms',` ifdef(`distro_gentoo',` # leaked fds from portage -@@ -131,6 +139,10 @@ optional_policy(` +@@ -114,6 +122,9 @@ ifdef(`hide_broken_symptoms',` + ') + ') + ++ dev_dontaudit_rw_lvm_control(ldconfig_t) ++ term_dontaudit_use_unallocated_ttys(ldconfig_t) ++ + optional_policy(` + unconfined_dontaudit_rw_tcp_sockets(ldconfig_t) + ') +@@ -131,6 +142,10 @@ optional_policy(` ') optional_policy(` @@ -66845,7 +66855,7 @@ index e5836d3..c76046b 100644 puppet_rw_tmp(ldconfig_t) ') -@@ -141,6 +153,3 @@ optional_policy(` +@@ -141,6 +156,3 @@ optional_policy(` rpm_manage_script_tmp_files(ldconfig_t) ') diff --git a/selinux-policy.spec b/selinux-policy.spec index 196be9c..d5c1773 100644 --- a/selinux-policy.spec +++ b/selinux-policy.spec @@ -17,7 +17,7 @@ Summary: SELinux policy configuration Name: selinux-policy Version: 3.10.0 -Release: 34%{?dist} +Release: 35%{?dist} License: GPLv2+ Group: System Environment/Base Source: serefpolicy-%{version}.tgz @@ -466,6 +466,9 @@ SELinux Reference policy mls base module. %endif %changelog +* Thu Sep 29 2011 Miroslav Grepl 3.10.0-35 +- Stop complaining about leaked file descriptors during install + * Thu Sep 29 2011 Miroslav Grepl 3.10.0-34 - Add support for Clustered Samba commands - Allow ricci_modrpm_t to send log msgs