rpms/selinux-policy/F-9 policy-20071130.patch, 1.163, 1.164 selinux-policy.spec, 1.678, 1.679
Daniel J Walsh (dwalsh)
fedora-extras-commits at redhat.com
Fri May 30 14:44:15 UTC 2008
Author: dwalsh
Update of /cvs/extras/rpms/selinux-policy/F-9
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv6406
Modified Files:
policy-20071130.patch selinux-policy.spec
Log Message:
* Fri May 30 2008 Dan Walsh <dwalsh at redhat.com> 3.3.1-62
- Allow policykit_resolve to ptrace user processes
policy-20071130.patch:
Index: policy-20071130.patch
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-9/policy-20071130.patch,v
retrieving revision 1.163
retrieving revision 1.164
diff -u -r1.163 -r1.164
--- policy-20071130.patch 30 May 2008 13:30:06 -0000 1.163
+++ policy-20071130.patch 30 May 2008 14:43:33 -0000 1.164
@@ -19725,8 +19725,8 @@
+
diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/polkit.te serefpolicy-3.3.1/policy/modules/services/polkit.te
--- nsaserefpolicy/policy/modules/services/polkit.te 1969-12-31 19:00:00.000000000 -0500
-+++ serefpolicy-3.3.1/policy/modules/services/polkit.te 2008-05-30 09:28:55.242962000 -0400
-@@ -0,0 +1,214 @@
++++ serefpolicy-3.3.1/policy/modules/services/polkit.te 2008-05-30 10:28:34.023521000 -0400
+@@ -0,0 +1,215 @@
+policy_module(polkit_auth,1.0.0)
+
+########################################
@@ -19928,6 +19928,7 @@
+
+logging_send_syslog_msg(polkit_resolve_t)
+userdom_read_all_users_state(polkit_resolve_t)
++userdom_ptrace_all_users(polkit_resolve_t)
+
+optional_policy(`
+ dbus_system_bus_client_template(polkit_resolve, polkit_resolve_t)
@@ -33289,7 +33290,7 @@
+/root(/.*)? gen_context(system_u:object_r:admin_home_t,s0)
diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/userdomain.if serefpolicy-3.3.1/policy/modules/system/userdomain.if
--- nsaserefpolicy/policy/modules/system/userdomain.if 2008-02-26 08:23:09.000000000 -0500
-+++ serefpolicy-3.3.1/policy/modules/system/userdomain.if 2008-05-29 12:12:15.000000000 -0400
++++ serefpolicy-3.3.1/policy/modules/system/userdomain.if 2008-05-30 10:42:18.613335000 -0400
@@ -29,9 +29,14 @@
')
Index: selinux-policy.spec
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-9/selinux-policy.spec,v
retrieving revision 1.678
retrieving revision 1.679
diff -u -r1.678 -r1.679
--- selinux-policy.spec 30 May 2008 13:30:07 -0000 1.678
+++ selinux-policy.spec 30 May 2008 14:43:33 -0000 1.679
@@ -17,7 +17,7 @@
Summary: SELinux policy configuration
Name: selinux-policy
Version: 3.3.1
-Release: 61%{?dist}
+Release: 62%{?dist}
License: GPLv2+
Group: System Environment/Base
Source: serefpolicy-%{version}.tgz
@@ -385,6 +385,9 @@
%endif
%changelog
+* Fri May 30 2008 Dan Walsh <dwalsh at redhat.com> 3.3.1-62
+- Allow policykit_resolve to ptrace user processes
+
* Fri May 30 2008 Dan Walsh <dwalsh at redhat.com> 3.3.1-61
- Allow policykit_resolve to read users process table
More information about the fedora-extras-commits
mailing list