Fedora 22 Update: selinux-policy-3.13.1-116.fc22
updates at fedoraproject.org
updates at fedoraproject.org
Tue Mar 10 02:59:39 UTC 2015
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-3508
2015-03-09 04:44:16
--------------------------------------------------------------------------------
Name : selinux-policy
Product : Fedora 22
Version : 3.13.1
Release : 116.fc22
URL : http://github.com/TresysTechnology/refpolicy/wiki
Summary : SELinux policy configuration
Description :
SELinux Reference Policy - modular.
Based off of reference policy: Checked out revision 2.20091117
--------------------------------------------------------------------------------
Update Information:
More info: http://koji.fedoraproject.org/koji/buildinfo?buildID=618613
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #999613 - SELinux is preventing /usr/libexec/nss_pcache from 'write' accesses on the directory /etc/pki/ca-trust/source.
https://bugzilla.redhat.com/show_bug.cgi?id=999613
[ 2 ] Bug #1016190 - SELinux is preventing /usr/lib/systemd/systemd-logind from 'read' accesses on the chr_file urandom.
https://bugzilla.redhat.com/show_bug.cgi?id=1016190
[ 3 ] Bug #1016332 - sysadm_r cannot use iotop
https://bugzilla.redhat.com/show_bug.cgi?id=1016332
[ 4 ] Bug #1059304 - systemd-tmpfiles-setup.service fails on selinux disabled machines
https://bugzilla.redhat.com/show_bug.cgi?id=1059304
[ 5 ] Bug #1060415 - SELinux is preventing /usr/libexec/geoclue from 'read' accesses on the file .
https://bugzilla.redhat.com/show_bug.cgi?id=1060415
[ 6 ] Bug #1082423 - SELinux is preventing /usr/lib64/firefox/plugin-container from 'create' accesses on the directory .
https://bugzilla.redhat.com/show_bug.cgi?id=1082423
[ 7 ] Bug #1094529 - SELinux is preventing /usr/bin/systemctl from using the 'net_admin' capabilities.
https://bugzilla.redhat.com/show_bug.cgi?id=1094529
[ 8 ] Bug #1100976 - [PATCH] contrib: Add KMSCon policy module
https://bugzilla.redhat.com/show_bug.cgi?id=1100976
[ 9 ] Bug #1112656 - Duplicate .fc entry for telepathy-gabble and Grilo plugin bookmarks
https://bugzilla.redhat.com/show_bug.cgi?id=1112656
[ 10 ] Bug #1112823 - Move Openstack Swift ports from 6000 to 6200
https://bugzilla.redhat.com/show_bug.cgi?id=1112823
[ 11 ] Bug #1112870 - SELinux is preventing /usr/sbin/agetty from 'execute' accesses on the file /usr/bin/plymouth.
https://bugzilla.redhat.com/show_bug.cgi?id=1112870
[ 12 ] Bug #1112997 - SELinux is preventing /usr/sbin/ssmtp from 'write' accesses on the fifo_file .
https://bugzilla.redhat.com/show_bug.cgi?id=1112997
[ 13 ] Bug #1114245 - SELinux is preventing /usr/libexec/dovecot/dovecot-lda from using the 'signull' accesses on a process.
https://bugzilla.redhat.com/show_bug.cgi?id=1114245
[ 14 ] Bug #1132504 - Missing/bad policy for few files in mongodb and mongodb-server pkgs
https://bugzilla.redhat.com/show_bug.cgi?id=1132504
[ 15 ] Bug #1173423 - SELinux is preventing docker from 'write' accesses on the file /etc/docker/key.json.
https://bugzilla.redhat.com/show_bug.cgi?id=1173423
[ 16 ] Bug #1174677 - SELinux is preventing /usr/sbin/sm-notify from 'write' accesses on the file nlm_end_grace.
https://bugzilla.redhat.com/show_bug.cgi?id=1174677
[ 17 ] Bug #1186418 - selinux stops network manager (vpnc plugin) from updating /etc/resolv.conf
https://bugzilla.redhat.com/show_bug.cgi?id=1186418
[ 18 ] Bug #1195327 - SELinux is preventing firewalld from 'relabelfrom' accesses on the file /etc/firewalld/zones/FedoraWorkstation.xml.old.
https://bugzilla.redhat.com/show_bug.cgi?id=1195327
[ 19 ] Bug #1197190 - SELinux is preventing abrt-dump-journ from 'read' accesses on the file /etc/passwd.
https://bugzilla.redhat.com/show_bug.cgi?id=1197190
[ 20 ] Bug #1199500 - SELinux denials block deployment of FreeIPA domain controller role
https://bugzilla.redhat.com/show_bug.cgi?id=1199500
[ 21 ] Bug #1114246 - SELinux is preventing /usr/sbin/mdadm from 'getattr' accesses on the fifo_file /run/systemd/initctl/fifo.
https://bugzilla.redhat.com/show_bug.cgi?id=1114246
[ 22 ] Bug #1114247 - SELinux is preventing /usr/sbin/sshd from using the 'signal' accesses on a process.
https://bugzilla.redhat.com/show_bug.cgi?id=1114247
[ 23 ] Bug #1115040 - SELinux prevents collectd access to /sys/kernel/config
https://bugzilla.redhat.com/show_bug.cgi?id=1115040
[ 24 ] Bug #1115212 - Continuation of OSTree labeling
https://bugzilla.redhat.com/show_bug.cgi?id=1115212
[ 25 ] Bug #1116165 - SELinux is preventing /usr/bin/mandb from using the 'fsetid' capabilities.
https://bugzilla.redhat.com/show_bug.cgi?id=1116165
[ 26 ] Bug #1123047 - cannot run pkcsslotd
https://bugzilla.redhat.com/show_bug.cgi?id=1123047
[ 27 ] Bug #1134201 - SELinux is preventing /var/lib/docker/init/dockerinit-1.2.0 from 'mounton' accesses on the file /proc/kcore.
https://bugzilla.redhat.com/show_bug.cgi?id=1134201
[ 28 ] Bug #1135523 - RabbitMQ denied name_bind for clustering port
https://bugzilla.redhat.com/show_bug.cgi?id=1135523
[ 29 ] Bug #1140238 - AVCs on /etc/.updated /var/.updated after 'dnf upgrade'
https://bugzilla.redhat.com/show_bug.cgi?id=1140238
[ 30 ] Bug #1151646 - SELinux is preventing /usr/bin/mandb from 'getattr' accesses on the filesystem /.
https://bugzilla.redhat.com/show_bug.cgi?id=1151646
[ 31 ] Bug #1187017 - please add rules for abrt-dump-journal-core service that reports coredumps from journald
https://bugzilla.redhat.com/show_bug.cgi?id=1187017
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update selinux-policy' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
More information about the package-announce
mailing list