stable

selinux-policy-3.13.1-260.17.fc26

FEDORA-2017-39e6a2f7e7 created by lvrabec 7 years ago for Fedora 26

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2017-39e6a2f7e7

This update has been submitted for testing by lvrabec.

7 years ago

This update has been pushed to testing.

7 years ago
User Icon cserpentis commented & provided feedback 7 years ago
karma

works for me in a VM

lvrabec edited this update.

7 years ago

lvrabec edited this update.

New build(s):

  • selinux-policy-3.13.1-260.17.fc26

Removed build(s):

  • selinux-policy-3.13.1-260.16.fc26

Karma has been reset.

7 years ago

This update has been submitted for testing by lvrabec.

7 years ago

This update has been pushed to testing.

7 years ago
User Icon jonathancalloway commented & provided feedback 7 years ago
karma

No regressions noted

User Icon dustymabe commented & provided feedback 7 years ago
karma

I see failures that were introduced with this update for the automated atomic host tests:

Nov 25 18:05:56 atomic-host-jobs-24-55e2217d.localdomain audit[727]: USER_AVC pid=727 uid=81 auid=4294967295 ses=4294967295 subj=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 msg='avc:  denied  { send_msg } for msgtype=method_call interface=org.freedesktop.systemd1.Manager member=LookupDynamicUserByName dest=org.freedesktop.systemd1 spid=1105 tpid=1 scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:init_t:s0 tclass=dbus
Nov 25 18:06:00 atomic-host-jobs-24-55e2217d.localdomain audit[727]: USER_AVC pid=727 uid=81 auid=4294967295 ses=4294967295 subj=system_u:system_r:system_dbusd_t:s0-s0:c0.c1023 msg='avc:  denied  { send_msg } for msgtype=method_call interface=org.freedesktop.systemd1.Manager member=LookupDynamicUserByName dest=org.freedesktop.systemd1 spid=1107 tpid=1 scontext=system_u:system_r:sshd_t:s0-s0:c0.c1023 tcontext=system_u:system_r:init_t:s0 tclass=dbus

Bodhi is disabling automatic push to stable due to negative karma. The maintainer may push manually if they determine that the issue is not severe.

7 years ago
User Icon dcallagh commented & provided feedback 7 years ago

Fixes #1414366

BZ#1414366 avc: denied { search } for pid=3096 comm="spamassassin" name=".maildir" dev="dm-13" ino=13107213 scontext=system_u:system_r:spamc_t:s0 tcontext=unconfined_u:object_r:mail_home_rw_t:s0 tclass=dir permissive=0
User Icon pwalter commented & provided feedback 7 years ago
karma

Works

User Icon bowlofeggs commented & provided feedback 6 years ago
karma

No issues noted in a GNOME VM.

This update has been submitted for batched by lvrabec.

6 years ago

This update has been submitted for stable by bodhi.

6 years ago

This update has been pushed to stable.

6 years ago

Please login to add feedback.

Metadata
Type
bugfix
Severity
high
Karma
2
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
disabled
Dates
submitted
7 years ago
in testing
7 years ago
in stable
6 years ago
modified
7 years ago
BZ#1414366 avc: denied { search } for pid=3096 comm="spamassassin" name=".maildir" dev="dm-13" ino=13107213 scontext=system_u:system_r:spamc_t:s0 tcontext=unconfined_u:object_r:mail_home_rw_t:s0 tclass=dir permissive=0
0
1
BZ#1417584 SELinux is preventing udev-add-printe from using the 'execmem' accesses on a process.
0
0
BZ#1444546 SELinux is preventing php-fpm from 'execute' accesses on the file 2F616E6F6E5F6875676570616765202864656C6574656429.
0
0
BZ#1474389 SELinux is preventing tlp from 'write' accesses on the file lock_tlp.
0
0
BZ#1487814 SELinux is preventing chmod from 'setattr' accesses on the directory zapfding.
0
0
BZ#1507191 SELinux is preventing gssproxy from 'read' accesses on the file unix.
0
0
BZ#1508712 SELinux is preventing cat from 'getattr' accesses on the file /proc/sys/vm/dirty_bytes.
0
0
BZ#1508714 Missing selinux file context for /usr/sbin/sln
0
0
BZ#1512367 SELinux is preventing logger from 'read' accesses on the lnk_file log.
0
0
BZ#1512476 SELinux is preventing sendmail from 'write' accesses on the sock_file system_bus_socket.
0
0
BZ#1512500 SELinux is preventing aide from 'write' accesses on the sock_file /var/lib/sss/pipes/nss.
0
0
BZ#1513518 SELinux is preventing redis-server from 'write' accesses on the directory /tmp.
0
0
BZ#1514350 SELinux is preventing sh from 'execute' accesses on the file /usr/lib/locale/locale-archive.
0
0
BZ#1515095 SELinux is preventing logger from 'read' accesses on the lnk_file log.
0
0

Automated Test Results