apparmor (2.10.95-0ubuntu1) xenial; urgency=medium

  * Update to apparmor 2.10.95 (2.11 Beta 1) (LP: #1561762)
    - Allow Apache prefork profile to chown(2) files (LP: #1210514)
    - Allow deluge-gtk and deluge-console to handle torrents opened in
      browsers (LP: #1501913)
    - Allow file accesses needed by some programs using libnl-3-200
      (Closes: #810888)
    - Allow file accesses needed on systems that use NetworkManager without
      resolvconf (Closes: #813835)
    - Adjust aa-status(8) to work without python3-apparmor (LP: #1480492)
    - Fix aa-logprof(8) crash when operating on files containing multiple
      profiles with certain rules (LP: #1528139)
    - Fix log parsing crashes, in the Python utilities, caused by certain file
      related events (LP: #1525119, LP: #1540562)
    - Fix log parsing crasher, in the Python utilities, caused by certain
      change_hat events (LP: #1523297)
    - Improve Python 2 support of the utils by fixing an aa-logprof(8) crasher
      when Python 3 is not available (LP: #1513880)
    - Send aa-easyprof(8) error messages to stderr instead of stdout
      (LP: #1521400)
    - Fix aa-autodep(8) failure when the shebang line of a script contained
      parameters (LP: #1505775)
    - Don't depend on the system logprof.conf when running utils/ build tests
      (LP: #1393979)
    - Fix apparmor_parser(8) bugs when parsing profiles that use policy
      namespaces in the profile declaration or profile transition targets
      (LP: #1540666, LP: #1544387)
    - Regression fix for apparmor_parser(8) bug that resulted in the
      --namespace-string commandline option being ignored causing profiles to
      be loaded into the root policy namespace (LP: #1526085)
    - Fix crasher regression in apparmor_parser(8) when the parser was asked
      to process a directory (LP: #1534405)
    - Fix bug in apparmor_parser(8) to honor the specified bind flags remount
      rules (LP: #1272028)
    - Support tarball generation for Coverity scans and fix a number of issues
      discovered by Coverity
    - Fix regression test failures on s390x systems (LP: #1531325)
    - Adjust expected errno values in changeprofile regression test
      (LP: #1559705)
    - The Python utils gained support for ptrace and signal rules
    - aa-exec(8) received a rewrite in C
    - apparmor_parser(8) gained support for stacking multiple profiles, as
      supported by the Xenial kernel (LP: #1379535)
    - libapparmor gained new public interfaces, aa_stack_profile(2) and
      aa_stack_onexec(2), allowing applications to utilize the new kernel
      stacking support (LP: #1379535)
  * Drop the following patches since they've been incorporated upstream:
    - aa-status-dont_require_python3-apparmor.patch
    - r3209-dnsmasq-allow-dash
    - r3227-locale-indep-capabilities-sorting.patch
    - r3277-update-python-abstraction.patch
    - r3366-networkd.patch,
    - tests-fix_sysctl_test.patch
    - parser-fix-cache-file-mtime-regression.patch
    - parser-verify-cache-file-mtime.patch
    - parser-run-caching-tests-without-apparmorfs.patch
    - parser-do-cleanup-when-test-was-skipped.patch
    - parser-allow-unspec-in-network-rules.patch
  * debian/rules, debian/apparmor.install, debian/apparmor.manpages: Update
    for new upstream binutils directory and aa-enabled binary
    - Continue installing aa-exec into /usr/sbin/ for now since
      click-apparmor's aa-exec-click autopkgtest expects it to be there
  * debian/libapparmor-dev.manpages: Include the new aa_stack_profile.2 man
    page
  * debian/patches/r3424-nscd-profile-allow-paranoia-mode.patch: Allow file
    access needed for nscd's paranoia mode
  * debian/patches/r3425-adjust-stacking-tests-version-check.patch: Adjust the
    regression test build time checks, for libapparmor stacking support, to
    look for the 2.10.95 versioning rather than 2.11
  * debian/patches/r3426-allow-debugedit-to-work-on-apparmor-parser.patch:
    Remove extra slash in the parser Makefile so that debugedit(8) can work on
    apparmor_parser(8) (LP: #1561939)
  * debian/patches/allow-stacking-tests-to-use-system.patch: Adjust the file
    rules of the new stacking tests so that the generated profiles allow the
    system binaries and libraries to be tested
  * debian/libapparmor1.symbols: update symbols file for added symbols
    in libapparmor

Date: Sat, 09 Apr 2016 01:35:25 -0500
Changed-By: Tyler Hicks <tyhi...@canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-disc...@lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/apparmor/2.10.95-0ubuntu1
Format: 1.8
Date: Sat, 09 Apr 2016 01:35:25 -0500
Source: apparmor
Binary: apparmor apparmor-utils apparmor-profiles apparmor-docs libapparmor-dev 
libapparmor1 libapparmor-perl libapache2-mod-apparmor libpam-apparmor 
apparmor-notify python-libapparmor python3-libapparmor python-apparmor 
python3-apparmor dh-apparmor apparmor-easyprof
Architecture: source
Version: 2.10.95-0ubuntu1
Distribution: xenial
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-disc...@lists.ubuntu.com>
Changed-By: Tyler Hicks <tyhi...@canonical.com>
Description:
 apparmor   - user-space parser utility for AppArmor
 apparmor-docs - documentation for AppArmor
 apparmor-easyprof - AppArmor easyprof profiling tool
 apparmor-notify - AppArmor notification system
 apparmor-profiles - profiles for AppArmor Security policies
 apparmor-utils - utilities for controlling AppArmor
 dh-apparmor - AppArmor debhelper routines
 libapache2-mod-apparmor - changehat AppArmor library as an Apache module
 libapparmor-dev - AppArmor development libraries and header files
 libapparmor-perl - AppArmor library Perl bindings
 libapparmor1 - changehat AppArmor library
 libpam-apparmor - changehat AppArmor library as a PAM module
 python-apparmor - AppArmor Python utility library
 python-libapparmor - AppArmor library Python bindings
 python3-apparmor - AppArmor Python3 utility library
 python3-libapparmor - AppArmor library Python3 bindings
Closes: 810888 813835
Launchpad-Bugs-Fixed: 1210514 1272028 1379535 1393979 1480492 1501913 1505775 
1513880 1521400 1523297 1525119 1526085 1528139 1531325 1534405 1540562 1540666 
1544387 1559705 1561762 1561939
Changes:
 apparmor (2.10.95-0ubuntu1) xenial; urgency=medium
 .
   * Update to apparmor 2.10.95 (2.11 Beta 1) (LP: #1561762)
     - Allow Apache prefork profile to chown(2) files (LP: #1210514)
     - Allow deluge-gtk and deluge-console to handle torrents opened in
       browsers (LP: #1501913)
     - Allow file accesses needed by some programs using libnl-3-200
       (Closes: #810888)
     - Allow file accesses needed on systems that use NetworkManager without
       resolvconf (Closes: #813835)
     - Adjust aa-status(8) to work without python3-apparmor (LP: #1480492)
     - Fix aa-logprof(8) crash when operating on files containing multiple
       profiles with certain rules (LP: #1528139)
     - Fix log parsing crashes, in the Python utilities, caused by certain file
       related events (LP: #1525119, LP: #1540562)
     - Fix log parsing crasher, in the Python utilities, caused by certain
       change_hat events (LP: #1523297)
     - Improve Python 2 support of the utils by fixing an aa-logprof(8) crasher
       when Python 3 is not available (LP: #1513880)
     - Send aa-easyprof(8) error messages to stderr instead of stdout
       (LP: #1521400)
     - Fix aa-autodep(8) failure when the shebang line of a script contained
       parameters (LP: #1505775)
     - Don't depend on the system logprof.conf when running utils/ build tests
       (LP: #1393979)
     - Fix apparmor_parser(8) bugs when parsing profiles that use policy
       namespaces in the profile declaration or profile transition targets
       (LP: #1540666, LP: #1544387)
     - Regression fix for apparmor_parser(8) bug that resulted in the
       --namespace-string commandline option being ignored causing profiles to
       be loaded into the root policy namespace (LP: #1526085)
     - Fix crasher regression in apparmor_parser(8) when the parser was asked
       to process a directory (LP: #1534405)
     - Fix bug in apparmor_parser(8) to honor the specified bind flags remount
       rules (LP: #1272028)
     - Support tarball generation for Coverity scans and fix a number of issues
       discovered by Coverity
     - Fix regression test failures on s390x systems (LP: #1531325)
     - Adjust expected errno values in changeprofile regression test
       (LP: #1559705)
     - The Python utils gained support for ptrace and signal rules
     - aa-exec(8) received a rewrite in C
     - apparmor_parser(8) gained support for stacking multiple profiles, as
       supported by the Xenial kernel (LP: #1379535)
     - libapparmor gained new public interfaces, aa_stack_profile(2) and
       aa_stack_onexec(2), allowing applications to utilize the new kernel
       stacking support (LP: #1379535)
   * Drop the following patches since they've been incorporated upstream:
     - aa-status-dont_require_python3-apparmor.patch
     - r3209-dnsmasq-allow-dash
     - r3227-locale-indep-capabilities-sorting.patch
     - r3277-update-python-abstraction.patch
     - r3366-networkd.patch,
     - tests-fix_sysctl_test.patch
     - parser-fix-cache-file-mtime-regression.patch
     - parser-verify-cache-file-mtime.patch
     - parser-run-caching-tests-without-apparmorfs.patch
     - parser-do-cleanup-when-test-was-skipped.patch
     - parser-allow-unspec-in-network-rules.patch
   * debian/rules, debian/apparmor.install, debian/apparmor.manpages: Update
     for new upstream binutils directory and aa-enabled binary
     - Continue installing aa-exec into /usr/sbin/ for now since
       click-apparmor's aa-exec-click autopkgtest expects it to be there
   * debian/libapparmor-dev.manpages: Include the new aa_stack_profile.2 man
     page
   * debian/patches/r3424-nscd-profile-allow-paranoia-mode.patch: Allow file
     access needed for nscd's paranoia mode
   * debian/patches/r3425-adjust-stacking-tests-version-check.patch: Adjust the
     regression test build time checks, for libapparmor stacking support, to
     look for the 2.10.95 versioning rather than 2.11
   * debian/patches/r3426-allow-debugedit-to-work-on-apparmor-parser.patch:
     Remove extra slash in the parser Makefile so that debugedit(8) can work on
     apparmor_parser(8) (LP: #1561939)
   * debian/patches/allow-stacking-tests-to-use-system.patch: Adjust the file
     rules of the new stacking tests so that the generated profiles allow the
     system binaries and libraries to be tested
   * debian/libapparmor1.symbols: update symbols file for added symbols
     in libapparmor
Checksums-Sha1:
 caf328f2391cfa3894b3389126382fbe37cbec9b 3244 apparmor_2.10.95-0ubuntu1.dsc
 80a1d3eff0195df032665a02d73eaac434ae9f5b 4502268 apparmor_2.10.95.orig.tar.gz
 2dbd1fb5afdfeb8f2011542cad07bac895953be7 73172 
apparmor_2.10.95-0ubuntu1.debian.tar.xz
Checksums-Sha256:
 0669fe139808449dcc48dad0918bd365120d96338bb52e85c951188cc266a26b 3244 
apparmor_2.10.95-0ubuntu1.dsc
 3f659a599718f4a5e2a33140916715f574a5cb3634a6b9ed6d29f7b0617e4d1a 4502268 
apparmor_2.10.95.orig.tar.gz
 a74daeffc079f851e04109d42ddc44dd7e3c8f34ce914c846a3ae1457a723a07 73172 
apparmor_2.10.95-0ubuntu1.debian.tar.xz
Files:
 29f71658bbde272d355806a1b7d28ee0 3244 admin extra apparmor_2.10.95-0ubuntu1.dsc
 71a13b9d6ae0bca4f5375984df1a51e7 4502268 admin extra 
apparmor_2.10.95.orig.tar.gz
 53b0a021a48c79a107c68320b0658998 73172 admin extra 
apparmor_2.10.95-0ubuntu1.debian.tar.xz
Original-Maintainer: Debian AppArmor Team 
<pkg-apparmor-t...@lists.alioth.debian.org>
-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes

Reply via email to