Skip to content

selinux: flatpak.if should be installed in distributed (bsc#1262051) - #6622

Merged
swick merged 1 commit into
flatpak:mainfrom
ca-hu:flatpak-independent-policy-module-wrong-place
Apr 14, 2026
Merged

swick merged 1 commit into
flatpak:mainfrom
ca-hu:flatpak-independent-policy-module-wrong-place

Conversation

@ca-hu

@ca-hu ca-hu commented Apr 14, 2026

Copy link
Copy Markdown
Contributor

selinux: flatpak.if should be installed in distributed instead of contrib`. Otherwise interfaces might clash with the interfaces from the main policy on fedora and openSUSE.

See the independent policy guideline:
https://fedoraproject.org/wiki/SELinux/IndependentPolicy#Using_custom_interfaces

And:
https://bugzilla.opensuse.org/show_bug.cgi?id=1262051

instead of `contrib`. Otherwise interfaces might clash with the
interfaces from the main policy on fedora and openSUSE.

See the independent policy guideline:
https://fedoraproject.org/wiki/SELinux/IndependentPolicy#Using_custom_interfaces

And:
https://bugzilla.opensuse.org/show_bug.cgi?id=1262051
@swick
swick added this pull request to the merge queue Apr 14, 2026
Merged via the queue into flatpak:main with commit 74027a9 Apr 14, 2026
11 checks passed
bmwiedemann pushed a commit to bmwiedemann/openSUSE that referenced this pull request Apr 14, 2026
https://build.opensuse.org/request/show/1346811
by user dimstar + dimstar_suse
- Install flatpak-selinux.if in distributed instead of contrib
  to avoid clashing with the interfaces from the main selinux-policy
  package (bsc#1262051)
  - Add 1262051-selinux-flatpak.if-should-be-installed-in-distribute.patch
  - Can be dropped when this comes back from upstream:
    flatpak/flatpak#6622

- Update to version 1.16.6:
  + Bug fixes:
    - Fix the remaining regression for Chromium based browsers by
      not leaking file descriptors down to wrapped command
    - Fix a regression when installing extra-data without a
      runtime, which is the case for openh264
    - Fix the remaining regression for Epiphany by ignoring
      unusable sandbox-expose paths for sub-sandboxes in the portal
    - Fix the installed tests by allowing to add a new ref to
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants