Status: IN
SELinux userspace 3.6 in RHEL 9.4 introduces deny rules, allowing policies to explicitly deny access (not just allow/don't-allow).
Source: repo:entries/2026/03/03/en-documentation-red_hat_enterprise_linux-9-html-94_release_notes-overview.md