[ubuntu/lucid] policycoreutils 2.0.77-1ubuntu1 (Accepted)

Kees Cook kees at ubuntu.com
Sat Dec 12 17:40:20 GMT 2009


policycoreutils (2.0.77-1ubuntu1) lucid; urgency=low

  * Merge from Debian testing.  Remaining changes:
    - debian/postinst: move restorecon to a higher startup level.

policycoreutils (2.0.77-1) unstable; urgency=low

  * New upstream version.
    + Fixed bug preventing semanage node -a from working
      from Chad Sellers
    + Fixed bug preventing semanage fcontext -l from working
      from Chad Sellers
    + Remove setrans management from semanage, as it does not work
      from Dan Walsh.
    + Move load_policy from /usr/sbin to /sbin from Dan Walsh.

policycoreutils (2.0.75-1) unstable; urgency=low

  * New upstream point release
    + Factor out restoring logic from setfiles.c into restore.c

policycoreutils (2.0.74-1) unstable; urgency=low

  * New upstream point release
    + Change semodule upgrade behavior to install even if the module
    + is not present from Dan Walsh.
    + Make setfiles label if selinux is disabled and a seclabel aware
    + kernel is running from Caleb Case.
    + Clarify forkpty() error message in run_init from Manoj Srivastava.
    + Add semanage dontaudit to turn off dontaudits from Dan Walsh.
    + Fix semanage to set correct mode for setrans file from Dan Walsh.
    + Fix malformed dictionary in portRecord from Dan Walsh.
  * Added patch from Martin Orr to fix a loop in the inotify watch code
    when installing a watch on utmp.
  * [863fb62]: topic--debian: Improve error messages on forkpty failure
    The current error message when forkpty() fails is not clear or
    useful. The following patch makes indicate what went wrong.
    Bug fix: "The error message on forkpty() failure is not clear or
    useful.", thanks to Russell Coker              (Closes: #515710).

policycoreutils (2.0.72-4) UNRELEASED; urgency=low

  * [d42e245]: [topic--restorecond-init-script]: Add to watched files
    list

policycoreutils (2.0.72-3) UNRELEASED; urgency=low

  * [863fb62]: topic--debian: Improve error messages on forkpty failure
    The current error message when forkpty() fails is not clear or
    useful. The following patch makes indicate what went wrong.
    Bug fix: "The error message on forkpty() failure is not clear or
    useful.", thanks to Russell Coker              (Closes: #515710).

policycoreutils (2.0.72-2) unstable; urgency=low

  * [1e640be]: [topic--restorecond-init-script]: init.d status support
    Here is a patch to support the "status" action in the init.d script.
    Note that to make "status" usable even as non-root user some things
    needed to be rejuggled. Note that the dependency on lsb-base is
    already missing in the current version.
    Bug fix: "init.d status support", thanks to Peter Eisentraut
                                                          (Closes: #528582).

policycoreutils (2.0.72-1) unstable; urgency=low

  * New upstream release
  * Restore symlink handling support to restorecon based on a patch by
    Martin Orr.  This fixes the restorecon /dev/stdin performed by Debian
    udev scripts that was broken by policycoreutils 2.0.70.
    Bug fix: "/dev/pts not created with policycoreutils 2.0.71", thanks to
    Martin Orr                                              (Closes: #544215).

policycoreutils (2.0.71-1) unstable; urgency=low

  * New upstream point release
    + Modify setfiles/restorecon checking of exclude paths.  Only check
      user-supplied exclude paths (not automatically generated ones based on
      lack of seclabel support), don't require them to be directories, and
      ignore permission denied errors on them (it is ok to exclude a path to
      which the caller lacks permission).
    + Modify restorecon to only call realpath() on user-supplied pathnames
      from Stephen Smalley.
  * Prevent the package from building on non-linux platforms, since they
    are not supported.

Date: Sat, 12 Dec 2009 09:30:42 -0800
Changed-By: Kees Cook <kees at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/policycoreutils/2.0.77-1ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Sat, 12 Dec 2009 09:30:42 -0800
Source: policycoreutils
Binary: policycoreutils
Architecture: source
Version: 2.0.77-1ubuntu1
Distribution: lucid
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Kees Cook <kees at ubuntu.com>
Description: 
 policycoreutils - SELinux core policy utilities
Closes: 515710 515710 528582 544215
Changes: 
 policycoreutils (2.0.77-1ubuntu1) lucid; urgency=low
 .
   * Merge from Debian testing.  Remaining changes:
     - debian/postinst: move restorecon to a higher startup level.
 .
 policycoreutils (2.0.77-1) unstable; urgency=low
 .
   * New upstream version.
     + Fixed bug preventing semanage node -a from working
       from Chad Sellers
     + Fixed bug preventing semanage fcontext -l from working
       from Chad Sellers
     + Remove setrans management from semanage, as it does not work
       from Dan Walsh.
     + Move load_policy from /usr/sbin to /sbin from Dan Walsh.
 .
 policycoreutils (2.0.75-1) unstable; urgency=low
 .
   * New upstream point release
     + Factor out restoring logic from setfiles.c into restore.c
 .
 policycoreutils (2.0.74-1) unstable; urgency=low
 .
   * New upstream point release
     + Change semodule upgrade behavior to install even if the module
     + is not present from Dan Walsh.
     + Make setfiles label if selinux is disabled and a seclabel aware
     + kernel is running from Caleb Case.
     + Clarify forkpty() error message in run_init from Manoj Srivastava.
     + Add semanage dontaudit to turn off dontaudits from Dan Walsh.
     + Fix semanage to set correct mode for setrans file from Dan Walsh.
     + Fix malformed dictionary in portRecord from Dan Walsh.
   * Added patch from Martin Orr to fix a loop in the inotify watch code
     when installing a watch on utmp.
   * [863fb62]: topic--debian: Improve error messages on forkpty failure
     The current error message when forkpty() fails is not clear or
     useful. The following patch makes indicate what went wrong.
     Bug fix: "The error message on forkpty() failure is not clear or
     useful.", thanks to Russell Coker              (Closes: #515710).
 .
 policycoreutils (2.0.72-4) UNRELEASED; urgency=low
 .
   * [d42e245]: [topic--restorecond-init-script]: Add to watched files
     list
 .
 policycoreutils (2.0.72-3) UNRELEASED; urgency=low
 .
   * [863fb62]: topic--debian: Improve error messages on forkpty failure
     The current error message when forkpty() fails is not clear or
     useful. The following patch makes indicate what went wrong.
     Bug fix: "The error message on forkpty() failure is not clear or
     useful.", thanks to Russell Coker              (Closes: #515710).
 .
 policycoreutils (2.0.72-2) unstable; urgency=low
 .
   * [1e640be]: [topic--restorecond-init-script]: init.d status support
     Here is a patch to support the "status" action in the init.d script.
     Note that to make "status" usable even as non-root user some things
     needed to be rejuggled. Note that the dependency on lsb-base is
     already missing in the current version.
     Bug fix: "init.d status support", thanks to Peter Eisentraut
                                                           (Closes: #528582).
 .
 policycoreutils (2.0.72-1) unstable; urgency=low
 .
   * New upstream release
   * Restore symlink handling support to restorecon based on a patch by
     Martin Orr.  This fixes the restorecon /dev/stdin performed by Debian
     udev scripts that was broken by policycoreutils 2.0.70.
     Bug fix: "/dev/pts not created with policycoreutils 2.0.71", thanks to
     Martin Orr                                              (Closes: #544215).
 .
 policycoreutils (2.0.71-1) unstable; urgency=low
 .
   * New upstream point release
     + Modify setfiles/restorecon checking of exclude paths.  Only check
       user-supplied exclude paths (not automatically generated ones based on
       lack of seclabel support), don't require them to be directories, and
       ignore permission denied errors on them (it is ok to exclude a path to
       which the caller lacks permission).
     + Modify restorecon to only call realpath() on user-supplied pathnames
       from Stephen Smalley.
   * Prevent the package from building on non-linux platforms, since they
     are not supported.
Checksums-Sha1: 
 65bafe60b7be9d66e9fe99ab46ef9eb71483b3d8 1517 policycoreutils_2.0.77-1ubuntu1.dsc
 e5b26497526e5b1bbf372b581c2c575fd9d29f39 834057 policycoreutils_2.0.77.orig.tar.gz
 3a610676d083c21a2a49514b6662e6bcd8fa40cc 42432 policycoreutils_2.0.77-1ubuntu1.diff.gz
Checksums-Sha256: 
 8d9495948af9993c01a3c31822e6b656cbff94f05f929f1669deeac436e960bb 1517 policycoreutils_2.0.77-1ubuntu1.dsc
 e23a47a0555504183a29ab0e1d330741b0f0cd8c58fec6c1fd6774646f7f4f3f 834057 policycoreutils_2.0.77.orig.tar.gz
 6fe30b937f9c7549952de5a3d7a3771d7d83a43ce11a58517dc8b705deeb5247 42432 policycoreutils_2.0.77-1ubuntu1.diff.gz
Files: 
 c5d64262652e28bde76f04863c9e3660 1517 utils optional policycoreutils_2.0.77-1ubuntu1.dsc
 f5f8cc93e4d51ef838399506f03b75fd 834057 utils optional policycoreutils_2.0.77.orig.tar.gz
 930359e3a9839c974876d6b745fc0901 42432 utils optional policycoreutils_2.0.77-1ubuntu1.diff.gz
Original-Maintainer: Russell Coker <russell at coker.com.au>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Kees Cook <kees at outflux.net>

iEYEARECAAYFAksj1SoACgkQH/9LqRcGPm3IwgCdFTjUQ8gNIG1OX/PQ5dsL9idU
eJwAn1HECz5rAHNXTGRpDd4bfMEhcIy2
=KUy/
-----END PGP SIGNATURE-----


More information about the Lucid-changes mailing list