[ubuntu/resolute-proposed] apparmor 5.0.2-0ubuntu1~26.04.1 (Accepted)
Ryan Lee
ryan.lee at canonical.com
Fri Jul 24 12:45:41 UTC 2026
apparmor (5.0.2-0ubuntu1~26.04.1) resolute; urgency=medium
* New upstream release (SRU backport). (LP: #2161458)
* Upstream release contains fixes for:
- uucore locales reads (LP: #2158941)
- lsusb uevent file reads (LP: #2158939)
- alsamixer asound config reads (LP: #2157575)
* d/apparmor.install: add the new glycin.* profiles
* d/libapparmor1.symbols: add the new library symbols
* d/rules: add profiles check to testing step
* d/watch:
- Update regex to handle -rc version numbers
- Update to version 5 of the format
* Refresh patches to apply to upstream release:
- d/p/u/profiles-grant-access-to-systemd-resolved.patch
- d/p/u/aa-notify-fallback-to-ev-comm-when-ev-execpath.patch
* Update patches to apply to upstream release:
- d/p/u/samba-systemd-interaction.patch
- d/p/u/profiles_disable_curl.patch
- d/p/u/profiles_add_more_consoles_workaround.patch
- d/p/u/profiles-use-coreutils-tunable.patch
- d/p/u/0001-parser-add-more-reserved-mediation-classes.patch
- d/p/u/0007-Set-parser-network.h-ip_conds-ptrs-to-null-in-its-fr.patch
* Drop patches that were applied upstream:
- d/p/u/libapparmor-move-aa_get_lsm_iface-decl-in-libapparmor.patch
- d/p/u/0001-parser-set-umask-before-creating-temp-file.patch
- d/p/u/0002-parser-restrict-umask-to-allow-only-user-permissions.patch
- d/p/u/libapparmor-add-test-for-libapparmor-features-prefix.patch
- d/p/u/transmission-common-fixes-for-lp-2137395.patch
- d/p/u/unix-chkpwd-add-disconnected-run-paths.patch
- d/p/u/profiles-add-extensions-to-allowed-ghostscript.patch
- d/p/u/profiles-expand-the-allowed-directories-for-ghostscript.patch
- d/p/u/profiles-add-sys-kernel-mm-transparent_hugepage-enable.patch
- d/p/u/0006-parser-name-ns_domain-and-network_v9-classes.patch
- d/p/u/0011-utils-add-support-for-iface-an-label-in-network-rule.patch
- d/p/u/0013-parser-fix-FTBFS-due-to-missing-merge-edit.patch
- d/p/u/0014-tests-check-if-skb-mediation-is-enabled.patch
- d/p/u/snap-browser-add-missing-perms-when-opening-from-link.patch
- d/p/u/lsusb-allow-reading-etc-udev-hwdb-bin.patch
- d/p/u/profiles-grant-unix-domain-socket-access-to-sanitize.patch
- d/p/u/0002-parser-refactor-compressed-policy-cache.patch
- d/p/u/0003-parser-handle-compressed-cache-on-kernels-without-de.patch
- d/p/u/0004-regression-fix-the-e2e-test-for-compressed-caches.patch
* Drop patches that were superseded upstream:
- d/p/u/0002-parser-convert-conditionals-operators-to-an-enum.patch
- d/p/u/0003-parser-add-override-assign-to-cond-list-elements.patch
- d/p/u/0004-parser-support-network-interface-conditional.patch
- d/p/u/0005-tests-add-network-interface-tests.patch
- d/p/u/0008-parser-move-to-encode-an-alternation-of-a-null-trans.patch
- d/p/u/0009-parser-disable-ability-to-specify-interface-on-peer-.patch
- d/p/u/0010-parser-fix-iface-perms-to-work-when-v9-and-v9_skb-ar.patch
- d/p/u/0012-parser-fix-label-match-for-default-label-values.patch
- d/p/u/0001-parser-fix-rewriting-of-cache-after-zstd-recompressi.patch
* Add patches to fix FTBFS (profile test enabling):
- d/p/u/profiles-allow-more-attach-disconnected.patch
* Update patches to fix FTBFS (profile test enabling):
- d/p/u/openvpn_mr_1263.patch
- d/p/u/irssi_mr_1332.patch
- d/p/u/os_prober_mr_1569.patch
- d/p/u/profiles_disable_free.patch
- d/p/u/profiles_disable_curl.patch
- d/p/u/profiles-tunables-add-coreutils-var.patch
- d/p/u/profiles-use-coreutils-tunable.patch
- d/p/u/profiles-pull-openvpn-profile.patch
* Add patch to fix transmission-gtk file chooser (LP: #2152079):
- d/p/u/profiles-add-file-chooser-rules-to-abstractions-trans.patch
Date: Mon, 13 Jul 2026 10:43:46 -0700
Changed-By: Ryan Lee <ryan.lee at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Lena Voytek <lena.voytek at canonical.com>
https://launchpad.net/ubuntu/+source/apparmor/5.0.2-0ubuntu1~26.04.1
-------------- next part --------------
Format: 1.8
Date: Mon, 13 Jul 2026 10:43:46 -0700
Source: apparmor
Built-For-Profiles: derivative.ubuntu noudeb
Architecture: source
Version: 5.0.2-0ubuntu1~26.04.1
Distribution: resolute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Ryan Lee <ryan.lee at canonical.com>
Launchpad-Bugs-Fixed: 2152079 2157575 2158939 2158941 2161458
Changes:
apparmor (5.0.2-0ubuntu1~26.04.1) resolute; urgency=medium
.
* New upstream release (SRU backport). (LP: #2161458)
* Upstream release contains fixes for:
- uucore locales reads (LP: #2158941)
- lsusb uevent file reads (LP: #2158939)
- alsamixer asound config reads (LP: #2157575)
* d/apparmor.install: add the new glycin.* profiles
* d/libapparmor1.symbols: add the new library symbols
* d/rules: add profiles check to testing step
* d/watch:
- Update regex to handle -rc version numbers
- Update to version 5 of the format
* Refresh patches to apply to upstream release:
- d/p/u/profiles-grant-access-to-systemd-resolved.patch
- d/p/u/aa-notify-fallback-to-ev-comm-when-ev-execpath.patch
* Update patches to apply to upstream release:
- d/p/u/samba-systemd-interaction.patch
- d/p/u/profiles_disable_curl.patch
- d/p/u/profiles_add_more_consoles_workaround.patch
- d/p/u/profiles-use-coreutils-tunable.patch
- d/p/u/0001-parser-add-more-reserved-mediation-classes.patch
- d/p/u/0007-Set-parser-network.h-ip_conds-ptrs-to-null-in-its-fr.patch
* Drop patches that were applied upstream:
- d/p/u/libapparmor-move-aa_get_lsm_iface-decl-in-libapparmor.patch
- d/p/u/0001-parser-set-umask-before-creating-temp-file.patch
- d/p/u/0002-parser-restrict-umask-to-allow-only-user-permissions.patch
- d/p/u/libapparmor-add-test-for-libapparmor-features-prefix.patch
- d/p/u/transmission-common-fixes-for-lp-2137395.patch
- d/p/u/unix-chkpwd-add-disconnected-run-paths.patch
- d/p/u/profiles-add-extensions-to-allowed-ghostscript.patch
- d/p/u/profiles-expand-the-allowed-directories-for-ghostscript.patch
- d/p/u/profiles-add-sys-kernel-mm-transparent_hugepage-enable.patch
- d/p/u/0006-parser-name-ns_domain-and-network_v9-classes.patch
- d/p/u/0011-utils-add-support-for-iface-an-label-in-network-rule.patch
- d/p/u/0013-parser-fix-FTBFS-due-to-missing-merge-edit.patch
- d/p/u/0014-tests-check-if-skb-mediation-is-enabled.patch
- d/p/u/snap-browser-add-missing-perms-when-opening-from-link.patch
- d/p/u/lsusb-allow-reading-etc-udev-hwdb-bin.patch
- d/p/u/profiles-grant-unix-domain-socket-access-to-sanitize.patch
- d/p/u/0002-parser-refactor-compressed-policy-cache.patch
- d/p/u/0003-parser-handle-compressed-cache-on-kernels-without-de.patch
- d/p/u/0004-regression-fix-the-e2e-test-for-compressed-caches.patch
* Drop patches that were superseded upstream:
- d/p/u/0002-parser-convert-conditionals-operators-to-an-enum.patch
- d/p/u/0003-parser-add-override-assign-to-cond-list-elements.patch
- d/p/u/0004-parser-support-network-interface-conditional.patch
- d/p/u/0005-tests-add-network-interface-tests.patch
- d/p/u/0008-parser-move-to-encode-an-alternation-of-a-null-trans.patch
- d/p/u/0009-parser-disable-ability-to-specify-interface-on-peer-.patch
- d/p/u/0010-parser-fix-iface-perms-to-work-when-v9-and-v9_skb-ar.patch
- d/p/u/0012-parser-fix-label-match-for-default-label-values.patch
- d/p/u/0001-parser-fix-rewriting-of-cache-after-zstd-recompressi.patch
* Add patches to fix FTBFS (profile test enabling):
- d/p/u/profiles-allow-more-attach-disconnected.patch
* Update patches to fix FTBFS (profile test enabling):
- d/p/u/openvpn_mr_1263.patch
- d/p/u/irssi_mr_1332.patch
- d/p/u/os_prober_mr_1569.patch
- d/p/u/profiles_disable_free.patch
- d/p/u/profiles_disable_curl.patch
- d/p/u/profiles-tunables-add-coreutils-var.patch
- d/p/u/profiles-use-coreutils-tunable.patch
- d/p/u/profiles-pull-openvpn-profile.patch
* Add patch to fix transmission-gtk file chooser (LP: #2152079):
- d/p/u/profiles-add-file-chooser-rules-to-abstractions-trans.patch
Checksums-Sha1:
f97939fcc84297b8d98fb2e54ee2f8e8fd874c17 3522 apparmor_5.0.2-0ubuntu1~26.04.1.dsc
9a574edf14cb7e9acd7465e99a5d2e265d632f80 7613576 apparmor_5.0.2.orig.tar.gz
1cf2ff490afec667ff77249a6dc5cdbe84abbff1 118224 apparmor_5.0.2-0ubuntu1~26.04.1.debian.tar.xz
4aeb3c79a3925a788f8cebd0d5273a2a493843f5 11367 apparmor_5.0.2-0ubuntu1~26.04.1_source.buildinfo
Checksums-Sha256:
a369a9e238fe5e48edc646f7be61c1a73d75a9dc28fdde37fbecfee0c0165bb3 3522 apparmor_5.0.2-0ubuntu1~26.04.1.dsc
c02ff05f1831a42940d8a20194ed05128b9535db44afec13088b5aae57863327 7613576 apparmor_5.0.2.orig.tar.gz
b41f819f7a06336fd1cc2de82016bbc4d3ba932c3c8444ed0f9878906199c599 118224 apparmor_5.0.2-0ubuntu1~26.04.1.debian.tar.xz
51d214d4ee2ae4de38d9e639f52076b01f22010084d29e1613e95e98554c5f32 11367 apparmor_5.0.2-0ubuntu1~26.04.1_source.buildinfo
Files:
98e59a21f278092f21a4d48be4da2eb9 3522 admin optional apparmor_5.0.2-0ubuntu1~26.04.1.dsc
1ccd9248b6f3e8d4876cf682e3ef0675 7613576 admin optional apparmor_5.0.2.orig.tar.gz
bfb8cb570ea1c8701c25b282cad0b7db 118224 admin optional apparmor_5.0.2-0ubuntu1~26.04.1.debian.tar.xz
c8207e1250874596fe8d4c635a6ee3e4 11367 admin optional apparmor_5.0.2-0ubuntu1~26.04.1_source.buildinfo
Original-Maintainer: Debian AppArmor Team <pkg-apparmor-team at lists.alioth.debian.org>
Vcs-Git: https://git.launchpad.net/~rlee287/ubuntu/+source/apparmor
Vcs-Git-Commit: 6996abe3673505a986b2d52efc59c99f515ac93e
Vcs-Git-Ref: refs/heads/backport_5_0_2_stonking_to_resolute
More information about the Resolute-changes
mailing list