Selinux-Policy - Red Hat ENTERPRISE LINUX 5.5 - TECHNICAL NOTES Manual

Table of Contents

Advertisement

1.187. selinux-policy

1.187.1. RHBA-2009:1495: bug fix update
Note
This update has already been released (prior to the GA of this release) as errata
RHBA-2009:1495
Updated selinux-policy packages that fix a bug are now available.
The selinux-policy packages contain the rules that govern how confined processes run on the system.
These updated packages fix the following bug:
* the cyrus-imapd daemon is compiled with net-snmp support and it attempts to register its snmp sub-
agent during startup. This was not allowed by previous SELinux policy. These updated packages
include updated policy that allows cyrus-imapd to register its snmp sub-agent during startup, as
expected.
(BZ#523548
All users are advised to upgrade to these updated packages, which resolves these issue.
1.187.2. RHBA-2010:0013: bug fix update
Note
This update has already been released (prior to the GA of this release) as errata
RHBA-2010:0013
Updated selinux-policy packages that fix several bugs are now available.
The selinux-policy packages contain the rules that govern how confined processes run on the system.
These updated selinux-policy packages provide fixes for the following bugs:
* the "setkey" utility from the ipsec-tools package manipulates and dumps the kernel's Security Policy
Database (SPD) entries and Security Association Database (SAD) entries. The current selinux-policy
did not allow users running under the "sysadm" role to use setkey. This update allows users running
under the sysadm SELinux role to use the setkey utility from the ipsec-tools package.
* using the Openswan implementation of IPsec could have resulted in AVC (Access Vector Cache)
denials causing the integrity check to fail, which in turn would cause the pluto key management
daemon not to start. This update includes updated policy rules for IPsec which fix the AVC denials
so that pluto is allowed to run as expected. Note that this is necessary for FIPS-140 compliance.
1900
(BZ#538452
)
1897
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=523548
1899
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=538449
1900
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=538452
1896
1897
)
1898
selinux-policy
1899
(BZ#538449
)
237

Advertisement

Table of Contents
loading

This manual is also suitable for:

Enterprise linux 5.5

Table of Contents