policycoreutils-newrole-2.8-lp151.4.6.1 4>$  Ap^Up/=„&FUmƒT+-=Ǩӻmvt[v.ê'8xVA5N!t|^i)WN`7fN)PyͫFׁE2"qo|c2޸LHo@۩^0|کΉ4nAmV>J@ +|]V7r "TiƦ(]us #fb+kMz{Dk[Yg{?t4-}(937136588443e054872a36e818ae9ecee7f97164492848a6318b5c609def316db9d2cb90551ec4ba0463623254ead49c73f61bba4Z<^Up/=„ yNXe ^Kk _&$ٗT\Ie|$E:8.) TgH!p6.EypB,L?,<d * O $NT[      d(7889:>(8C(@F(HG(\H(hI(tX(xY(\(](^(b)c)d*Je*Of*Rl*Tu*hv*tw+x+y+ z++++,8Cpolicycoreutils-newrole2.8lp151.4.6.1The newrole application for RBAC/MLSRBAC/MLS policy machines require newrole as a way of changing the role or level of a logged-in user.^Upxcloud130popenSUSE Leap 15.1openSUSEGPL-2.0-or-laterhttp://bugs.opensuse.orgProductivity/Securityhttps://github.com/SELinuxProject/selinuxlinuxx86_64 if [ -x /usr/bin/chkstat ]; then /usr/bin/chkstat -n --set --system /usr/bin/newrole fij+큤^Upo^Ups^Upod6c3383bc3eb83619f08800945c081855daa06f4cfc218a99b2992a9dafc035854946c870a7542f06fd447569b83df848e8c01b5e702778f8a5719a76389046f1c2949f380bc90589b841badda751bc1abec7d9b939ee3454af5fc49688f6593rootrootrootrootrootrootpolicycoreutils-2.8-lp151.4.6.1.src.rpmconfig(policycoreutils-newrole)policycoreutils-newrolepolicycoreutils-newrole(x86-64)!@@@@@@@@@@@@    /bin/sh/bin/shconfig(policycoreutils-newrole)libaudit.so.1()(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.8)(64bit)libpam.so.0()(64bit)libpam.so.0(LIBPAM_1.0)(64bit)libpam_misc.so.0()(64bit)libpam_misc.so.0(LIBPAM_MISC_1.0)(64bit)libselinux.so.1()(64bit)permissionspolicycoreutilsrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)2.8-lp151.4.6.12.83.0.4-14.6.0-14.0-15.2-14.14.1 /usr/bin/chkstat -n --warn --system -e /usr/bin/newrole 1>&2^9\]@\d\X)@\8@\3?@\ `\ `[H[%@[$@Z@Z@Z@ZmZ2@ZI@ZZ;@Z@Z XWW\@W~TZ@Johannes Segitz Johannes Segitz jsegitz@suse.comjsegitz@suse.comjsegitz@suse.comMarcus Rueckert jsegitz@suse.comjsegitz@suse.comjsegitz@suse.comjsegitz@suse.comjsegitz@suse.commcepl@suse.comdimstar@opensuse.orgjsegitz@suse.comjsegitz@suse.comtchvatal@suse.comjsegitz@suse.comjsegitz@suse.comjsegitz@suse.comrbrown@suse.comjsegitz@suse.comjsegitz@novell.comjengelh@inai.dejsegitz@novell.comjsegitz@novell.com- Added seobject_late_init.patch to prevent failures when loading seobject on systems without policies (bsc#1162674)- Added chcat_join.patch to prevent joining non-existing categories (bsc#1159262)- Make sure current devel package conflicts with old policycoreutils-python (bsc#1124437)- Removed hardcoded python 3.6 path from spec file- Required python3-policycoreutils instead of just recommending it for policycoreutils (bsc#1121455) - Added requires for python3-setuptools to python3-policycoreutils (bsc#1121455) - Removed requires for audit-libs-python from policycoreutils (bsc#1121455)- properly obsolete/provides for policycoreutils-python - remove unneeded obsolete from the devel package- Don't require selinux-policy-devel for the devel package- Obsolete policycoreutils-python in policycoreutils and policycoreutils-devel to prevent file conflicts- Included content of selinux-python-2.8 and semodule-utils-2.8. I think it's easier to have all the relevant binaries in the policycoreutils package (bsc#1116596). Added make_targets.patch for this - Removed restorecond, is now a separate package - Added python3.patch to use python3 interpreter - New runtime requires: * libsepol1 * python3-ipy * python3-networkx * python3-semanage - Provides and obsolete policycoreutils-python- Adjusted source urls (bsc#1115052)- Update to version 2.8 (bsc#1111732) For changes please see https://raw.githubusercontent.com/wiki/SELinuxProject/selinux/files/releases/20180524/RELEASE-20180524.txt- Rebase to 2.7 * Rather large rewrite of the SPEC file * Significantly, support for python2 removed For changes please see https://raw.githubusercontent.com/wiki/SELinuxProject/selinux/files/releases/20170804/RELEASE-20170804.txt - Dropped patches: * policycoreutils-initscript.patch * policycoreutils-pam-common.patch * loadpolicy_path.patch * CVE-2018-1063.patch- Don't build policycoreutils-gui for anything suse_version >= 1500: there is no reason te believe that SLE16 will have those old, depreacted dependencies back. Fixes also the issues for Tumbleweed, where -gui was not installable.- SLE 15 doesn't have the necessary files for policycoreutils-gui, don't build it there- Drop the requirement for selinux-policy for the gui tools.- Drop SLE11 support, needs the audit that is not present on SLE11 - Fix service link to actually work on current releases - Drop SUSE_ASNEEDED=0 as it seems to build fine without it - Do not depend on systemd, just systemd-rpm-macros- Added CVE-2018-1063.patch to prevent chcon from following symlinks in /tmp, /var/tmp, /var/run and /var/lib/debug (bsc#1083624, CVE-2018-1063)- Remove BuildRequires for libcgroup-devel (bsc#1085837)- Removed BuildRequires for setools-devel and added new runtime requirement for python2-networkx- Replace references to /var/adm/fillup-templates with new %_fillupdir macro (boo#1069468)- Update to policycoreutils version 2.6. Notable changes: * setfiles: reverse the sense of -D option * sandbox: Use dbus-run-session instead of dbus-launch when available * setfiles: Utility to find security.restorecon_last entries * setfiles: Add option to stop setting the digest * hll/pp: Change warning for module name not matching filename to match new behavior * sepolicy: convert to setools4 * sandbox: create a new session for sandboxed processes * sandbox: do not try to setup directories without -X or -M * sandbox: do not run xmodmap in a new X session * sandbox: fix file labels on copied files * semanage: Fix semanage fcontext -D * semanage: Default serange to "s0" for port modify * semanage: Use socket.getprotobyname for protocol * semanage: Add auditing of changes in records * Improve compatibility with Python 3 * Update sandbox types in sandbox manual * hll/pp: Warn if module name different than output filename - Update to sepolgen version 2.6. Notable changes: * Add support for TYPEBOUNDS statement in INTERFACE policy files - Dropped CVE-2016-7545_sandbox_escape.patch- Added CVE-2016-7545_sandbox_escape.patch to fix CVE-2016-7545, bsc#1000998 Sandboxed session could have escaped to the parent session- Trim description in line with other selinux packages- Changes submitted by MargueriteSu: Update to version 2.5 * sepolicy: Do not overwrite CFLAGS, from Nicolas Iooss. * sepolicy: Rename policy global variable conflict, from Nicolas Iooss. * newrole: Add missing defined in #if, from Nicolas Iooss. * newrole: Add description of missing parameter -p in newrole man page, from Lukas Vrabec. * secon: Add missing descriptions for --*-key params in secon man page, from Lukas Vrabec * semanage: List reserve_port_t in semanage port -l, from Petr Lautrbach. * chcat: Add a fallback in case os.getlogin() returns nothing, from Laurent Bigonville. * semanage: fix 'semanage permissions -l' subcommand, from Petr Lautrbach. * semanage: replace string.join() with str.join(), from Petr Lautrbach. * Man page warning fixes, from Ville Skyttä. * sandbox: Fix sandbox to propagate specified MCS/MLS Security Level, from Miroslav Grepl. * semanage: Require at least one argument for 'semanage permissive -d', from Petr Lautrbach. * sepolicy: Improve sepolicy command line interface, from Petr Lautrbach. * audit2allow/why: ignore setlocale errors, from Petr Lautrbach. * semodule: Add --extract/-E, --cil/-c, and --hll/-H to extract modules, from Yuli Khodorkovskiy. * audit2allow: Comment constraint rules in output, from Miroslav Grepl via Petr Lautrbach. * Fix PEP8 issues, from Jason Zaman. * semanage: fix moduleRecords deleteall method, from Stephen Smalley. * Improve compatibility with Python 3, from Michal Srb. * semanage: Set self.sename to sename after calling semanage_seuser_set_sename(), from Laurent Bigonville. * semanage: Fix typo in semanage args for minimium policy store, from Petr Lautrbach. * sepolicy: Only invoke RPM on RPM-enabled Linux distributions, from Sven Vermeulen. * mcstransd: don't reinvent getpeercon, from Stephen Smalley. * setfiles/restorecon: fix -r/-R option, from Petr Lautrbach. * org.selinux.policy: Require auth_admin_keep for all actions, from Stephen Smalley. * hll: Move core functions of pp to libsepol, from James Carter * run_init: Use a ring buffer in open_init_pty, from Jason Zaman. * run_init: fix open_init_pty availability check, from Nicolas Iooss. * Widen Xen IOMEM context entries, from Daniel De Graaf. * Fix -Wformat errors with gcc-5.0.0, from Petr Lautrbach. * Fixed typo/grammatical error, from Christopher Peterson. * Fix typo in semanage-port man page, from Andrew Spiers. Update to version 2.4 * Fix bugs found by hardened gcc flags, from Nicolas Iooss. * Improve support for building with different versions of python from Nicolas Iooss. * Ensure XDG_RUNTIME_DIR is passed through to the sandbox in seunshare, from Dan Walsh * Remove cgroups from sandbox, from Dan Walsh * Try to use setcurrent before setexec in seunshare, from Andy Lutomirski * Stop using the now deprecated flask.h and av_permissions.h, from Stephen Smalley * Add a store root path in semodule, from Yuli Khodorkovskiy * Add a flag to ignore cached CIL files and recompile HLL modules, from Yuli Khodorkovskiy * Add and install HLL compiler for policy packages to CIL. The compiler is installed in /var/libexec/selinux/hll/ by default, from Steve Lawrence * Fixes to pp compiler to better support roles and type attributes, from Yuli Khodorkovskiy * Deprecate base/upgrade/version in semodule. Calling these commands will now call --install on the backend, from Yuli Khodorkovskiy * Add ability to install modules with a specified priority, from Caleb Case * Use /tmp for permissive module creation, by Caleb Case * Update semanage to use new source policy infrastructure, from Jason Dana * Add RuntimeDirectory to mcstrans systemd unit file, from Laurent Bigonville- added Requires: python-yum, yum-metadata-parser to fix sepolicy (bnc#903841)/bin/sh/bin/shcloud130 15826576562.8-lp151.4.6.12.8-lp151.4.6.12.8-lp151.4.6.1newrolenewrolenewrole.1.gz/etc/pam.d//usr/bin//usr/share/man/man1/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:12036/openSUSE_Leap_15.1_Update/5dc076e9f5028fb51a41df10d00a8737-policycoreutils.openSUSE_Leap_15.1_Updatecpioxz5x86_64-suse-linuxASCII textELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/l, BuildID[sha1]=df0a72a724dce7366b7ba0016f62d7389337a041, for GNU/Linux 3.2.0, strippedtroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix) R R RR RRRRR R RRy=5,Raÿutf-8473a8b73a409fdc1ee9edb50fbac16e6ec2a42345aa78e06b04ca2647c72ddb7?7zXZ !t/r)f] crv(vX0CZ£ aLkCn-=1ƠWx <`\*E󷿇([#@bA2o-hkFnp.%@`*nv( JXq*жQX~7<!x*Xs9=>HW=ֽ|`8 gOm2H8%۴EoY/|hfpݹ`mb+tl;pD~ LM+G0_@O1LkO{?OGgVw(T`-spXj[) 5vJ{e&j.YmzBMZUQJ6q+צӴwHɻmȳNzbC _F0Jn0%P@qs۶*`!Pb)KbZcy̤~rz bQI>: *0D\8'{cL^T魄qը$ӓuɴtkez2&<@X1&# pnWzx-]AbMb4M `Fc%a.z7s}EijtC6t47x(9LrEe(cR F0`r|n8$meR4 P?OA}( |}&3!^%ޢLƐF/:ԖtRk*gV*`ߔтcd! zu .4܁  FP_ $Q ]!eK-.}{1{,+z& 3ʏo&瞢}e*{Gz6 򜣭-1ؼ|OnVJ)ũK. 3/'8I0lj)W땣g8rܬJ% YZ;vX#^3~N-,E/bœgQ"s2qlqS)ZU]/uq`g'2Vĸ+0%m1+4ɂY9}1Xcܦe6V8viL{PPF겐;DTN'Z:&{3 k&J(Yۘ9VVI?) [G@C@㳷Ǡ J+y܏rWE)E胈lhΦaYb t{mHv vE^ UɁM-7-3y+?S1x4ENeIˮA[tP"9\XXɎۈoAh o@ܨX'T99 ,$1TyǕٯαI &ßj@]`#3L^⚖oxHVܛz:MUՄjǀؙ@@"q57kZ`_D 3xԢlKԶf'ڐ%,vEVₜ|`nsݵm3M R& P @U-PZpԅ6&x~ qV^TjgDhX!?,9 CǓ_;}_KV^ /qPtH޺ʭWa y͜b\8XۄU٧_l+!lL i~ hE@fMO׋J|ޢ4X3 [ $7{m. p #RTׁWARF כځ.kTűg9^fӰ*s1 օdՎ˗.KyYqcRXo7>OMƊ"mVځtS)8aW gzrUn-"co)4ϔl _^5n'ݱ=r<|MV#f: g'(vDoc CsN  EE/S 7vgU#7vh[O8nBQ $mlӞmP}ayA ^Y<7DͭQt&7 bV@hgd!iP8 g$Xi^Dֻ2Gle$iQgϖ["%%"4|o\]6pn%q C$ýSĄQJR|ZKm+\tnTZq (}JJt11㨃ÉPc71Lur'$VB,,b T"m!e<%WMVBQRc$V*.K<ж)SlФԳ K`3"EJհX{Ljƫ_PPvC{q >]sHeN ۽YqlG} xV oHnym#cS$'rƤ&w\V/ܦ7Xxe6&!=%l/0G:f,n ;s{S7XPo}Jp}軺rCf!qu ";N2} 7]DPÞ>"-.#Oa*GȬ^ V5X6 j!W3b0)"_t S2qkXAZH0t ƈzW,et ^A')dd:g߀.q>x~ɋoLlOnR&/S  $S, [`ƨHWeθ>`)hYsaq*jшۮ%'%KY)FSHqD ;-f7 C#E*uZGu`6KxPo*ǚOtv ٓ~TS5C Y$HD# xG3]kt-qU| ~N=Jl:cwSԣtq\Q #ge Y35f;s۰̗q9˜ҠPy&kn'eK׍6YTqKaN ȉ}SBiB*NYȣlˎzt| ,~Zff'xۛ޸![6" k;}VwM#o|D/{e [ʈE"!1 ݨVl"8<fMV>9&.~Kz~prfMQgv瘘admaYɚCű"KmflJ̒(Q] 04\G:<QmJVNbOG4[*e!Y|Ktge[ 42^mD-F80cmkB kؿ 5iSL%Kxv u+"Ʒ<*; !;eCR_J4|PeCdzk(n֋Bzƭ"(z)[}k=^4Tzmm8ƽU^,}3iT纣.eecA6ID_VmgU& YtJ8HYWM4n +!:ʟ#(mlj":l2gnulTPdt<,(9MC:׮w bi[|UZZ4YT~NX0L/&bjuzX86+2)}Sa/mDW^<R7h`oбQo?ɲ[݄gjSg(-&XLb3i7Li<\5ec?#rU!&noh3H/reź9V(ğ_dJ&"ۆQʣ`XQ)UB']@Z1-`P?k {'^>|.H 0h5v3Rc/"SlOmOһ6 @Ei45QMev~`*Ǚ5L fWnP -,:m5턢q7c3}pBCQ{|3`!'. NڎRN IӃ!9w%MKٝH,{F:sQO O1H]6Sud6VL!aC:U6}tZ|+Kr/g/h#Q蒏 8]mF@OOyÞY@"'r{ժJ8;tbŪ v%ӪA  9kfώV q` -; yv<(!`?('V8  oMdd]bC emGjN/ ,˺UK(Wy/U8ԣCG#ŧl8swzť |ǒ.b vq0w8h t^xI0kj[2Yq$՟㝊=tLMUHߣu+lpm{ VJ߷h.^opJkժOHS+L!>, ܘFxڋUBr-v\WqhOJMg.C Քm˛|roC%G=9wdZ@т#^4GZD&]O)9B3M?YJ;j`!-KQ-O&/1}JN#cܑ^,Pwh1ȝcT חz.aՖ<R膯#38kɳi:N&1.3<,+pGu$S-l9ߔ%slFauWYafp̬0yЗd\<^,z.\A63SuCu CyehٌXQ86}>1YIM[w% I*$նD Jk]=w'" ^\E1m4pKTtf"uJ67GSr  kE?-MQA"ODD-ۤo ~urm> `)"*+k)X$DFE՛À4w%u b7 ~d%7k`~s)\Qhܙ(;"?@\X+$M&:CZė7vO0J GRaF≀.HAm꣓On"oź}3D<p}wmR&d=)%(%8ǂxMB*mԘV0̽YYu6Mو ;ɁdA2 ǭ?sÏBЫ5Ʒ+D-vsPTr}0"| .ȹTRe# LWL2}ĩ-e<ڊuΑ?6;J*U_ nR{Sny YJy N1_VqǬc3 jԜs<`HnAY~I{a/6entwt6}5QdLY%Rkٰ2)j4+Yfc#ӏ^5fz ֦%7oܦ'4ղ^AH+& 1q焾buy'>oK?0^, "A)Ѡa4a4#cDY&|zipGb$ٌ fyNHV`wK"f݈_O T?+VY ĤқEjчzkvL(ԮFՋ^0[n %yxq@($DOҝM~<ȡ&eee%З`WϼJiIu[OK\cs  z ɣ|OPJӯ PGI"VTiEܗԿ}^^?I'qτymbm^,a] s)WD*rg[lKf1%v`d7۷v!N;"v;Z*s}PX%]N4/ Џ?Q\ICQ,d\GY}ڇg2wWL)eaB?n>l zC:*^UF$k?πlW^lK-xB3WSInc_Q`ݯ7\/cpG{U0FcfGߨ|YdwZ4_{1vƒ*gTRwzoZ7桼5]U=Y#_V!dPk=0t P.BDŽ6glJP|6X;%Sj=i)lm_șrU.rϼݣN-wܔC1E umVGA/yı AFܘ_eտdfx?R-7&Ȏov_"ŘENn[pM%}R2{s~v 3j 9onJ}aG6YFJ]IJhmVD%_IBI$Y6Oe5L9mP'u\GS7=vRj v1's&R*֔Y +ș<$S n$;5CwЪFH(k ۓʁRy!Cն446I犬6f'cuv"Q|I7aϝ{Cߘף?g\g҆tUP֢  P$>D؃_<}^;yIR+7m~\:^Q>t%_hV*=Nۨ^Cw;Q@7HIo@Elc C7_0<6s z_&W].IÒ"n"u6H]w& U|L5BcN) 櫧FyZ}g. ZL6IZr]H\«n%Ѩ18͂ ݵIKVDEN  .%IY>xZPY>&J(1".M\y^ dHW`ѥ>SyF[\u*u£fڣc|'*/:YDqE Jޚۂ` r26'| 4{L4h!z;5Yp` ?;+򛽑JшzQ6UA!vu#R"0Y\$ˈTIIv ԃKO4yϜ n'wؐ{܍K bz"K"Sm!Kg3驫w `/9" sm3{p,.L\0L. /WXEJەni עO^jZqs?03/׍M;gG~nl!&Kճ=}ڍ뺇 q$ r[ LHr,>33QB^Iɽą4 du?$3znB:7~[N#dOt)JD w~~dWFpffa /.6l73Sam_c10Hׄ^Mw^a*TElC'JÊ*55fɗflCMBOHQ +'1V[ےެSC^ _@ŭWCLR[H71|Tȱo,%iUXa[JLJasMBu XV)\)tBdHm=80oN+_ a-U :G_Yc -˄2tDCDπw)rW%6'%>o]3"01t$e:I Z$gwۂmH:25!x~!Qݕݳ%7kK|guN?_P6B@MiC$,'ȒEE % vmYp+b؉$, HYKޢ,J˹)8F\blp jk`٘h,Ԣܫps@Dil9/f36bĮ]DAfYgA&1T4^ .'$ PcS%/r fq75IVťhGQ9L}Ml T#%}]'ɗ:3zXŎ(sƦ&J.Wȓֆ8zU V `coʺ 7@%eP{+NĉKQ!BnQK?ȶkis2p.2ƎշLǭCoFm5C1pk"z`dknJU$XLzu{?.>+3y@DӜ|  /k)Jzp'Jt^U|ۮ.L1;|AoЮ9%r}^K~XqQM u*[^C2+$$ 6TEZKo/k#J\,?&ha (rundb/up󇥌GOzX:* /n;K΢:fl9#Ht[Jq+ߜRь3ڰBRpG&o1?nrln!?vdj:2fAI& 0kb Xn=TCR{cbs2Ϸ Eʵр zd3D&ރ(ÔN2 ȫ)*q;LV0!uǿ Ƿ,>ը~xPd:w (uM1i+{tEjE/%pL@3`J+N2#:GbtJoT*o[IY]#L09S\Ņvi 2@lt;l!m ӛpR3izHd6&ٷ$ڽ>C ƱGa *S