ELBA-2015-0985

ELBA-2015-0985 - selinux-policy bug fix and enhancement update

Type:BUG
Impact:NA
Release Date:2015-05-12

Description


[3.13.1-23.0.1.el7_1.7]
- Allow ocfs2_dlmfs to be mounted with ocfs2_dlmfs_t type.

[3.13.1-23.el7_7.7]
- Label /usr/libexec/postgresql-ctl as postgresql_exec_t
- Update virt_read_pid_files() interface to allow read also symlinks with virt_var_run_t type.
- Add labeling for /usr/libexec/mysqld_safe-scl-helper.
- Add support for /usr/libexec/mongodb-scl-helper RHSCL helper script.
Resolves:#1209942
- Allow mysqld_t to use pam.It is needed by MariDB if auth_apm.so auth plugin is used
Resolves:#1214236
- Added label mysqld_etc_t for /etc/my.cnf.d/ dir.
Resolves:#1214235
- Add support for mongod/mongos systemd unit files.
Resolves:#1214194

[3.13.1-23.el7_7.6]
- Make mongodb_t as nsswitch domain
- ALlow mongod execmem by default
Resolves:#1212970

[3.13.1-23.el7_7.5]
- Update policy/mls for sockets related to accept.
Resolves:#1207549

[3.13.1-23.el7_7.4]
- Update policy/mls for sockets. Rules were contradictory.
Resolves:#1207549

[3.13.1-23.el7_7.3]
- Dontaudit ifconfig writing inhertited /var/log/pluto.log.
Resolves:#1205580
- Update init_rw_tcp_sockets() interface to use getopt and setopt.

[3.13.1-23.el7_7.2]
- Use enable_mls instead of enabled_mls in userdomain.if
Resolves:#1204778

[3.13.1-23.el7_7.1]
- Allow a user to login with different security level via ssh.
Resolves:#1204778




Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) selinux-policy-3.13.1-23.0.1.el7_1.7.src.rpm6ad9170debb4734ab1041bf4ca37d645aab7d68997539b330a86eea5b978d5c0ELBA-2024-12651ol7_x86_64_latest_archive
selinux-policy-3.13.1-23.0.1.el7_1.7.src.rpm6ad9170debb4734ab1041bf4ca37d645aab7d68997539b330a86eea5b978d5c0ELBA-2024-12651ol7_x86_64_optional_archive
selinux-policy-3.13.1-23.0.1.el7_1.7.src.rpm6ad9170debb4734ab1041bf4ca37d645aab7d68997539b330a86eea5b978d5c0ELBA-2024-12651ol7_x86_64_u1_patch
selinux-policy-3.13.1-23.0.1.el7_1.7.noarch.rpm246cf1555bf7d3ef6a74b5d2e2677c95c5fe2891a330b0bca995460b3966c300ELBA-2024-12651ol7_x86_64_latest_archive
selinux-policy-3.13.1-23.0.1.el7_1.7.noarch.rpm246cf1555bf7d3ef6a74b5d2e2677c95c5fe2891a330b0bca995460b3966c300ELBA-2024-12651ol7_x86_64_u1_patch
selinux-policy-devel-3.13.1-23.0.1.el7_1.7.noarch.rpma90f674556358dfe6c93526e58b767350254339c5da4c289d3f968f51778212fELBA-2024-12651ol7_x86_64_latest_archive
selinux-policy-devel-3.13.1-23.0.1.el7_1.7.noarch.rpma90f674556358dfe6c93526e58b767350254339c5da4c289d3f968f51778212fELBA-2024-12651ol7_x86_64_u1_patch
selinux-policy-doc-3.13.1-23.0.1.el7_1.7.noarch.rpm22248fc30f546aacb34b843d69a9b8cb8ad1aa0405deb8794930c1eaa9f7c4cbELBA-2024-12651ol7_x86_64_optional_archive
selinux-policy-minimum-3.13.1-23.0.1.el7_1.7.noarch.rpmf5704d9e0538de212fc229dde4a4837a92e24901e8ffa223c62b3ab37be21606ELBA-2024-12651ol7_x86_64_latest_archive
selinux-policy-minimum-3.13.1-23.0.1.el7_1.7.noarch.rpmf5704d9e0538de212fc229dde4a4837a92e24901e8ffa223c62b3ab37be21606ELBA-2024-12651ol7_x86_64_u1_patch
selinux-policy-mls-3.13.1-23.0.1.el7_1.7.noarch.rpm6cc7e7973900d025d9401d28bd2a29639de29d14a32d9fd69b0fe35eb3f6ec92ELBA-2024-12651ol7_x86_64_latest_archive
selinux-policy-mls-3.13.1-23.0.1.el7_1.7.noarch.rpm6cc7e7973900d025d9401d28bd2a29639de29d14a32d9fd69b0fe35eb3f6ec92ELBA-2024-12651ol7_x86_64_u1_patch
selinux-policy-sandbox-3.13.1-23.0.1.el7_1.7.noarch.rpm87618c0677f443bad85b2cd2e1c330724808c443d44bdcbfadd1e8106ec03a11ELBA-2024-12651ol7_x86_64_optional_archive
selinux-policy-targeted-3.13.1-23.0.1.el7_1.7.noarch.rpm5cf5fbe6a0275be9c56843ab7a44999ea9374481a6a3dafff3953c8c1308b99bELBA-2024-12651ol7_x86_64_latest_archive
selinux-policy-targeted-3.13.1-23.0.1.el7_1.7.noarch.rpm5cf5fbe6a0275be9c56843ab7a44999ea9374481a6a3dafff3953c8c1308b99bELBA-2024-12651ol7_x86_64_u1_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete