[Apollo] Advisories Statistics light light Login

RLBA-2024:3982

Bug Fix Mirrored from RHBA-2024:3982
Issued at: 2024-07-02
Updated at: 2024-07-02

Synopsis

selinux-policy bug fix update



Description

The selinux-policy packages contain the rules that govern how confined processes run on the system.

Bug Fix(es):

* selinux prevents qemu-kvm from read access to max_map_count (JIRA:Rocky Linux-36154)

* SELinux prevents the qemu-ga processes from reading the /proc/sys/vm/max_map_count file [rhel-9.4.z] (JIRA:Rocky Linux-36291)



Affected products

Rocky Linux 9 aarch64 Rocky Linux 9 ppc64le Rocky Linux 9 s390x Rocky Linux 9 x86_64

Fixes



CVEs

Affected packages

Rocky Linux 9 x86_64 - BaseOS

selinux-policy-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-doc-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-mls-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-sandbox-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-targeted-0:38.1.35-2.el9_4.2.0.2.noarch.rpm

Rocky Linux 9 aarch64 - BaseOS

selinux-policy-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-doc-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-mls-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-sandbox-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-targeted-0:38.1.35-2.el9_4.2.0.2.noarch.rpm

Rocky Linux 9 s390x - BaseOS

selinux-policy-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-doc-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-mls-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-sandbox-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-targeted-0:38.1.35-2.el9_4.2.0.2.noarch.rpm

Rocky Linux 9 ppc64le - BaseOS

selinux-policy-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-doc-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-mls-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-sandbox-0:38.1.35-2.el9_4.2.0.2.noarch.rpm selinux-policy-targeted-0:38.1.35-2.el9_4.2.0.2.noarch.rpm

Rocky Linux 9 x86_64 - AppStream

selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-devel-0:38.1.35-2.el9_4.2.0.2.noarch.rpm

Rocky Linux 9 aarch64 - AppStream

selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-devel-0:38.1.35-2.el9_4.2.0.2.noarch.rpm

Rocky Linux 9 s390x - AppStream

selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-devel-0:38.1.35-2.el9_4.2.0.2.noarch.rpm

Rocky Linux 9 ppc64le - AppStream

selinux-policy-0:38.1.35-2.el9_4.2.0.2.src.rpm selinux-policy-devel-0:38.1.35-2.el9_4.2.0.2.noarch.rpm