FEDORA-2024-c42f0a9985 created by zyga 4 weeks ago
for Fedora 39
New upstream release 2.65.1
Support building snapd using base Core22 (Snapcraft 8.x)
FIPS: support building FIPS complaint snapd variant that switches
to FIPS mode when the system boots with FIPS enabled
AppArmor: update to latest 4.0.2 release
AppArmor: enable using ABI 4.0 from host parser
AppArmor: fix parser lookup
AppArmor: support AppArmor snippet priorities
AppArmor: allow reading cgroup memory.max file
AppArmor: allow using snap-exec coming from the snapd snap when
starting a confined process with jailmode
AppArmor prompting (experimental): add checks for prompting
support, include prompting status in system key, and restart snapd
if prompting flag changes
AppArmor prompting (experimental): include prompt prefix in
AppArmor rules if prompting is supported and enabled
AppArmor prompting (experimental): add common types, constraints,
and mappings from AppArmor permissions to abstract permissions
AppArmor prompting (experimental): add path pattern parsing and
matching
AppArmor prompting (experimental): add path pattern precedence
based on specificity
AppArmor prompting (experimental): add packages to manage
outstanding request prompts and rules
AppArmor prompting (experimental): add prompting API and notice
types, which require snap-interfaces-requests-control interface
AppArmor prompting (experimental): feature flag can only be
enabled if prompting is supported, handler service connected, and
the service can be started
Registry views (experimental): rename from aspects to registries
Registry views (experimental): support reading registry views and
setting/unsetting registry data using snapctl
Registry views (experimental): fetch and refresh registry
assertions as needed
Registry views (experimental): restrict view paths from using a
number as first character and view names to storage path style
patterns
Snap components: support installing snaps and components from
files at the same time (no REST API/CLI)
Snap components: support downloading components related assertions
from the store
Snap components: support installing components from the store
Snap components: support removing components individually and
during snap removal
Snap components: support kernel modules as components
Snap components: support for component install, pre-refresh and
post-refresh hooks
Snap components: initial support for building systems that contain
components
Refresh app awareness (experimental): add data field for
/v2/changes REST API to allow associating each task with affected
snaps
Refresh app awareness (experimental): use the app name from
.desktop file in notifications
Refresh app awareness (experimental): give snap-refresh-observe
interface access to /v2/snaps/{name} endpoint
Improve snap-confine compatibility with nvidia drivers
Allow re-exec when SNAP_REEXEC is set for unlisted distros to
simplify testing
This update has been submitted for testing by zyga.
This update's test gating status has been changed to 'ignored'.
zyga edited this update.
This update has been pushed to testing.
This update has been submitted for stable by bodhi.
This update has been pushed to stable.