--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2026-446390d348
2026-03-20 00:16:04.477866+00:00
--------------------------------------------------------------------------------

Name        : selinux-policy
Product     : Fedora 44
Version     : 43.1
Release     : 1.fc44
URL         : https://github.com/fedora-selinux/selinux-policy
Summary     : SELinux policy configuration
Description :
SELinux core policy package.
Originally based off of reference policy,
the policy has been adjusted to provide support for Fedora.

--------------------------------------------------------------------------------
Update Information:

F42 selinux-policy build
--------------------------------------------------------------------------------
ChangeLog:

* Tue Mar 10 2026 Zdenek Pytela <[email protected]> - 43.1-1
- Allow redis_t to create netlink_rdma_socket
- Allow systemd create symlinks in /run/varlink/registry
- Support hooks in /run/systemd/resolve.hook
- Allow virtlogd_t dac_override for virtlock (bsc#1253389)
- Allow mdadm use modprobe (bsc#1257793)
- Allow systemd-mountfsd the perfmon capability
- Allow lttng tracing in default configuration
- Allow rtkit-daemon write systemd inhibit pipes
- Apply the systemd system generator template to the kdump-dep generator
- Apply the systemd system generator template to the anaconda generator
* Thu Mar  5 2026 Zdenek Pytela <[email protected]> - 42.25-1
- Dontaudit ps permissions that tlp_t does not need (bsc#1257527)
- TLP uses ps aux to check for different services (bsc#1257527)
- Introduce separate types for generic systemd generators.
- Confine system generator nm-initrd-generator.sh (bsc#1257754)
- Allow rtkit-daemon dbus chat with systemd-logind
- ecryptfs uses /home/.ecryptfs for full homedir encryption (bsc#1258350)
- Dontaudit tlshd write generic certificate dirs
- Allow systemd-coredump the kill capability in the user namespace
- Allow NetworkManager list bpf directories
- Allow virtnodedevd the dac_read_search capability
- Allow pkcsslotd read files in /proc and /sys
- Allow pkcsslotd map its private tmpfs files
- Allow dovecoth-auth to connect to systemd-logind over a unix socket
- Allow tlshd write generic certificate dirs
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2026-446390d348' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://forge.fedoraproject.org/infra/tickets/issues/new

Reply via email to