SEARCH
NEW RPMS
DIRECTORIES
ABOUT
FAQ
VARIOUS
BLOG

 
 
Changelog for perl-apparmor-2.10.3-1.92.x86_64.rpm :

* Sun Oct 29 2017 suse-betaAATTcboltz.de- update to AppArmor 2.10.3 changes since grabbing the last upstream patch: - add permissions to the dovecot, traceroute, samba and postfix profiles and several abstractions (including lp#1650827 and boo#1057900) - some fixes in the aa-
* tools (including boo#1062667) - fix downgrading/converting of \'unix\' rules to \'network unix\' rules in apparmor_parser (boo#1061195) - see http://wiki.apparmor.net/index.php/ReleaseNotes_2_10_3 for upstream changelog- drop upstream patches: - aa-unconfined-fix-netstat-call-2.10r3380.diff - profile-updates-2.10r3381..3384.diff - upstream-changes-2.10-r3385..3390.diff- add nameservice-libtirpc.diff to fix NIS/YP logins (boo#1062244)
* Sun Mar 26 2017 suse-betaAATTcboltz.de- add upstream-changes-2.10-r3385..3390.diff: - preserve unknown profiles when reloading apparmor.service (CVE-2017-6507, lp#1668892, boo#1029696) - add aa-remove-unknown utility to unload unknown profiles (lp#1668892) - remove deprecated re.LOCALE flag in Python UI as it was dropped from Python 3.6 (lp#1661766) - fix a crash in aa-logprof on specific change_hat events- migration to apparmor.service turned out to accidently disable AppArmor. Add a workaround to fix this (boo#1017260 starting at #c7) Note: This will re-enable AppArmor if it was disabled by the last update. You\'ll need to \"rcapparmor reload\" to actually load the profiles, and then check aa-status for programs that need to be restarted to apply the profiles.- add var.mount dependeny to apparmor.service (boo#1016259#c34)
* Wed Feb 01 2017 suse-betaAATTcboltz.de- Recommend net-tools instead of net-tools-deprecated for 42.x (boo#1022963)
* Mon Jan 30 2017 suse-betaAATTcboltz.de- add profile-updates-2.10r3381..3384.diff with updates for abstractions/base, abstractions/apache2-common and dovecot profiles
* Tue Jan 24 2017 suse-betaAATTcboltz.de- package apparmor.service also in Leap where it was missing thanks to a wrong/outdated if statement (boo#1017260) Note: If you manually disabled AppArmor, this change will re-enable it.
* Tue Jan 24 2017 suse-betaAATTcboltz.de- change /etc/apparmor.d/cache symlink to /var/lib/apparmor/cache/. This is part of the root partition (at least with default partitioning) and should be available earlier than /var/cache/apparmor/ (boo#1015249, boo#980081, bsc#1016259)- add dependency on var-lib.mount to apparmor.service as safety net
* Tue Jan 10 2017 suse-betaAATTcboltz.de- update to AppArmor 2.10.2 maintenance release - lots of bugfixes and profile updates (including boo#1000201, boo#1009964, boo#1014463) - see http://wiki.apparmor.net/index.php/ReleaseNotes_2_10_2 for details- add aa-unconfined-fix-netstat-call-2.10r3380.diff to fix a regression in aa-unconfined- drop upstream(ed) patches: - changes-since-2.10.1--r3326..3346.diff - changes-since-2.10.1--r3347..3353.diff - libapparmor-fix-import-path.diff (upstream fix is slightly different) - nscd-var-lib.diff- refresh apparmor-abstractions-no-multiline.diff
* Sun Oct 23 2016 suse-betaAATTcboltz.de- add nscd-var-lib.diff to allow /var/lib/nscd/ in the nscd profile and abstractions/nameservice (path changed in latest nscd in Tumbleweed)
* Thu Oct 13 2016 suse-betaAATTcboltz.de- add changes-since-2.10.1--r3347..3353.diff with upstream changes and fixes in the 2.10 branch, including - allow writing
*.qf files (for disk-based buffering) in syslog-ng profile - add several permissions to the dovecot profiles (deb#835826) - add a missing path in the traceroute profile
* Fri Aug 26 2016 suse-betaAATTcboltz.de- add changes-since-2.10.1--r3326..3346.diff with upstream changes and fixes since the 2.10.1 release, including - allow dac_override in winbindd profile (boo#990006#c5) - allow mr for /usr/lib
*/ldb/
*.so in samba abstractions (needed since Samba 4.4.x, boo#990006) - abstractions/nameservice: also support ConnMan-managed resolv.conf - let aa-genprof ask about profiles in extra dir (again) - fix aa-logprof \"add hat\" endless loop (lp#1538306) - honor \'chown\' file events in logparser.py - ignore log file events with a request mask of \'send\' or \'receive\' because they are actually network events (lp#1577051, lp#1582374) - accept hostname with dots when parsing logs (lp#1453300 comments #1 and #2)- fix python LibAppArmor import failures with swig > 3.0.8 (boo#987607) (libapparmor-fix-import-path.diff)- refresh apparmor-abstractions-no-multiline.diff- drop upstreamed profiles-ping-inet6-r3449.diff- add %check section - runs libapparmor (including swig bindings), parser and profiles tests- add BuildRequires: perl(Locale::gettext) - needed for parser tests
* Tue May 24 2016 suse-betaAATTcboltz.de- add profiles-ping-inet6-r3449.diff - latest ping also does IPv6 (boo#980596)
* Fri Apr 22 2016 suse-betaAATTcboltz.de- update to AppArmor 2.10.1 (2.10 branch r3326): - fix incorrect output of child profile names (apparmor_parser -N) which caused \'rcapparmor reload\' to remove child profiles and hats (lp#1551950) - fix a crash in aa-logprof / logparser.py for change_hat log events (lp#1523297) and log events that look like file events, but aren\'t (lp#1540562, lp#1525119, lp#1466812) - write unix rules when saving a profile (lp#1522938, boo#954104#c3) - several fixes for variable handling in aa-logprof - map c (create) log events to w instead of a - add python to the \"no Px rule\" list in logprof.conf - let aa-logprof check for duplicate profiles - let aa-status work without the apparmor.fail python module (boo#971917, lp#1480492) - add permissions in several profiles (including boo#948584, boo#948753, boo#954959, boo#954958, boo#971790, boo#964971, boo#921098, boo#923201 and boo#921098#c15). - and many more fixes, see the full changelog at http://wiki.apparmor.net/index.php/ReleaseNotes_2_10_1- drop upstream(ed) patches: - fix-initscript-aa_log_end_msg.diff - syslog-ng-profile-boo948584.diff - upstream-profile-updates-r3205-3241.diff- refresh patches: - apparmor-abstractions-no-multiline.diff - apparmor-samba-include-permissions-for-shares.diff- drop libapparmor autogen.sh call (broke the build) and remove libtool BR
* Wed Oct 07 2015 opensuseAATTcboltz.de- add syslog-ng-profile-boo948584.diff - add several permissions needed by latest syslog-ng (boo#948584, boo#948753)- add upstream-profile-updates-r3205-3241.diff with several profile updates: - add /usr/share/locale-bundle/
*
* to abstractions/base - allow dnsmask to use /bin/sh (boo#940749) and /bin/dash - allow dovecot imap to read /run/dovecot/mounts - allow avahi-daemon to write to /run/systemd/notify - allow ntpd to read $PATH directory listings (boo#945592, boo#948752) - update dhclient profile - allow skype to read AATT{PROC}/AATT{pid}/net/dev (boo#939568) - and some other small updates- drop upstreamed apparmor-winbindd-r3213.diff (included in the upstream-profile-updates patch)
* Sun Sep 13 2015 opensuseAATTcboltz.de- netstat moved to net-tools-deprecated in Tumbleweed (boo#944904)
* Thu Jul 30 2015 opensuseAATTcboltz.de- add apparmor-winbindd-r3213.diff - add missing k permissions for /etc/samba/smbd.tmp/msg/
* in winbindd profile (boo#921098 #c15..19)
* Thu Jul 23 2015 opensuseAATTcboltz.de- add fix-initscript-aa_log_end_msg.diff - fixes ugly initscript output (boo#862170)
* Thu Jul 16 2015 opensuseAATTcboltz.de- update to AppArmor 2.10 (trunk r3205) - profile names can now contain variables - improved profile compile time in apparmor_parser - lots of improvements, refactoring and bugfixes in the aa-
* tools - new apis for managing and loading profile caches into the kernel in libapparmor - lots of profile updates - see http://wiki.apparmor.net/index.php/ReleaseNotes_2_10 for the complete changelog with more details- add new apparmor_private.h and the aa_query_label(2), aa_features(3), aa_kernel_interface(3), aa_policy_cache(3), aa_splitcon(3) manpages to libapparmor-devel- drop apparmor-2.5.1-edirectory-profile patch - it\'s most probably no longer needed (see boo#621394 for details)- drop upstreamed samba-4.2-profiles.diff- refresh apparmor-samba-include-permissions-for-shares.diff
* Mon Jun 15 2015 opensuseAATTcboltz.de- systemd-rpm-macros and %systemd_requires were at the wrong place, move them to the parser package (boo#931792)
* Fri Apr 24 2015 opensuseAATTcboltz.de- update to AppArmor 2.9.2 (2.9 branch r2911) - lots of bugfixes in the parser and the aa-
* tools (including boo#918787) - update dovecot and dnsmasq profiles and several abstractions (including boo#911001) - see http://wiki.apparmor.net/index.php/ReleaseNotes_2_9_2 for the full changelog- remove upstream(ed) patches apparmor-changes-since-2.9.1.diff and apparmor-fix-stl-ostream.diff- replace GPG key with new AppArmor GPG signing key, see https://launchpad.net/apparmor/+announcement/13404
* Fri Apr 17 2015 opensuseAATTcboltz.de- make sure %service_del_postun doesn\'t call systemctl try-restart (boo#853019, bare systemd edition)- add samba-4.2-profiles.diff: update samba (winbindd and nmb) profiles for samba 4.2 (boo#921098, boo#923201)
* Sun Apr 12 2015 opensuseAATTcboltz.de- only install apparmor.service for openSUSE > 13.2
* Wed Apr 01 2015 crrodriguezAATTopensuse.org- Add a native systemd unit which
*at the moment
* only wraps/masks the early boot script.
* Tue Feb 24 2015 rguentherAATTsuse.com- add apparmor-fix-stl-ostream.diff which fixes odd uses of std::ostream which are not valid. Fixes build with GCC 5
* Fri Feb 20 2015 opensuseAATTcboltz.de- allow lessopen.sh to run /usr/bin/unzip-plain (boo#906858)
* Thu Feb 12 2015 opensuseAATTcboltz.de- add Requires: python3 to python3-apparmor package - readline isn\'t part of python3-base (boo#917577)
* Tue Jan 20 2015 opensuseAATTcboltz.de- add apparmor-changes-since-2.9.1.diff with upstream fixes since the 2.9.1 release - update logparser.py to support changed syslog format (lp#1399027) - update usr.sbin.dovecot and usr.lib.dovecot.imap{, -login} profiles (lp#1296667) - update the mysqld profile - fix network rule description in apparmor.d(5) manpage- drop upstreamed dnsmasq-profile-fixes.patch- update expired GPG key
* Thu Jan 01 2015 opensuseAATTcboltz.de- update to AppArmor 2.9.1 (2.9 branch r2831) - fix log parsing for 3.16 kernels and syslog-style logs (boo#905368) - several fixes and performance improvements in the aa-
* utils - profile updates for dnsmasq (boo#907870), nscd (boo#904620#c14 and bnc#908856), useradd, sendmail, man and passwd - see http://wiki.apparmor.net/index.php/ReleaseNotes_2_9_1 for full release notes- refresh dnsmasq-profile-fixes.patch
* Mon Dec 22 2014 cbosdonnatAATTsuse.com- Fix dnsmasq profile to allow executing bash to run the --dhcp-script argument. Also fixed /usr/lib -> /usr/{lib,lib64} to get libvirt leasehealper script to run even on x86_64. dnsmasq-profile-fixes.patch. boo#911001
* Sun Dec 21 2014 opensuseAATTcboltz.de- rename lessopen.sh profile file to usr.bin.lessopen.sh to match the script filename
* Wed Dec 10 2014 meissnerAATTsuse.com- add apparmor-lessopen-profile.patch: /usr/bin/lessopen.sh needs confinement. bnc#906858
* Sun Nov 16 2014 opensuseAATTcboltz.de- delete cache in apparmor-profiles %post (workaround for bnc#904620#c8 / lp#1392042)
* Fri Nov 14 2014 dimstarAATTopensuse.org- No longer perform gpg validation; osc source_validator does it implicit: + Drop gpg-offline BuildRequires. + No longer execute gpg_verify.
* Sun Nov 09 2014 Led - fix bashism in post script
* Sat Oct 18 2014 opensuseAATTcboltz.de- update to AppArmor 2.9.0 (r2759) - change aa-mergeprof to the final commandline syntax - lots of bugfixes in the aa-
* tools (bnc#900163, lp#1328707 and several bugs without a formal bugreport) - small additions to gnome, freedesktop.org, ubuntu-browsers.d/java and user-mail abstractions - fix mod_apparmor to not break basic auth - update perl modules to support signal, unix and ptrace rules (bnc#900013) - don\'t warn about rules not supported by the kernel - fix logging of \"audit capability\" (lp#1378091) - add support for the \"hat\" keyword in apparmor.vim - build html version of apparmor.vim manpage again (lp#1366572) - see also http://wiki.apparmor.net/index.php/ReleaseNotes_2_9_0- update apparmor-abstractions-no-multiline.diff- remove upstreamed apparmor-profiles-ntpd-pid-location.diff
 
ICM