Fedora 22 Update: selinux-policy-3.13.1-116.fc22

updates at fedoraproject.org updates at fedoraproject.org
Tue Mar 10 02:59:39 UTC 2015


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-3508
2015-03-09 04:44:16
--------------------------------------------------------------------------------

Name        : selinux-policy
Product     : Fedora 22
Version     : 3.13.1
Release     : 116.fc22
URL         : http://github.com/TresysTechnology/refpolicy/wiki
Summary     : SELinux policy configuration
Description :
SELinux Reference Policy - modular.
Based off of reference policy: Checked out revision  2.20091117

--------------------------------------------------------------------------------
Update Information:

More info: http://koji.fedoraproject.org/koji/buildinfo?buildID=618613
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #999613 - SELinux is preventing /usr/libexec/nss_pcache from 'write' accesses on the directory /etc/pki/ca-trust/source.
        https://bugzilla.redhat.com/show_bug.cgi?id=999613
  [ 2 ] Bug #1016190 - SELinux is preventing /usr/lib/systemd/systemd-logind from 'read' accesses on the chr_file urandom.
        https://bugzilla.redhat.com/show_bug.cgi?id=1016190
  [ 3 ] Bug #1016332 - sysadm_r cannot use iotop
        https://bugzilla.redhat.com/show_bug.cgi?id=1016332
  [ 4 ] Bug #1059304 - systemd-tmpfiles-setup.service fails on selinux disabled machines
        https://bugzilla.redhat.com/show_bug.cgi?id=1059304
  [ 5 ] Bug #1060415 - SELinux is preventing /usr/libexec/geoclue from 'read' accesses on the file .
        https://bugzilla.redhat.com/show_bug.cgi?id=1060415
  [ 6 ] Bug #1082423 - SELinux is preventing /usr/lib64/firefox/plugin-container from 'create' accesses on the directory .
        https://bugzilla.redhat.com/show_bug.cgi?id=1082423
  [ 7 ] Bug #1094529 - SELinux is preventing /usr/bin/systemctl from using the 'net_admin' capabilities.
        https://bugzilla.redhat.com/show_bug.cgi?id=1094529
  [ 8 ] Bug #1100976 - [PATCH] contrib: Add KMSCon policy module
        https://bugzilla.redhat.com/show_bug.cgi?id=1100976
  [ 9 ] Bug #1112656 - Duplicate .fc entry for telepathy-gabble and Grilo plugin bookmarks
        https://bugzilla.redhat.com/show_bug.cgi?id=1112656
  [ 10 ] Bug #1112823 - Move Openstack Swift ports from 6000 to 6200
        https://bugzilla.redhat.com/show_bug.cgi?id=1112823
  [ 11 ] Bug #1112870 - SELinux is preventing /usr/sbin/agetty from 'execute' accesses on the file /usr/bin/plymouth.
        https://bugzilla.redhat.com/show_bug.cgi?id=1112870
  [ 12 ] Bug #1112997 - SELinux is preventing /usr/sbin/ssmtp from 'write' accesses on the fifo_file .
        https://bugzilla.redhat.com/show_bug.cgi?id=1112997
  [ 13 ] Bug #1114245 - SELinux is preventing /usr/libexec/dovecot/dovecot-lda from using the 'signull' accesses on a process.
        https://bugzilla.redhat.com/show_bug.cgi?id=1114245
  [ 14 ] Bug #1132504 - Missing/bad policy for few files in mongodb and mongodb-server pkgs
        https://bugzilla.redhat.com/show_bug.cgi?id=1132504
  [ 15 ] Bug #1173423 - SELinux is preventing docker from 'write' accesses on the file /etc/docker/key.json.
        https://bugzilla.redhat.com/show_bug.cgi?id=1173423
  [ 16 ] Bug #1174677 - SELinux is preventing /usr/sbin/sm-notify from 'write' accesses on the file nlm_end_grace.
        https://bugzilla.redhat.com/show_bug.cgi?id=1174677
  [ 17 ] Bug #1186418 - selinux stops network manager (vpnc plugin) from updating /etc/resolv.conf
        https://bugzilla.redhat.com/show_bug.cgi?id=1186418
  [ 18 ] Bug #1195327 - SELinux is preventing firewalld from 'relabelfrom' accesses on the file /etc/firewalld/zones/FedoraWorkstation.xml.old.
        https://bugzilla.redhat.com/show_bug.cgi?id=1195327
  [ 19 ] Bug #1197190 - SELinux is preventing abrt-dump-journ from 'read' accesses on the file /etc/passwd.
        https://bugzilla.redhat.com/show_bug.cgi?id=1197190
  [ 20 ] Bug #1199500 - SELinux denials block deployment of FreeIPA domain controller role
        https://bugzilla.redhat.com/show_bug.cgi?id=1199500
  [ 21 ] Bug #1114246 - SELinux is preventing /usr/sbin/mdadm from 'getattr' accesses on the fifo_file /run/systemd/initctl/fifo.
        https://bugzilla.redhat.com/show_bug.cgi?id=1114246
  [ 22 ] Bug #1114247 - SELinux is preventing /usr/sbin/sshd from using the 'signal' accesses on a process.
        https://bugzilla.redhat.com/show_bug.cgi?id=1114247
  [ 23 ] Bug #1115040 - SELinux prevents collectd access to /sys/kernel/config
        https://bugzilla.redhat.com/show_bug.cgi?id=1115040
  [ 24 ] Bug #1115212 - Continuation of OSTree labeling
        https://bugzilla.redhat.com/show_bug.cgi?id=1115212
  [ 25 ] Bug #1116165 - SELinux is preventing /usr/bin/mandb from using the 'fsetid' capabilities.
        https://bugzilla.redhat.com/show_bug.cgi?id=1116165
  [ 26 ] Bug #1123047 - cannot run pkcsslotd
        https://bugzilla.redhat.com/show_bug.cgi?id=1123047
  [ 27 ] Bug #1134201 - SELinux is preventing /var/lib/docker/init/dockerinit-1.2.0 from 'mounton' accesses on the file /proc/kcore.
        https://bugzilla.redhat.com/show_bug.cgi?id=1134201
  [ 28 ] Bug #1135523 - RabbitMQ denied name_bind for clustering port
        https://bugzilla.redhat.com/show_bug.cgi?id=1135523
  [ 29 ] Bug #1140238 - AVCs on /etc/.updated /var/.updated after 'dnf upgrade'
        https://bugzilla.redhat.com/show_bug.cgi?id=1140238
  [ 30 ] Bug #1151646 - SELinux is preventing /usr/bin/mandb from 'getattr' accesses on the filesystem /.
        https://bugzilla.redhat.com/show_bug.cgi?id=1151646
  [ 31 ] Bug #1187017 - please add  rules for abrt-dump-journal-core service that reports coredumps from journald
        https://bugzilla.redhat.com/show_bug.cgi?id=1187017
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update selinux-policy' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list