ELBA-2017-0084

ELBA-2017-0084 - selinux-policy bug fix update

Type:BUG
Severity:NA
Release Date:2017-01-17

Description


[3.13.1-102.0.2.13]
- selinux-policy includes updated docker selinux policy [Orabug 24697785] (thomas.tanaka)
- Allow ocfs2_dlmfs to be mounted with ocfs2_dlmfs_t type.

[3.13.1-102.13]
- Allow systemd container to read/write usermodehelperstate
Resolves: rhbz#1408126
- Allow glusterd_t to bind on glusterd_port_t udp ports.
Resolves: rhbz#1408128

[3.13.1-102.12]
- Allow glusterd_t to bind on glusterd_port_t udp ports.
Resolves: rhbz#1408128
- Allow glusterd_t send signals to userdomain. Label new glusterd binaries as glusterd_exec_t
Resolves: rhbz#1408128
- Fixes for containers
- Allow containers to attempt to write to unix_sysctls.
- Allow cotainers to use the FD's leaked to them from parent processes.
Resolves: rhbz#1408126
- Allow systemd to stop glusterd_t domains.
Resolves: rhbz#1408125

[3.13.1-102.11]
- Update ctdbd_t policy to reflect all changes.
Resolves: rhbz#1403266

[3.13.1-102.10]
- Allow ctdbd_t domain transition to rpcd_t
Resolves:rhbz#1403266

[3.13.1-102.9]
- Make working CTDB:NFS: CTDB failover from selinux-policy POV
Resolves: rhbz#1403266

[3.13.1-102.8]
- Allow puppetagent_t to access timedated dbus. Use the systemd_dbus_chat_timedated interface to allow puppetagent_t the access.
Resolves: rhbz#1400505




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete