Fedora 23 Update: selinux-policy-3.13.1-154.fc23

updates at fedoraproject.org updates at fedoraproject.org
Fri Nov 13 22:56:54 UTC 2015


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-6b85d80ba8
2015-11-13 21:24:23.127903
--------------------------------------------------------------------------------

Name        : selinux-policy
Product     : Fedora 23
Version     : 3.13.1
Release     : 154.fc23
URL         : http://github.com/TresysTechnology/refpolicy/wiki
Summary     : SELinux policy configuration
Description :
SELinux Base package for SELinux Reference Policy - modular.
Based off of reference policy: Checked out revision  2.20091117

--------------------------------------------------------------------------------
Update Information:

  selinux-policy-3.13.1-154.fc23  - The ABRT coredump handler has code to
emulate default core file creation The handler runs in a separate process with
abrt_dump_oops_t SELinux process type. abrt-hook-ccpp also saves the core dump
file in the very same way as kernel does and a user can specify CWD location for
a coredump. abrt-hook-ccpp has been made as a SELinux aware apps to create this
coredumps with correct labeling and with this commit the policy rules have been
updated to allow access all non security files on a system. - Since /dev/log is
a symlink, we need to allow relabelto also symlink. This commit update
logging_relabel_devlog_dev() interface to allow it. - systemd-user has
pam_selinux support and needs to able to compute user security context if init_t
is not unconfined domain.   ----  More info:
http://koji.fedoraproject.org/koji/buildinfo?buildID=694542
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1276305 - SELinux is preventing abrt-hook-ccpp from using the 'sigchld' accesses on a process.
        https://bugzilla.redhat.com/show_bug.cgi?id=1276305
  [ 2 ] Bug #1273733 - SELinux issues with latest chrony (F23)
        https://bugzilla.redhat.com/show_bug.cgi?id=1273733
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program. Use
su -c 'yum update selinux-policy' at the command line.
For more information, refer to "Managing Software with yum",
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list