diff options
-rw-r--r-- | .SRCINFO | 2 | ||||
-rw-r--r-- | PKGBUILD | 2 | ||||
-rw-r--r-- | hook_tracking_db.txt | 72 | ||||
-rwxr-xr-x | selinux-alpm-hook | 2 |
4 files changed, 40 insertions, 38 deletions
@@ -1,7 +1,7 @@ pkgbase = selinux-alpm-hook pkgdesc = SELinux ALPM hook pkgver = 0.1 - pkgrel = 1 + pkgrel = 2 url = https://github.com/archlinuxhardened/selinux arch = any groups = selinux @@ -2,7 +2,7 @@ pkgname=selinux-alpm-hook pkgver=0.1 -pkgrel=1 +pkgrel=2 pkgdesc="SELinux ALPM hook" arch=('any') url="https://github.com/archlinuxhardened/selinux" diff --git a/hook_tracking_db.txt b/hook_tracking_db.txt index 5ad840f63041..3e96fb1b7039 100644 --- a/hook_tracking_db.txt +++ b/hook_tracking_db.txt @@ -5,53 +5,53 @@ core/ca-certificates-utils 20170307-1 update-ca-trust.hook # Exec=/usr/bin/gio-querymodules /usr/lib/gio/modules -core/glib2 2.50.3-1 gio-querymodules.hook +core/glib2 2.52.3-1 gio-querymodules.hook # Exec = /usr/bin/glib-compile-schemas /usr/share/glib-2.0/schemas -core/glib2 2.50.3-1 glib-compile-schemas.hook +core/glib2 2.52.3-1 glib-compile-schemas.hook # Exec = /usr/bin/mkinitcpio -p linux -core/linux 4.10.10-1 90-linux.hook +core/linux 4.12.4-1 90-linux.hook # Exec = /usr/bin/mkinitcpio -p linux-lts -core/linux-lts 4.9.22-1 90-linux-lts.hook +core/linux-lts 4.9.41-1 90-linux-lts.hook # Exec = /usr/bin/systemd-hwdb --usr update -core/systemd 232-8 systemd-hwdb.hook +core/systemd 234.11-6 systemd-hwdb.hook # Target = usr/lib/sysusers.d/*.conf # Exec = /bin/sh -c 'while read -r f; do /usr/bin/systemd-sysusers "/$f" ; done' -core/systemd 232-8 systemd-sysusers.hook +core/systemd 234.11-6 systemd-sysusers.hook # Target = usr/lib/tmpfiles.d/*.conf # Exec = /bin/sh -c 'while read -r f; do /usr/bin/systemd-tmpfiles --create "/$f"; done' -core/systemd 232-8 systemd-tmpfiles.hook +core/systemd 234.11-6 systemd-tmpfiles.hook # Exec = /usr/bin/touch -c /usr -core/systemd 232-8 systemd-update.hook +core/systemd 234.11-6 systemd-update.hook # Target = usr/share/info/* # Exec = /bin/sh -c 'while read -r f; do install-info "$f" /usr/share/info/dir 2> /dev/null; done -core/texinfo 6.3-1 texinfo-install.hook +core/texinfo 6.4-1 texinfo-install.hook # Target = usr/share/info/* # Exec = /bin/sh -c 'while read -r f; do install-info --delete "$f" /usr/share/info/dir 2> /dev/null; done' -core/texinfo 6.3-1 texinfo-remove.hook +core/texinfo 6.4-1 texinfo-remove.hook # Exec = /usr/bin/appstreamcli refresh-index --force -extra/appstream 0.10.6-1 update-appstream-index.hook +extra/appstream 0.11.2-1 update-appstream-index.hook # Exec = /usr/bin/update-desktop-database --quiet extra/desktop-file-utils 0.23-1 update-desktop-database.hook # Exec = /usr/lib/dkms/alpm-hook install -extra/dkms 2.3-2 70-dkms-install.hook +extra/dkms 2.4.0-2 70-dkms-install.hook # Exec = /usr/bin/perl -e "$SIG{PIPE}='DEFAULT'; exec('/usr/lib/dkms/alpm-hook', 'remove'); -extra/dkms 2.3-2 70-dkms-remove.hook +extra/dkms 2.4.0-2 70-dkms-remove.hook # Exec = /usr/bin/fc-cache -s -extra/fontconfig 2.12.1-4 fontconfig.hook +extra/fontconfig 2.12.4-1 fontconfig.hook # Target = usr/share/gconf/schemas/*.schemas # Exec = /bin/bash -c 'while read -r f; do f=$(basename "$f" .schemas); /usr/bin/gconfpkg --install $f; done' @@ -61,42 +61,42 @@ extra/gconf 3.2.6-5 gconf-install.hook extra/gconf 3.2.6-5 gconf-remove.hook # Exec = /usr/bin/gdk-pixbuf-query-loaders --update-cache -extra/gdk-pixbuf2 2.36.5-1 gdk-pixbuf-query-loaders.hook +extra/gdk-pixbuf2 2.36.7-1 gdk-pixbuf-query-loaders.hook # Target = usr/share/icons/*/ # Target = !usr/share/icons/*/?* # Exec = /usr/share/libalpm/scripts/gtk-update-icon-cache -extra/gtk-update-icon-cache 3.22.10-1 gtk-update-icon-cache.hook +extra/gtk-update-icon-cache 3.22.18-1 gtk-update-icon-cache.hook # Exec = /usr/bin/gtk-query-immodules-2.0 --update-cache extra/gtk2 2.24.31-1 gtk-query-immodules-2.0.hook # Exec = /usr/bin/gtk-query-immodules-3.0 --update-cache -extra/gtk3 3.22.10-1 gtk-query-immodules-3.0.hook +extra/gtk3 3.22.18-1 gtk-query-immodules-3.0.hook # Exec = /bin/sh -c 'killall -q -s USR1 gvfsd || true' -extra/gvfs 1.30.3+4+gd79b4650-1 gvfsd.hook +extra/gvfs 1.32.1+5+gf0d758df-1 gvfsd.hook # Exec = /usr/bin/mkinitcpio -p linux-zen -extra/linux-zen 4.10.10-1 90-linux-zen.hook +extra/linux-zen 4.12.4-1 90-linux-zen.hook # Exec = /usr/bin/update-mime-database /usr/share/mime extra/shared-mime-info 1.8-1 update-mime-database.hook # Exec = /usr/share/libalpm/scripts/mktexlsr -extra/texlive-bin 2016.41290-10 mktexlsr.hook +extra/texlive-core 2017.44918-1 mktexlsr.hook # Exec = /usr/share/libalpm/scripts/texlive-fmtutil -extra/texlive-bin 2016.41290-10 texlive-fmtutil.hook +extra/texlive-core 2017.44918-1 texlive-fmtutil.hook # Exec = /usr/share/libalpm/scripts/texlive-updmap -extra/texlive-bin 2016.41290-10 texlive-updmap.hook +extra/texlive-core 2017.44918-1 texlive-updmap.hook # Exec = /usr/bin/vim -es --cmd ":helptags /usr/share/vim/vimfiles/doc" --cmd ":q" -extra/vim-runtime 8.0.0427-1 vimdoc.hook +extra/vim-runtime 8.0.0851-1 vimdoc.hook # Exec = /usr/lib/vlc/vlc-cache-gen -f /usr/lib/vlc/plugins -extra/vlc 2.2.4-8 update-vlc-plugin-cache.hook +extra/vlc 2.2.6-2 update-vlc-plugin-cache.hook # Target = usr/share/fonts/*/ # Target = !usr/share/fonts/encodings/* @@ -104,24 +104,24 @@ extra/vlc 2.2.4-8 update-vlc-plugin-cache.hook extra/xorg-mkfontdir 1.0.7-8 xorg-mkfontdir.hook # Exec = /usr/bin/etckeeper pre-install -community/etckeeper 1.18.6-1 05-etckeeper-pre-install.hook +community/etckeeper 1.18.7-1 05-etckeeper-pre-install.hook # Exec = /usr/bin/etckeeper post-install -community/etckeeper 1.18.6-1 zz-etckeeper-post-install.hook +community/etckeeper 1.18.7-1 zz-etckeeper-post-install.hook # Exec = /bin/bash -c "cd /usr/share/doc/ghc/html/libraries && ./gen_contents_index" -community/ghc 8.0.1-1 ghc-rebuild-doc-index.hook +community/ghc 8.0.2-3 ghc-rebuild-doc-index.hook # Target = usr/share/haskell/register/*.sh # Exec = /bin/sh -c 'while read -r f; do /bin/sh "/$f" ; done' -community/ghc 8.0.1-1 ghc-register.hook +community/ghc 8.0.2-3 ghc-register.hook # Target = usr/share/haskell/unregister/*.sh # Exec = /bin/sh -c 'while read -r f; do /bin/sh "/$f" ; done' -community/ghc 8.0.1-1 ghc-unregister.hook +community/ghc 8.0.2-3 ghc-unregister.hook -# Exec = /usr/bin/mkinitcpio -p linux-grsec -community/linux-grsec 1:4.9.22.r201704120836-1 99-linux-grsec.hook +# Exec = /usr/bin/mkinitcpio -p linux-hardened +community/linux-hardened 4.12.5.a-1 90-linux-hardened.hook # Exec = /usr/share/libalpm/scripts/snap-pac pre community/snap-pac 1.1-1 00_snapper-pre.hook @@ -136,16 +136,16 @@ community/snap-pac 1.1-1 zy_snapper-post.hook community/snap-pac 1.1-1 zz_snap-pac-install.hook # Exec = /bin/cp -f /etc/trusted-key.key /etc/unbound/ -community/unbound 1.6.1-3 unbound-key.hook +community/unbound 1.6.4-1 unbound-key.hook # Exec = /usr/bin/fc-cache-32 -s -multilib/lib32-fontconfig 2.12.1-4 lib32-fontconfig.hook +multilib/lib32-fontconfig 2.12.3-1 lib32-fontconfig.hook # Exec = /usr/bin/gdk-pixbuf-query-loaders-32 --update-cache -multilib/lib32-gdk-pixbuf2 2.36.2-2 gdk-pixbuf-query-loaders-32.hook +multilib/lib32-gdk-pixbuf2 2.36.6-1 gdk-pixbuf-query-loaders-32.hook # Exec = /usr/bin/gio-querymodules-32 /usr/lib32/gio/module -multilib/lib32-glib2 2.50.1-2 gio-querymodules-32.hook +multilib/lib32-glib2 2.52.2+9+g3245eba16-1 gio-querymodules-32.hook # Exec = /bin/sh -c "GTK_PATH=/usr/lib32/gtk-3.0 /usr/bin/gtk-query-immodules-3.0-32 --update-cache" -multilib/lib32-gtk3 3.22.7-1 gtk-query-immodules-3.0-32.hook +multilib/lib32-gtk3 3.22.17-1 gtk-query-immodules-3.0-32.hook diff --git a/selinux-alpm-hook b/selinux-alpm-hook index 3d7ac26d1dfa..15abf73bd858 100755 --- a/selinux-alpm-hook +++ b/selinux-alpm-hook @@ -40,6 +40,7 @@ GEN_DIRS=( '/etc/ld.so.cache' # glibc install: ldconfig -r . '/etc/pacman.d/gnupg/' # archlinux-keyring install: pacman-key --populate archlinux '/etc/ssl/certs/' # ca-certificates-utils:update-ca-trust.hook + '/etc/systemd/user/' # gnupg install: install units in /etc/systemd/user/sockets.target.wants '/etc/texmf/ls-R' # texlive-bin install: mktexlsr '/etc/udev/hwdb.bin' # systemd:udev-hwdb.hook '/etc/unbound/trusted-key.key' # unbound:unbound-key.hook @@ -62,6 +63,7 @@ GEN_DIRS=( '/usr/share/glib-2.0/schemas/' # glib2:glib-compile-schemes.hook '/usr/share/icons/' # gtk-update-icon-cache:gtk-update-icon-cache.hook '/usr/share/info/dir' # texinfo:texinfo-install.hook + '/usr/share/keepass/' # keepass install '/usr/share/mime/' # shared-mime-info:update-mime-database.hook '/usr/share/texmf*/ls-R' # texlive-bin:mktexlsr.hook '/usr/share/vim/vimfiles/doc/tags' # vim-runtime:vimdoc.hook |