Your message dated Fri, 05 Mar 2021 10:06:46 +0000
with message-id <e1li7m6-000byz...@fasolo.debian.org>
and subject line Bug#983447: fixed in policycoreutils 3.1-3
has caused the Debian Bug report #983447,
regarding policycoreutils: Regression breaks selinux-autorelabel on boot due to
wrong argument passing to fixfiles
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
983447: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=983447
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: policycoreutils
Version: 3.1-2
Severity: grave
Justification: renders package unusable
User: selinux-de...@lists.alioth.debian.org
Usertags: selinux
X-Debbugs-Cc: j24...@gmail.com
Dear Maintainer,
A recent change (commit 6a36aa28c on
salsa.debian.org/selinux-team/policycoreutils) breaks relabling on boot.
In the selinux-autorelabel script, the contents of "/.autorelabel" are passed
as arguments to fixfiles, but the quotations break fixfiles argument parsing,
e.g. `/sbin/fixfiles "" restore` or `/sbin/fixfiles "-F "` (note the extra
space).
This means that SELinux enabled systems can no longer be relabeled using
`fixfiles onboot` or `fixfiles -F onboot`.
-- System Information:
Debian Release: bullseye/sid
APT prefers unstable
APT policy: (500, 'unstable'), (500, 'testing'), (1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386
Kernel: Linux 5.10.0-3-amd64 (SMP w/4 CPU threads)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_OOT_MODULE,
TAINT_UNSIGNED_MODULE
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL
set to en_US.UTF-8), LANGUAGE=en_US:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: SELinux: enabled - Mode: Enforcing - Policy name: bauen1-policy
Versions of packages policycoreutils depends on:
ii libaudit1 1:3.0-2
ii libc6 2.31-9
ii libselinux1 3.1-3
ii libsemanage1 3.1-1+b2
ii libsepol1 3.1-1
ii lsb-base 11.1.0
ii selinux-utils 3.1-3
policycoreutils recommends no packages.
policycoreutils suggests no packages.
-- no debconf information
--- End Message ---
--- Begin Message ---
Source: policycoreutils
Source-Version: 3.1-3
Done: Russell Coker <russ...@coker.com.au>
We believe that the bug you reported is fixed in the latest version of
policycoreutils, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 983...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Russell Coker <russ...@coker.com.au> (supplier of updated policycoreutils
package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Fri, 05 Mar 2021 20:45:24 +1100
Source: policycoreutils
Architecture: source
Version: 3.1-3
Distribution: unstable
Urgency: medium
Maintainer: Debian SELinux maintainers <selinux-de...@lists.alioth.debian.org>
Changed-By: Russell Coker <russ...@coker.com.au>
Closes: 922448 983447 984567
Changes:
policycoreutils (3.1-3) unstable; urgency=medium
.
* Remove needless quotes around $FORCE variable in
/lib/systemd/selinux-autorelabel to avoid shell error on empty file
Closes: #983447
* Add check for noautorelabel command line option to prevent relabeling
Closes: #922448
* Make fixfiles avoid trying to relabel tmpfs and other non-permanent
filesystems
Closes: #984567
Checksums-Sha1:
78550592393364c7c7f3dba631f1820f39ec5677 2214 policycoreutils_3.1-3.dsc
1b5629d891bad8017cccad9e5e6301ae1cf788b7 27480
policycoreutils_3.1-3.debian.tar.xz
b93dc5e730c3dd66a55b189e3b9112ddd41cce25 7562
policycoreutils_3.1-3_amd64.buildinfo
Checksums-Sha256:
8d6c15e814a1eef930ba449a83d57371449387014547a70e9faaa2eb1fcdb503 2214
policycoreutils_3.1-3.dsc
b5651f26654ba889b94fd2bcf01d1ba183fb96e86a31664549641363b1f1cde3 27480
policycoreutils_3.1-3.debian.tar.xz
285ee8aac0b6dcfce658372fa3f2477d5721e028a80eea78d11c763f35328380 7562
policycoreutils_3.1-3_amd64.buildinfo
Files:
27a3bde8f38908183f82186daba1d471 2214 utils optional policycoreutils_3.1-3.dsc
abf0f086ab54a97a46d0a4e254436eb2 27480 utils optional
policycoreutils_3.1-3.debian.tar.xz
87ed19069122e8a4e741994c85340c17 7562 utils optional
policycoreutils_3.1-3_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=/uBL
-----END PGP SIGNATURE-----
--- End Message ---