openSUSE-RU-2014:1483-1: moderate: AppArmor
openSUSE Recommended Update: AppArmor
______________________________________________________________________________
Announcement ID: openSUSE-RU-2014:1483-1
Rating: moderate
References: #857122 #863226 #869787 #870607 #874094 #885317
#886225 #889650 #889651 #889652 #892374 #899746
#904620
Affected Products:
openSUSE 13.1
______________________________________________________________________________
An update that has 13 recommended fixes can now be
installed.
Description:
This recommended update for AppArmor fixes the following issues:
- Update from version 2.8.2 to 2.8.4 and several bugfixes
+ delete cache in apparmor-profiles %post (workaround for bnc#904620#c8
/ lp#1392042)
+ mod_apparmor: try uri hat after AADefaultHatName, not before. Fixes
the regression in 2.8.3 (lp#1322778)
+ libapparmor: fix log parsing memory leaks (lp#1340927)
+ parser: Fix profile loads from cache files that contain multiple
profiles
+ several profiles and abstractions/* updates (including bnc#857122#c2,
bnc#899746, bnc#869787, bnc#886225)
+ see http://wiki.apparmor.net/index.php/ReleaseNotes_2_8_4 for details
+ add Provides: apparmor-abstractions to apparmor-profiles
+ deny capability block_suspend for /usr/lib/dovecot/imap
+ usr.lib.dovecot.auth: allow
/var/run/dovecot/auth-token-secret.dat{,.tmp}
+ allow dnsmasq read access to interface mtu in
/proc/sys/net/ipv6/conf/<ifacename>/mtu (bnc#892374)
+ usr.lib.dovecot.auth: add '/etc/dovecot/* r' to allow reading
plaintext password files (bnc#874094)
+ Rename rpmlintrc to %{name}-rpmlintrc to follow the packaging
guidelines.
+ perl-apparmor: Fix handling of network (or network all) (bnc#889650)
+ perl-apparmor: Fix handling of capability keyword (bnc#889651)
+ perl-apparmor: Properly handle bare file keyword (bnc#889652)
+ permit clustered Samba access to CTDB socket and databases (bnc#885317)
+ fix problems with dovecot and managesieve
+ add #include
participants (1)
-
maintenance@opensuse.org