Console Output
14:05:11 [2024-07-11T14:05:11.646Z] Handling message: [artifact:[type:koji-build-group, builds:[[type:koji-build, id:2485348, task_id:120326280, nvr:selinux-policy-41.8-3.fc41]]], agent:bodhi, re-trigger:false, update:[autokarma:false, autotime:null, stable_karma:3, stable_days:null, unstable_karma:-3, require_bugs:null, require_testcases:null, display_name:null, notes:Automatic update for selinux-policy-41.8-3.fc41.
14:05:11 [2024-07-11T14:05:11.646Z]
14:05:11 [2024-07-11T14:05:11.646Z] ##### **Changelog**
14:05:11 [2024-07-11T14:05:11.646Z]
14:05:11 [2024-07-11T14:05:11.646Z] ```
14:05:11 [2024-07-11T14:05:11.646Z] * Thu Jul 11 2024 Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> - 41.8-6
14:05:11 [2024-07-11T14:05:11.646Z] - Also relabel files under /usr/sbin
14:05:11 [2024-07-11T14:05:11.646Z] * Thu Jul 11 2024 Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> - 41.8-5
14:05:11 [2024-07-11T14:05:11.646Z] - Manually bump Release
14:05:11 [2024-07-11T14:05:11.646Z] * Thu Jul 11 2024 Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> - 41.8-4
14:05:11 [2024-07-11T14:05:11.646Z] - Relabel files under /usr/bin to fix stale context after sbin merge
14:05:11 [2024-07-11T14:05:11.646Z] * Wed Jul 10 2024 Zdenek Pytela <zpytela@redhat.com> - 41.8-2
14:05:11 [2024-07-11T14:05:11.646Z] - Drop the publicfile module
14:05:11 [2024-07-11T14:05:11.646Z] * Wed Jul 10 2024 Zdenek Pytela <zpytela@redhat.com> - 41.8-1
14:05:11 [2024-07-11T14:05:11.646Z] - Drop publicfile module
14:05:11 [2024-07-11T14:05:11.646Z] - Remove permissive domain for systemd_nsresourced_t
14:05:11 [2024-07-11T14:05:11.646Z] - Change fs_dontaudit_write_cgroup_files() to apply to cgroup_t
14:05:11 [2024-07-11T14:05:11.646Z] - Label /usr/bin/samba-gpupdate with samba_gpupdate_exec_t
14:05:11 [2024-07-11T14:05:11.646Z] - Allow to create and delete socket files created by rhsm.service
14:05:11 [2024-07-11T14:05:11.646Z] - Allow virtnetworkd exec shell when virt_hooks_unconfined is on
14:05:11 [2024-07-11T14:05:11.646Z] - Allow unconfined_service_t transition to passwd_t
14:05:11 [2024-07-11T14:05:11.646Z] - Support /var is empty
14:05:11 [2024-07-11T14:05:11.646Z] - Allow abrt-dump-journal read all non_security socket files
14:05:11 [2024-07-11T14:05:11.646Z] - Allow timemaster write to sysfs files
14:05:11 [2024-07-11T14:05:11.646Z] - Dontaudit domain write cgroup files
14:05:11 [2024-07-11T14:05:11.646Z] - Label /usr/lib/node_modules/npm/bin with bin_t
14:05:11 [2024-07-11T14:05:11.646Z] - Allow ip the setexec permission
14:05:11 [2024-07-11T14:05:11.646Z] - Allow systemd-networkd write files in /var/lib/systemd/network
14:05:11 [2024-07-11T14:05:11.646Z] - Fix typo in systemd_nsresourced_prog_run_bpf()
14:05:11 [2024-07-11T14:05:11.646Z] * Fri Jun 28 2024 Zdenek Pytela <zpytela@redhat.com> - 41.7-1
14:05:11 [2024-07-11T14:05:11.646Z] - Confine libvirt-dbus
14:05:11 [2024-07-11T14:05:11.646Z] - Allow virtqemud the kill capability in user namespace
14:05:11 [2024-07-11T14:05:11.646Z] - Allow rshim get options of the netlink class for KOBJECT_UEVENT family
14:05:11 [2024-07-11T14:05:11.646Z] - Allow dhcpcd the kill capability
14:05:11 [2024-07-11T14:05:11.646Z] - Allow systemd-networkd list /var/lib/systemd/network
14:05:11 [2024-07-11T14:05:11.646Z] - Allow sysadm_t run systemd-nsresourced bpf programs
14:05:11 [2024-07-11T14:05:11.646Z] - Update policy for systemd generators interactions
14:05:11 [2024-07-11T14:05:11.646Z] - Allow create memory.pressure files with cgroup_memory_pressure_t
14:05:11 [2024-07-11T14:05:11.646Z] - Add support for libvirt hooks
14:05:11 [2024-07-11T14:05:11.646Z] * Wed Jun 19 2024 Zdenek Pytela <zpytela@redhat.com> - 41.6-1
14:05:11 [2024-07-11T14:05:11.646Z] - Allow certmonger read and write tpm devices
14:05:11 [2024-07-11T14:05:11.646Z] - Allow all domains to connect to systemd-nsresourced over a unix socket
14:05:11 [2024-07-11T14:05:11.646Z] - Allow systemd-machined read the vsock device
14:05:11 [2024-07-11T14:05:11.646Z] - Update policy for systemd generators
14:05:11 [2024-07-11T14:05:11.646Z] - Allow ptp4l_t request that the kernel load a kernel module
14:05:11 [2024-07-11T14:05:11.646Z] - Allow sbd to trace processes in user namespace
14:05:11 [2024-07-11T14:05:11.646Z] - Allow request-key execute scripts
14:05:11 [2024-07-11T14:05:11.646Z] - Update policy for haproxyd
14:05:11 [2024-07-11T14:05:11.646Z] * Tue Jun 18 2024 Zdenek Pytela <zpytela@redhat.com> - 41.5-1
14:05:11 [2024-07-11T14:05:11.646Z] - Update policy for systemd-nsresourced
14:05:11 [2024-07-11T14:05:11.646Z] - Correct sbin-related file context entries
14:05:11 [2024-07-11T14:05:11.646Z] * Mon Jun 17 2024 Zdenek Pytela <zpytela@redhat.com> - 41.4-1
14:05:11 [2024-07-11T14:05:11.646Z] - Allow login_userdomain execute systemd-tmpfiles in the caller domain
14:05:11 [2024-07-11T14:05:11.646Z] - Allow virt_driver_domain read files labeled unconfined_t
14:05:11 [2024-07-11T14:05:11.646Z] - Allow virt_driver_domain dbus chat with policykit
14:05:11 [2024-07-11T14:05:11.646Z] - Allow virtqemud manage nfs files when virt_use_nfs boolean is on
14:05:11 [2024-07-11T14:05:11.646Z] - Add rules for interactions between generators
14:05:11 [2024-07-11T14:05:11.646Z] - Label memory.pressure files with cgroup_memory_pressure_t
14:05:11 [2024-07-11T14:05:11.646Z] - Revert "Allow some systemd services write to cgroup files"
14:05:11 [2024-07-11T14:05:11.646Z] - Update policy for systemd-nsresourced
14:05:11 [2024-07-11T14:05:11.646Z] - Label /usr/bin/ntfsck with fsadm_exec_t
14:05:11 [2024-07-11T14:05:11.646Z] - Allow systemd_fstab_generator_t read tmpfs files
14:05:11 [2024-07-11T14:05:11.646Z] - Update policy for systemd-nsresourced
14:05:11 [2024-07-11T14:05:11.646Z] - Alias /usr/sbin to /usr/bin and change all /usr/sbin paths to /usr/bin
14:05:11 [2024-07-11T14:05:11.646Z] - Remove a few lines duplicated between {dkim,milter}.fc
14:05:11 [2024-07-11T14:05:11.646Z] - Alias /bin → /usr/bin and remove redundant paths
14:05:11 [2024-07-11T14:05:11.646Z] - Drop duplicate line for /usr/sbin/unix_chkpwd
14:05:11 [2024-07-11T14:05:11.646Z] - Drop duplicate paths for /usr/sbin
14:05:11 [2024-07-11T14:05:11.646Z]
14:05:11 [2024-07-11T14:05:11.646Z] ```, type:unspecified, status:pending, request:null, severity:null, suggest:null, locked:null, pushed:null, critpath:true, critpath_groups:core critical-path-compose critical-path-server, close_bugs:null, date_submitted:null, date_modified:null, date_approved:null, date_testing:null, date_stable:null, alias:FEDORA-2024-6102638fbb, test_gating_status:null, from_tag:null, date_pushed:null, meets_testing_requirements:true, url:https://bodhi.fedoraproject.org/updates/FEDORA-2024-6102638fbb, title:selinux-policy-41.8-3.fc41, version_hash:165cd10b85ac72db950d974b77f0c32d4c333e07, release:[name:F41, long_name:Fedora 41, version:41, id_prefix:FEDORA, branch:rawhide, dist_tag:f41, stable_tag:f41, testing_tag:f41-updates-testing, candidate_tag:f41-updates-candidate, pending_signing_tag:f41-signing-pending, pending_testing_tag:f41-updates-testing-pending, pending_stable_tag:f41-updates-pending, override_tag:f41-override, mail_template:fedora_errata_template, state:pending, composed_by_bodhi:false, create_automatic_updates:true, package_manager:unspecified, testing_repository:null, released_on:null, eol:null, setting_status:pre_beta], user:[name:zbyszek, email:zbyszek@in.waw.pl, id:119, avatar:null, openid:null, groups:[[name:provenpackager], [name:packager], [name:python-sig], [name:neuro-sig], [name:fedorabugs], [name:signed_fpca], [name:python-packagers-sig], [name:fesco], [name:gitinitscripts], [name:ipausers], [name:fedora-contributor], [name:scitech_sig], [name:rust-sig]]], comments:[], builds:[[nvr:selinux-policy-41.8-3.fc41, signed:false, release_id:80, type:rpm, epoch:0]], bugs:[], updateid:FEDORA-2024-6102638fbb, karma:0, content_type:rpm, test_cases:[]]]