Summary: | Mailman policy does not properly assign attribute, file contexts are incorrect | ||
---|---|---|---|
Product: | Gentoo Linux | Reporter: | Dan O. <dan> |
Component: | SELinux | Assignee: | Sven Vermeulen (RETIRED) <swift> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | selinux |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | sec-policy r4 | ||
Package list: | Runtime testing required: | --- | |
Attachments: | Proposed policy fix |
Description
Dan O.
2015-01-15 02:41:12 UTC
Created attachment 393996 [details, diff]
Proposed policy fix
This is my proposed fix, I'm not entirely sure about the file contexts, but they seem to work, and now the mailman_domain attribute is assigned where it should be.
Looks like upstream commit 7b53a1b7999ba245e8712ad9241e49542ce58b14 made this change, which breaks because there is a declaration for /usr/lib/mailman/bin(/.*)? in corecommands.fc which now takes precendence. Going to add it in a distro_gentoo wrapper for now Changes are in our live repository and will be in the policy release r4 Now in repo, ~arch r4 is stable |