--- nsaserefpolicy/policy/modules/admin/sudo.if 2007-02-19 11:32:54.000000000 -0500 +++ serefpolicy-2.5.5/policy/modules/admin/sudo.if 2007-02-28 10:25:17.000000000 -0500 @@ -37,7 +37,6 @@ gen_require(` type sudo_exec_t; - bool secure_mode; ') ############################## @@ -92,12 +91,10 @@ fs_getattr_xattr_fs($1_sudo_t) auth_domtrans_chk_passwd($1_sudo_t) - # sudo stores a token in the pam_pid directory auth_manage_pam_pid($1_sudo_t) - corecmd_getattr_bin_files($1_sudo_t) corecmd_read_sbin_symlinks($1_sudo_t) - corecmd_getattr_sbin_files($1_sudo_t) + corecmd_getattr_all_executables($1_sudo_t) domain_use_interactive_fds($1_sudo_t) domain_sigchld_interactive_fds($1_sudo_t) --- nsaserefpolicy/policy/modules/admin/sudo.te 2007-02-19 11:32:54.000000000 -0500 +++ serefpolicy-2.5.5/policy/modules/admin/sudo.te 2007-02-28 10:25:17.000000000 -0500 @@ -7,5 +7,6 @@ type sudo_exec_t; files_type(sudo_exec_t) +corecmd_executable_file(sudo_exec_t) # Remaining policy in per user domain template.