Skip to content

CentOS 7 - Updates for x86_64: system environment/libraries: libsepol

libsepol - SELinux binary policy manipulation library

Website: https://github.com/SELinuxProject/selinux/wiki
License: LGPLv2+
Vendor: CentOS
Description:
Security-enhanced Linux is a feature of the Linux® kernel and a number
of utilities with enhanced security functionality designed to add
mandatory access controls to Linux.  The Security-enhanced Linux
kernel contains new architectural components originally developed to
improve the security of the Flask operating system. These
architectural components provide general support for the enforcement
of many kinds of mandatory access control policies, including those
based on the concepts of Type Enforcement®, Role-based Access
Control, and Multi-level Security.

libsepol provides an API for the manipulation of SELinux binary policies.
It is used by checkpolicy (the policy compiler) and similar tools, as well
as by programs like load_policy that need to perform specific transformations
on binary policies such as customizing policy boolean settings.

Packages

libsepol-2.5-10.el7.i686 [294 KiB] Changelog by Vit Mojzis (2018-07-25):
- Add support for the SCTP portcon keyword (rhbz#1603571)
libsepol-2.5-10.el7.x86_64 [297 KiB] Changelog by Vit Mojzis (2018-07-25):
- Add support for the SCTP portcon keyword (rhbz#1603571)
libsepol-2.5-8.1.el7.x86_64 [296 KiB] Changelog by Vit Mojzis (2017-10-12):
- Define nnp_nosuid_transition policy capability (rhbz#1480519)
- use IN6ADDR_ANY_INIT to initialize IPv6 addresses
- Allow runtime labeling of ibendports (rhbz#1464489)
- Allow runtime labeling of Infiniband Pkeys (rhbz#1464489)
- Add IB end port handling to CIL (rhbz#1464489)
- Add ibendport ocontext handling (rhbz#1464489)
- Add support for ibendportcon labels (rhbz#1464489)
- Add Infiniband Pkey handling to CIL (rhbz#1464489)
- Add ibpkey ocontext handling (rhbz#1464489)
- Add support for ibpkeycon labels (rhbz#1464489)
- Remove unused attribute on a used argument from avrule_read() (rhbz#1464489)
- Add binary module support for xperms
- Add support for converting extended permissions to CIL
libsepol-2.5-8.1.el7.i686 [293 KiB] Changelog by Vit Mojzis (2017-10-12):
- Define nnp_nosuid_transition policy capability (rhbz#1480519)
- use IN6ADDR_ANY_INIT to initialize IPv6 addresses
- Allow runtime labeling of ibendports (rhbz#1464489)
- Allow runtime labeling of Infiniband Pkeys (rhbz#1464489)
- Add IB end port handling to CIL (rhbz#1464489)
- Add ibendport ocontext handling (rhbz#1464489)
- Add support for ibendportcon labels (rhbz#1464489)
- Add Infiniband Pkey handling to CIL (rhbz#1464489)
- Add ibpkey ocontext handling (rhbz#1464489)
- Add support for ibpkeycon labels (rhbz#1464489)
- Remove unused attribute on a used argument from avrule_read() (rhbz#1464489)
- Add binary module support for xperms
- Add support for converting extended permissions to CIL
libsepol-2.5-6.el7.i686 [284 KiB] Changelog by Petr Lautrbach (2016-08-10):
- Fix memory leak in expand.c
- Fix invalid read when policy file is corrupt
- Fix possible use of uninitialized variables
libsepol-2.5-6.el7.x86_64 [287 KiB] Changelog by Petr Lautrbach (2016-08-10):
- Fix memory leak in expand.c
- Fix invalid read when policy file is corrupt
- Fix possible use of uninitialized variables
libsepol-2.1.9-3.el7.x86_64 [154 KiB] Changelog by Daniel Mach (2014-01-24):
- Mass rebuild 2014-01-24
libsepol-2.1.9-3.el7.i686 [147 KiB] Changelog by Daniel Mach (2014-01-24):
- Mass rebuild 2014-01-24

Listing created by repoview