Packages changed:
  apparmor
  haproxy (2.3.10+git0.4764f0e4e -> 2.4.0+git0.6cbbecf09)
  libapparmor
  libepoxy (1.5.7 -> 1.5.8)
  pango (1.48.4 -> 1.48.5)
  psmisc
  selinux-policy

=== Details ===

==== apparmor ====
Subpackages: apparmor-abstractions apparmor-parser apparmor-profiles apparmor-utils python3-apparmor

- add abstractions-php8.diff to support PHP8 in abstractions/php (boo#1186267)

==== haproxy ====
Version update (2.3.10+git0.4764f0e4e -> 2.4.0+git0.6cbbecf09)

- Update to version 2.4.0+git0.6cbbecf09:
  https://www.haproxy.com/blog/announcing-haproxy-2-4/
  for all the details see /usr/share/doc/packages/haproxy/CHANGELOG
- refreshed patches to apply cleanly again
  haproxy-1.6.0-makefile_lib.patch
  haproxy-1.6.0-sec-options.patch
  lua54.patch

==== libapparmor ====

- add abstractions-php8.diff to support PHP8 in abstractions/php (boo#1186267)

==== libepoxy ====
Version update (1.5.7 -> 1.5.8)

- Update to version 1.5.8:
  + Revert changes from PR #238 / #229
  + Fixes regressions: #240, #252, #253

==== pango ====
Version update (1.48.4 -> 1.48.5)

- Update to version 1.48.5:
  + Only initialize fontconfig once.
  + Add missing deprecation notices.
  + Add some missing apis to the markup docs.
  + Speed up Emoji classification.
  + Fix hangs and memory leaks.
  + Don't insert hyphens at word boundaries.
  + Handle empty lines better.
  + Avoid width fluctuations with ellipsized text.
  + Add a utility to show text segmentation.

==== psmisc ====

- Do not change CAP within spec file (boo#1186258)
- Change patch 0001-Use-mountinfo-to-be-able-to-use-the-mount-identity.patch
  * Fix bsc#1185208 to make private mount namespaces work as well
    as to distinguish NFS mounts from same remote device share.

==== selinux-policy ====
Subpackages: selinux-policy-targeted

- allow systemd to watch /usr, /usr/lib, /etc, /etc/pki as we have path units
  that trigger on changes in those.
  Added fix_systemd_watch.patch
- own /usr/share/selinux/packages/$SELINUXTYPE/ and
  /var/lib/selinux/$SELINUXTYPE/active/modules/* to allow packages to install
  files there