Scientific Linux Security Update : selinux-policy on SL6.x i386/x86_64 (20120213)

high Nessus Plugin ID 61247

Synopsis

The remote Scientific Linux host is missing one or more security updates.

Description

The selinux-policy packages contain the rules that govern how confined processes run on the system.

This update fixes the following bug :

- An incorrect SELinux policy prevented the qpidd service from starting. These selinux-policy packages contain updated SELinux rules, which allow the qpidd service to be started correctly.

- With SELinux in enforcing mode, the ssh-keygen utility was prevented from access to various applications and thus could not be used to generate SSH keys for these programs. With this update, the 'ssh_keygen_t' SELinux domain type has been implemented as unconfined, which ensures the ssh-keygen utility to work correctly.

All users of selinux-policy are advised to upgrade to these updated packages, which fix these bugs.

Solution

Update the affected packages.

See Also

http://www.nessus.org/u?b41a1d12

Plugin Details

Severity: High

ID: 61247

File Name: sl_20120213_selinux_policy_on_SL6_x.nasl

Version: 1.5

Type: local

Agent: unix

Published: 8/1/2012

Updated: 1/14/2021

Supported Sensors: Nessus Agent, Nessus

Vulnerability Information

CPE: p-cpe:/a:fermilab:scientific_linux:selinux-policy, p-cpe:/a:fermilab:scientific_linux:selinux-policy-doc, p-cpe:/a:fermilab:scientific_linux:selinux-policy-minimum, p-cpe:/a:fermilab:scientific_linux:selinux-policy-mls, p-cpe:/a:fermilab:scientific_linux:selinux-policy-targeted, x-cpe:/o:fermilab:scientific_linux

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu

Patch Publication Date: 2/13/2012

Vulnerability Publication Date: 2/13/2012