Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

selinux-sandbox-3.11-bp161.2.1 RPM for aarch64

From OpenSuSE Leap 16.1 for aarch64

Name: selinux-sandbox Distribution: SUSE Linux Enterprise 16
Version: 3.11 Vendor: openSUSE
Release: bp161.2.1 Build date: Thu Jul 30 11:54:41 2026
Group: System/Management Build host: reproducible
Size: 93383 Source RPM: selinux-sandbox-3.11-bp161.2.1.src.rpm
Packager: https://bugs.opensuse.org
Url: https://github.com/SELinuxProject/selinux/wiki
Summary: SELinux sandbox helper
Run an application within a tightly confined SELinux domain. The default
sandbox domain only allows applications the ability to read and write stdin,
stdout and any other file descriptors handed to it.

Provides

Requires

License

GPL-2.0-or-later

Changelog

* Thu Jul 30 2026 Robert Frohl <rfrohl@suse.com>
  - Fix package name in manpage (bsc#1272976)
      add man_correct_package_name.patch
* Tue Jul 07 2026 Robert Frohl <rfrohl@suse.com>
  - Incorporate changes from the policycoreutils sandbox subpackage,
    which was briefly re-introduced (bsc#1266226, bsc#1270534)
      add policycoreutils-sandbox-fix-cleanup.patch
  - Move seunshare from /usr/sbin to /usr/bin (bsc#1268256)
      add sandbox_seunshare_move_usr_bin.patch
* Mon Jul 06 2026 Cathy Hu <cathy.hu@suse.com>
  - Update to version 3.11
    https://github.com/SELinuxProject/selinux/releases/tag/3.11
    - User-visible changes:
    - Several security improvements in sandbox
    - Dropped sandbox/seunshare -k/--kill support (unused by sandbox, fundamentally
      racy, redundant with killall -Z).
    - Fixed sandbox/seunshare getopt flags to match the actual options.
    - Fixed sandbox/seunshare remounting of /tmp and /var/tmp within the sandbox.
    - Fixed sandbox interactive prompt for saving files.
    - Rewrote restorecond and sandbox/seunshare to eliminate TOCTOU issues on their
      other path-based operations via /proc/self/fd and the use of a safe_open()
      helper.
    - Development-relevant changes:
    - Reformatted entire tree based on .clang-format and added new
      check-format/format make targets to check and/or reformat code to match.
      This is now a requirement for new patches.
* Thu Feb 05 2026 Cathy Hu <cathy.hu@suse.com>
  - Update to version 3.10
    https://github.com/SELinuxProject/selinux/releases/tag/3.10
    * sandbox/seunshare: Replace system() with execv() to prevent shell injection
  - This package is not noarch, dropping the BuildArch definition
  - keyring: Add key of Jason Zaman <jasonzaman@gmail.com>
    * added 63191CE94183098689CAB8DB7EF137EC935B0EAF [expires: 2026-02-08]
* Thu Jul 17 2025 Johannes Segitz <jsegitz@suse.com>
  - Update to version 3.9
    * no source change
* Fri Mar 07 2025 Cathy Hu <cathy.hu@suse.com>
  - Update to version 3.8.1
    https://github.com/SELinuxProject/selinux/releases/tag/3.8.1
    * no source change
* Tue Feb 04 2025 Robert Frohl <rfrohl@suse.com>
  - Update to version 3.8
    https://github.com/SELinuxProject/selinux/releases/tag/3.8
    * No functional change
  - For a more in depth list of changes see
    https://github.com/SELinuxProject/selinux/releases/download/3.8/shortlog-3.8.txt
  - keyring: Update Petr Lautrbach <lautrbach@redhat.com>
    * removed 0xBC3905F235179CF1 (expired: 2024-10-25)
    * added 0xFB4C685B5DC1C13E (expires: 2026-11-04)
* Mon Jul 01 2024 Cathy Hu <cathy.hu@suse.com>
  - Update to version 3.7
    https://github.com/SELinuxProject/selinux/releases/tag/3.7
    User-visible changes:
    * sandbox: Add support for Wayland
    Bugfixes:
    * sandbox: do not run window manager if it's not a session
    * sandbox: do not fail without xmodmap
    * sandbox: do not override warning CFLAGS
* Tue Dec 19 2023 Cathy Hu <cathy.hu@suse.com>
  - Update to version 3.6
    https://github.com/SELinuxProject/selinux/releases/tag/3.6
    * Add notself support for neverallow rules
    * Improve man pages
    * man pages: Remove the Russian translations
    * Add notself and other support to CIL
    * Add support for deny rules
    * Translations updated from
      https://translate.fedoraproject.org/projects/selinux/
    * Bug fixes
  - Remove keys from keyring since they expired:
    - E853C1848B0185CF42864DF363A8AD4B982C4373
      Petr Lautrbach <plautrba@redhat.com>
    - 63191CE94183098689CAB8DB7EF137EC935B0EAF
      Jason Zaman <jasonzaman@gmail.com>
  - Add key to keyring:
    - B8682847764DF60DF52D992CBC3905F235179CF1
      Petr Lautrbach <lautrbach@redhat.com>
* Fri Feb 24 2023 Johannes Segitz <jsegitz@suse.com>
  - Update to version 3.5
    * Improved tmpdir handling
  - Added additional developer key (Jason Zaman)
* Mon May 09 2022 Johannes Segitz <jsegitz@suse.com>
  - Initial package

Files

/usr/bin/sandbox
/usr/bin/seunshare
/usr/share/doc/packages/selinux-sandbox
/usr/share/doc/packages/selinux-sandbox/SANDBOX-README.md
/usr/share/fillup-templates/sysconfig.sandbox
/usr/share/man/man5/sandbox.5.gz
/usr/share/man/man8/sandbox.8.gz
/usr/share/man/man8/seunshare.8.gz
/usr/share/sandbox
/usr/share/sandbox/sandboxX.sh
/usr/share/sandbox/start


Generated by rpm2html 1.8.1

Fabrice Bellet, Mon Aug 10 08:37:54 2026