Hello community,
here is the log from the commit of package apparmor-profiles
checked in at Wed Nov 15 01:00:13 CET 2006.
--------
--- apparmor-profiles/apparmor-profiles.changes 2006-11-09 20:35:41.000000000 +0100
+++ /mounts/work_src_done/NOARCH/apparmor-profiles/apparmor-profiles.changes 2006-11-15 00:18:35.000000000 +0100
@@ -1,0 +2,9 @@
+Mon Nov 13 22:59:46 CET 2006 - srarnold@suse.de
+
+- Bug 219583 - rejecting w access for syslog-ng
+ add /var/lib/*/dev/log access for chroot'd applications
+- Bug 202095 - useradd / userdel profiles incomplete
+ (extra profiles, but can't hurt to update -- thanks Christian Boltz)
+- Bug 197186 - apparmor breaks openntpd
+
+-------------------------------------------------------------------
Old:
----
apparmor-profiles-2.0.1-214.tar.gz
New:
----
apparmor-profiles-2.0.1-233.tar.gz
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Other differences:
------------------
++++++ apparmor-profiles.spec ++++++
--- /var/tmp/diff_new_pack.LMY6Ot/_old 2006-11-15 00:58:57.000000000 +0100
+++ /var/tmp/diff_new_pack.LMY6Ot/_new 2006-11-15 00:58:57.000000000 +0100
@@ -16,10 +16,10 @@
%endif
Summary: AppArmor profiles that are loaded into the apparmor kernel module
Version: 2.0.1
-Release: 3
+Release: 5
Group: Productivity/Security
-Source0: %{name}-%{version}-214.tar.gz
-License: GNU General Public License (GPL) - all versions, Other License(s), see package
+Source0: %{name}-%{version}-233.tar.gz
+License: GNU General Public License (GPL), Other License(s), see package
BuildRoot: %{_tmppath}/%{name}-%{version}-build
URL: http://forge.novell.com/modules/xfmod/project/?apparmor
Requires: apparmor-parser
@@ -77,6 +77,12 @@
%preun
%changelog -n apparmor-profiles
+* Mon Nov 13 2006 - srarnold@suse.de
+- Bug 219583 - rejecting w access for syslog-ng
+ add /var/lib/*/dev/log access for chroot'd applications
+- Bug 202095 - useradd / userdel profiles incomplete
+ (extra profiles, but can't hurt to update -- thanks Christian Boltz)
+- Bug 197186 - apparmor breaks openntpd
* Thu Nov 09 2006 - srarnold@suse.de
- Bug 219580 - some programs require 'm' access to /etc/ld.so.cache
* Sat Nov 04 2006 - srarnold@suse.de
++++++ apparmor-profiles-2.0.1-214.tar.gz -> apparmor-profiles-2.0.1-233.tar.gz ++++++
diff -urN --exclude=CVS --exclude=.cvsignore --exclude=.svn --exclude=.svnignore old/apparmor-profiles-2.0.1/common/Make.rules new/apparmor-profiles-2.0.1/common/Make.rules
--- old/apparmor-profiles-2.0.1/common/Make.rules 2006-11-03 23:07:47.000000000 +0100
+++ new/apparmor-profiles-2.0.1/common/Make.rules 2006-11-10 11:05:48.000000000 +0100
@@ -1,4 +1,4 @@
-# $Id: Make.rules 194 2006-11-03 22:07:47Z steve-beattie $
+# $Id: Make.rules 221 2006-11-10 10:05:48Z steve-beattie $
# ------------------------------------------------------------------
#
# Copyright (C) 2002-2005 Novell/SUSE
@@ -148,7 +148,7 @@
.PHONY: dist
dist: clean $(SPECFILE)
-rm -rf $(RELEASE_DIR)
- svn export $(REPO_URL) $(RELEASE_DIR)
+ svn export -r $(REPO_VERSION) $(REPO_URL) $(RELEASE_DIR)
svn export $(COMMON_REPO_URL) $(RELEASE_DIR)/common
$(TAR) -f $(TARBALL) $(RELEASE_DIR)
rm -rf $(RELEASE_DIR)
diff -urN --exclude=CVS --exclude=.cvsignore --exclude=.svn --exclude=.svnignore old/apparmor-profiles-2.0.1/enabled/sbin.syslog-ng new/apparmor-profiles-2.0.1/enabled/sbin.syslog-ng
--- old/apparmor-profiles-2.0.1/enabled/sbin.syslog-ng 2006-11-05 09:39:33.000000000 +0100
+++ new/apparmor-profiles-2.0.1/enabled/sbin.syslog-ng 2006-11-13 10:40:29.000000000 +0100
@@ -25,7 +25,8 @@
/dev/xconsole rw,
/etc/syslog-ng/* r,
/sbin/syslog-ng mr,
- /var/lib/named/dev/log w,
+ # chrooted applications
+ /var/lib/*/dev/log w,
/var/log/* w,
/var/run/syslog-ng.pid w,
}
diff -urN --exclude=CVS --exclude=.cvsignore --exclude=.svn --exclude=.svnignore old/apparmor-profiles-2.0.1/enabled/usr.sbin.ntpd new/apparmor-profiles-2.0.1/enabled/usr.sbin.ntpd
--- old/apparmor-profiles-2.0.1/enabled/usr.sbin.ntpd 2006-08-04 21:13:59.000000000 +0200
+++ new/apparmor-profiles-2.0.1/enabled/usr.sbin.ntpd 2006-11-14 12:17:22.000000000 +0100
@@ -1,6 +1,6 @@
# vim:syntax=apparmor
# Last Modified: Sun Jan 22 00:11:27 2006
-# $Id: usr.sbin.ntpd 90 2006-08-04 19:13:59Z seth_arnold $
+# $Id: usr.sbin.ntpd 233 2006-11-14 11:17:22Z seth_arnold $
# ------------------------------------------------------------------
#
# Copyright (C) 2002-2005 Novell/SUSE
@@ -27,6 +27,7 @@
/drift/ntp.drift rwl,
/drift/ntp.drift.TEMP rwl,
+ /etc/ntpd.conf r,
/etc/ntp.conf r,
/etc/ntp/drift* rwl,
/etc/ntp/keys r,
diff -urN --exclude=CVS --exclude=.cvsignore --exclude=.svn --exclude=.svnignore old/apparmor-profiles-2.0.1/extras/usr.sbin.useradd new/apparmor-profiles-2.0.1/extras/usr.sbin.useradd
--- old/apparmor-profiles-2.0.1/extras/usr.sbin.useradd 2006-08-04 21:13:59.000000000 +0200
+++ new/apparmor-profiles-2.0.1/extras/usr.sbin.useradd 2006-11-13 10:53:10.000000000 +0100
@@ -1,4 +1,4 @@
-# $Id: usr.sbin.useradd 90 2006-08-04 19:13:59Z seth_arnold $
+# $Id: usr.sbin.useradd 228 2006-11-13 09:53:10Z seth_arnold $
# vim:syntax=apparmor
# ------------------------------------------------------------------
#
@@ -15,12 +15,18 @@
/usr/sbin/useradd {
#include