Site Navigation:
bugfix selinux-policy-3.12.1-84.fc20 critical path bugfix update
Status:obsolete
Release: Fedora 20
Update ID: FEDORA-2013-17722
Builds: selinux-policy-3.12.1-84.fc20 (logs)
Pushed: False
Date Submitted: 2013-09-25 20:36:55
Date Released: 2013-09-26 23:13:14
Date Modified: 2013-09-30 21:06:26
Submitter: mgrepl
Karma: -3
Stable karma: 3
Unstable karma: -3
Details

Here is where you give an explanation of your update.

Bugs Fixed
1011672 - SELinux is preventing /usr/sbin/nginx from 'search' accesses on the directory mikhail.
1013201 - SELinux is preventing /usr/sbin/alsactl from using the 'sys_nice' capabilities.
1013206 - SELinux is preventing /usr/bin/python2.7 from 'search' accesses on the directory /dev/shm.
922155 - SELinux is preventing /usr/bin/kdm from 'create' accesses on the file .xsession-errors-:0.
960893 - SELinux is preventing /usr/lib/polkit-1/polkitd from 'read' accesses on the directory machine.
961741 - SELinux is preventing /usr/sbin/httpd from 'getattr' accesses on the file /etc/resolv.conf.
968158 - Selinux crashes epm/beam for ejabberd
979778 - type=AVC msg=audit(1372596951.357:1063): avc: denied { setgid } for pid=14478 comm="sshd" capability=6 scontext=guest_u:guest_r:guest_t:s0 tcontext=guest_u:guest_r:guest_t:s0 tclass=capability
984686 - strongswan file contexts should mirror the current ipsec contexts
984690 - strongswan needs a few extra permissions
986636 - SELinux is preventing /usr/lib/systemd/systemd-sysctl from 'sendto' accesses on the unix_dgram_socket /run/systemd/journal/socket.
987853 - SELinux is preventing /usr/bin/clamscan from 'getattr' accesses on the file /etc/selinux/targeted/contexts/users/staff_u.
988208 - SELinux is preventing /usr/sbin/httpd from 'write' accesses on the directory /etc/pki/ca-trust/source.
994627 - SELinux is preventing /usr/bin/aklog from 'getattr' accesses on the file /etc/openafs/ThisCell.
998162 - SELinux is preventing /usr/libexec/gdm-session-worker from using the 'transition' accesses on a process.
999584 - Packaged policy modules need a way to determine the selinux-policy version number
1000710 - SELinux is preventing /usr/sbin/rpcbind from 'search' accesses on the directory sss.
1002006 - avc: denied { read write } for pid=701 comm="hostname" path="/dev/pts/1" dev="devpts" ino=4 scontext=system_u:system_r:hostname_t:s0 tcontext=system_u:object_r:devpts_t:s0 tclass=chr_file
1009280 - SELinux is preventing /usr/bin/mpd from 'search' accesses on the directory /home/asinha/.mpd.
1009419 - request for new apache policy
971871 - [NetworkManager] SELinux is preventing /usr/libexec/nm-dhcp-helper from write access on the sock_file private-dhcp
Feedback
bodhi - 2013-09-25 20:40:29
This update has been submitted for testing by mgrepl.
bodhi - 2013-09-26 16:42:55
This update is currently being pushed to the Fedora 20 testing updates repository.
bodhi - 2013-09-27 00:43:54
This update has been pushed to testing
bitlord - 2013-09-27 05:25:00
Updating this package gives some "errors", I can give -1 if needed, file bug report ... Updating : selinux-policy-3.12.1-83.fc20.noarch 77/362 libsemanage.semanage_seuser_set_sename: SELinux user system_u does not exist (No such file or directory). libsemanage.seuser_parse: could not parse seuser record (Invalid argument). libsemanage.dbase_file_cache: could not cache file database (Invalid argument). libsemanage.semanage_base_merge_components: could not merge local modifications into policy (Invalid argument). semodule: Failed!
orion - 2013-09-27 14:58:52
I get the same errors
besser82 - 2013-09-28 12:35:08
throws errors here, too :(
nonamedotc - 2013-09-28 14:55:05
i am not seeing any selinux alerts with this update.
ankursinha - 2013-09-29 08:37:11
The error should be fixed by the libsemanage update -> https://bugzilla.redhat.com/show_bug.cgi?id=1009280#c13
ankursinha - 2013-09-29 14:36:19
Doesn't entirely fix 1009280. https://bugzilla.redhat.com/show_bug.cgi?id=1009280#c15 @orion, @besser82: your issue is not caused by this update, please give it karma if it works for you. The libsemanage update has also been modified etc. already and should work for you now.
bodhi - 2013-09-30 21:06:13
mgrepl has edited this update. New build(s): selinux-policy-3.12.1-84.fc20. Removed build(s): selinux-policy-3.12.1-83.fc20.
bodhi - 2013-09-30 21:09:29
This update has been submitted for testing by mgrepl.
autoqa - 2013-09-30 21:16:18
AutoQA: depcheck test PASSED on x86_64. Result log: http://autoqa.fedoraproject.org/report/13ahs (results are informative only)
autoqa - 2013-09-30 21:16:45
AutoQA: depcheck test PASSED on i386. Result log: http://autoqa.fedoraproject.org/report/13aht (results are informative only)
bodhi - 2013-10-01 22:47:48
This update is currently being pushed to the Fedora 20 testing updates repository.
bodhi - 2013-10-02 06:44:02
This update has been pushed to testing
kparal (proventesters) - 2013-10-02 17:15:19
I see the same errors on update as bitlord posted.
bodhi - 2013-10-02 17:15:24
This update has reached a karma of -3 and is being unpushed and marked as unstable
jorti - 2013-10-07 08:50:22
Bug #999584 is fixed with this update

Add a comment

Tip: Login to impact how quickly this update gets pushed or unpushed.
obfuscated letters