avc: denied { write } for comm=setsebool dev=pipefs path=pipe:[30647] pid=11853 scontext=system_u:system_r:setsebool_t:s0 tclass=fifo_file tcontext=system_u:system_r:rpm_t:s0 We're using a pipe to record the output from scriptlets in yum these days, so this should probably be allowed.
Fixed in selinux-policy-3.0.8-19
Confirmed - rawhide seems not to do this anymore.