rpms/selinux-policy/F-9 policy-20071130.patch, 1.163, 1.164 selinux-policy.spec, 1.678, 1.679

Daniel J Walsh (dwalsh) fedora-extras-commits at redhat.com
Fri May 30 14:44:15 UTC 2008


Author: dwalsh

Update of /cvs/extras/rpms/selinux-policy/F-9
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv6406

Modified Files:
	policy-20071130.patch selinux-policy.spec 
Log Message:
* Fri May 30 2008 Dan Walsh <dwalsh at redhat.com> 3.3.1-62
- Allow policykit_resolve to ptrace user processes


policy-20071130.patch:

Index: policy-20071130.patch
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-9/policy-20071130.patch,v
retrieving revision 1.163
retrieving revision 1.164
diff -u -r1.163 -r1.164
--- policy-20071130.patch	30 May 2008 13:30:06 -0000	1.163
+++ policy-20071130.patch	30 May 2008 14:43:33 -0000	1.164
@@ -19725,8 +19725,8 @@
 +
 diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/services/polkit.te serefpolicy-3.3.1/policy/modules/services/polkit.te
 --- nsaserefpolicy/policy/modules/services/polkit.te	1969-12-31 19:00:00.000000000 -0500
-+++ serefpolicy-3.3.1/policy/modules/services/polkit.te	2008-05-30 09:28:55.242962000 -0400
-@@ -0,0 +1,214 @@
++++ serefpolicy-3.3.1/policy/modules/services/polkit.te	2008-05-30 10:28:34.023521000 -0400
+@@ -0,0 +1,215 @@
 +policy_module(polkit_auth,1.0.0)
 +
 +########################################
@@ -19928,6 +19928,7 @@
 +
 +logging_send_syslog_msg(polkit_resolve_t)
 +userdom_read_all_users_state(polkit_resolve_t)
++userdom_ptrace_all_users(polkit_resolve_t)
 +
 +optional_policy(`
 +	dbus_system_bus_client_template(polkit_resolve, polkit_resolve_t)
@@ -33289,7 +33290,7 @@
 +/root(/.*)?	 	gen_context(system_u:object_r:admin_home_t,s0)
 diff --exclude-from=exclude -N -u -r nsaserefpolicy/policy/modules/system/userdomain.if serefpolicy-3.3.1/policy/modules/system/userdomain.if
 --- nsaserefpolicy/policy/modules/system/userdomain.if	2008-02-26 08:23:09.000000000 -0500
-+++ serefpolicy-3.3.1/policy/modules/system/userdomain.if	2008-05-29 12:12:15.000000000 -0400
++++ serefpolicy-3.3.1/policy/modules/system/userdomain.if	2008-05-30 10:42:18.613335000 -0400
 @@ -29,9 +29,14 @@
  	')
  


Index: selinux-policy.spec
===================================================================
RCS file: /cvs/extras/rpms/selinux-policy/F-9/selinux-policy.spec,v
retrieving revision 1.678
retrieving revision 1.679
diff -u -r1.678 -r1.679
--- selinux-policy.spec	30 May 2008 13:30:07 -0000	1.678
+++ selinux-policy.spec	30 May 2008 14:43:33 -0000	1.679
@@ -17,7 +17,7 @@
 Summary: SELinux policy configuration
 Name: selinux-policy
 Version: 3.3.1
-Release: 61%{?dist}
+Release: 62%{?dist}
 License: GPLv2+
 Group: System Environment/Base
 Source: serefpolicy-%{version}.tgz
@@ -385,6 +385,9 @@
 %endif
 
 %changelog
+* Fri May 30 2008 Dan Walsh <dwalsh at redhat.com> 3.3.1-62
+- Allow policykit_resolve to ptrace user processes
+
 * Fri May 30 2008 Dan Walsh <dwalsh at redhat.com> 3.3.1-61
 - Allow policykit_resolve to read users process table
 




More information about the fedora-extras-commits mailing list