Show patches with: State = Action Required       |    Archived = No       |   1025 patches
« 1 2 3 410 11 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[-next] IMA: Make ima_mok_init() static [-next] IMA: Make ima_mok_init() static - - - --- 2020-07-13 Wei Yongjun New
[-next] tpm/st33zp24: simplify the return expression of st33zp24_spi_probe() [-next] tpm/st33zp24: simplify the return expression of st33zp24_spi_probe() - - - --- 2020-09-21 Qinglang Miao New
[-next] tpm/st33zp24/i2c: simplify the return expression of st33zp24_i2c_remove [-next] tpm/st33zp24/i2c: simplify the return expression of st33zp24_i2c_remove - - - --- 2020-09-21 Liu Shixin New
[01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - 1 - --- 2020-06-18 Roberto Sassu New
[01/12] ima: Have the LSM free its audit rule ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - 1 - --- 2020-06-23 Tyler Hicks New
[01/13] firmware_loader: EFI firmware loader must handle pre-allocated buffer Introduce partial kernel_read_file() support 1 - - --- 2020-07-17 Kees Cook New
[01/13] x86: Secure Launch Kconfig x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[01/34] namespace: take lock_mount_hash() directly when changing flags fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[010/141] ima: Fix fall-through warnings for Clang Fix fall-through warnings for Clang - - - --- 2020-11-20 Gustavo A. R. Silva New
[02/11] evm: Load EVM key in ima_load_x509() to avoid appraisal [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - --- 2020-06-18 Roberto Sassu New
[02/12] ima: Create a function to free a rule entry ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[02/13] fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum Introduce partial kernel_read_file() support 1 - - --- 2020-07-17 Kees Cook New
[02/13] x86: Secure Launch main header file x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[02/34] namespace: only take read lock in do_reconfigure_mnt() fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[03/11] evm: Refuse EVM_ALLOW_METADATA_WRITES only if the HMAC key is loaded [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - --- 2020-06-18 Roberto Sassu New
[03/12] ima: Free the entire rule when deleting a list of rules ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[03/13] fs/kernel_read_file: Remove FIRMWARE_EFI_EMBEDDED enum Introduce partial kernel_read_file() support 1 - - --- 2020-07-17 Kees Cook New
[03/13] x86: Add early SHA support for Secure Launch early measurements x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[03/34] fs: add mount_setattr() fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[04/11] evm: Check size of security.evm before using it [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - 1 - --- 2020-06-18 Roberto Sassu New
[04/12] ima: Free the entire rule if it fails to parse ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[04/13] fs/kernel_read_file: Split into separate include file Introduce partial kernel_read_file() support 1 1 - --- 2020-07-17 Kees Cook New
[04/13] x86: Add early TPM TIS/CRB interface support for Secure Launch x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[04/34] tests: add mount_setattr() selftests fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[05/11] evm: Allow xattr/attr operations for portable signatures if check fails [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - --- 2020-06-18 Roberto Sassu New
[05/12] ima: Fail rule parsing when buffer hook functions have an invalid action ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[05/13] fs/kernel_read_file: Split into separate source file Introduce partial kernel_read_file() support 1 - - --- 2020-07-17 Kees Cook New
[05/13] x86: Add early TPM1.2/TPM2.0 interface support for Secure Launch x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[05/34] fs: introduce MOUNT_ATTR_IDMAP fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[06/11] evm: Allow setxattr() and setattr() if metadata digest won't change [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - --- 2020-06-18 Roberto Sassu New
[06/12] ima: Fail rule parsing when the KEXEC_CMDLINE hook is combined with an invalid cond ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - 1 - --- 2020-06-23 Tyler Hicks New
[06/13] fs/kernel_read_file: Remove redundant size argument Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[06/13] x86: Add early general TPM interface support for Secure Launch x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[06/34] fs: add id translation helpers fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[07/11] evm: Set IMA_CHANGE_XATTR/ATTR bit if EVM_ALLOW_METADATA_WRITES is set [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - --- 2020-06-18 Roberto Sassu New
[07/12] ima: Fail rule parsing when the KEY_CHECK hook is combined with an invalid cond ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[07/13] fs/kernel_read_file: Switch buffer size arg to size_t Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[07/13] x86: Secure Launch kernel early boot stub x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[07/34] capability: handle idmapped mounts fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[08/11] ima: Allow imasig requirement to be satisfied by EVM portable signatures [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - 1 - --- 2020-06-18 Roberto Sassu New
[08/12] ima: Shallow copy the args_p member of ima_rule_entry.lsm elements ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[08/13] fs/kernel_read_file: Add file_size output argument Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[08/13] x86: Secure Launch kernel late boot stub x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[08/34] namei: add idmapped mount aware permission helpers fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[09/11] ima: Don't remove security.ima if file must not be appraised [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - 1 - --- 2020-06-18 Roberto Sassu New
[09/12] ima: Use correct type for the args_p member of ima_rule_entry.lsm elements ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[09/13] LSM: Introduce kernel_post_load_data() hook Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[09/13] x86: Secure Launch SMP bringup support x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[09/34] inode: add idmapped mount aware init and permission helpers fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[1/1] ima: Update doc for TPM 2.0 for calculating boot_aggregate [1/1] ima: Update doc for TPM 2.0 for calculating boot_aggregate - - - --- 2020-11-05 Petr Vorel New
[1/1] IMA/ima_keys.sh Fix policy content check usage [1/1] IMA/ima_keys.sh Fix policy content check usage - - - --- 2020-08-07 Petr Vorel New
[1/1] selinux: Measure state and hash of policy using IMA selinux: Measure state and hash of policy using IMA - - - --- 2020-09-26 Lakshmi Ramasubramanian New
[1/1] tpm: add sysfs exports for all banks of PCR registers add sysfs exports for TPM 2 PCR registers - - - --- 2020-07-20 James Bottomley New
[1/1] travis: Fix Tumbleweed installation [1/1] travis: Fix Tumbleweed installation - - - --- 2020-10-06 Petr Vorel New
[1/2] dm-devel: collect target data and submit to IMA to measure dm-devel:dm-crypt: infrastructure for measurement of DM target data using IMA - - - --- 2020-08-16 Tushar Sugandhi New
[1/2] ima-evm-utils: Fix reading of sigfile [1/2] ima-evm-utils: Fix reading of sigfile - - - --- 2020-09-12 Vitaly Chikunov New
[1/2] IMA: Add a test to verify measurment of keys [1/2] IMA: Add a test to verify measurment of keys - - - --- 2020-06-10 Lachlan Sneff New
[1/2] IMA: Handle early boot data measurement SELinux: Measure state and hash of policy using IMA - - - --- 2020-08-13 Lakshmi Ramasubramanian New
[1/2] IMA: pass error code in result parameter to integrity_audit_msg() [1/2] IMA: pass error code in result parameter to integrity_audit_msg() - - - --- 2020-06-17 Lakshmi Ramasubramanian New
[1/2] ima: Pre-parse the list of keyrings in a KEY_CHECK rule ima: Fix keyrings race condition and other key related bugs - 1 - --- 2020-07-27 Tyler Hicks New
[1/2] IMA: Verify that the kernel cmdline is passed and measured correctly through the kexec barrie… Test cmdline measurement and IMA buffer passing through kexec - - - --- 2020-07-02 Lachlan Sneff New
[1/2] integrity: Add errno field in audit message [1/2] integrity: Add errno field in audit message - - - --- 2020-06-11 Lakshmi Ramasubramanian New
[1/2] KEYS: trusted: Fix incorrect handling of tpm_get_random() [1/2] KEYS: trusted: Fix incorrect handling of tpm_get_random() - - - --- 2020-09-28 Jarkko Sakkinen New
[1/3] ima-evm-utils: address new compiler complaints [1/3] ima-evm-utils: address new compiler complaints - - - --- 2020-07-15 Mimi Zohar New
[1/3] ima-evm-utils: fix empty label at end of function. ima-evm-utils: miscellanous bug fixes - - - --- 2020-07-15 Bruno Meneguele New
[1/3] ima-evm-utils: improve reading TPM 1.2 PCRs additional "ima-measurement" support - - - --- 2020-07-09 Mimi Zohar New
[1/3] ima-evm-utils: similarly add sanity check for file parameter of TPM 1.2 PCRs [1/3] ima-evm-utils: similarly add sanity check for file parameter of TPM 1.2 PCRs - 1 - --- 2020-07-19 Mimi Zohar New
[1/3] ima-evm-utils: support the original "ima" template ima-evm-utils: original "ima" template support - - - --- 2020-07-07 Mimi Zohar New
[1/3] IMA: generalize keyring specific measurement constructs IMA: Infrastructure for measurement of critical kernel data - - - --- 2020-08-12 Tushar Sugandhi New
[1/3] IMA: Update key test documentation Verify measurement of certificate imported into a keyring - 1 - --- 2020-08-03 Lachlan Sneff New
[1/3] IMA: Update key test documentation Verify measurement of certificate imported into a keyring - - - --- 2020-08-03 Lachlan Sneff New
[1/3] KEYS: trusted: Fix incorrect handling of tpm_get_random() A bunch of trusted keys fixes - - - --- 2020-10-05 Jarkko Sakkinen New
[1/3] Revert "tpm: selftest: cleanup after unseal with wrong auth/policy test" [1/3] Revert "tpm: selftest: cleanup after unseal with wrong auth/policy test" - - - --- 2020-06-22 Jarkko Sakkinen New
[1/4] firmware_loader: EFI firmware loader must handle pre-allocated buffer Fix misused kernel_read_file() enums - - - --- 2020-07-07 Kees Cook New
[1/4] ima: add check for enforced appraise option integrity: improve user feedback for invalid bootparams - - - --- 2020-08-17 Bruno Meneguele New
[1/4] tpm_tis: Clean up locality release tpm_tis: fix interrupts (again) - - - --- 2020-09-29 James Bottomley New
[1/5] ima-evm-utils: Change env variable TPM_SERVER_TYPE for, tpm_server Updates to use IBM TSS C API rather than command line tools - - - --- 2020-10-09 Ken Goldman New
[1/5] IMA: Add LSM_STATE func to measure LSM data LSM: Measure security module state - - - --- 2020-06-13 Lakshmi Ramasubramanian New
[1/6] efistub: pass uefi secureboot flag via fdt params add ima_arch support for ARM64 - - - --- 2020-09-04 Chester Lin New
[1/6] ima-evm-utils: Change env variable TPM_SERVER_TYPE for, tpm_server [1/6] ima-evm-utils: Change env variable TPM_SERVER_TYPE for, tpm_server - - - --- 2020-10-02 Ken Goldman New
[1/6] ima-evm-utils: fix PCRAggr error message ima-evm-utils: miscellanous code clean up and bug fixes - - - --- 2020-07-07 Mimi Zohar New
[10/11] ima: Don't ignore errors from crypto_shash_update() [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - 1 - --- 2020-06-18 Roberto Sassu New
[10/12] ima: Move validation of the keyrings conditional into ima_validate_rule() ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[10/13] firmware_loader: Use security_post_load_data() Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[10/13] x86: Secure Launch adding event log securityfs x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[10/34] attr: handle idmapped mounts fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[11/11] ima: Remove semicolon at the end of ima_get_binary_runtime_size() [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - --- 2020-06-18 Roberto Sassu New
[11/12] ima: Use the common function to detect LSM conditionals in a rule ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - 1 - --- 2020-06-23 Tyler Hicks New
[11/13] kexec: Secure Launch kexec SEXIT support x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[11/13] module: Call security_kernel_post_load_data() Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[11/34] acl: handle idmapped mounts fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[12/12] ima: Support additional conditionals in the KEXEC_CMDLINE hook function ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - --- 2020-06-23 Tyler Hicks New
[12/13] LSM: Add "contents" flag to kernel_read_file hook Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[12/13] reboot: Secure Launch SEXIT support on reboot paths x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[12/34] xattr: handle idmapped mounts fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[13/13] fs/kernel_file_read: Add "offset" arg for partial reads Introduce partial kernel_read_file() support - - - --- 2020-07-17 Kees Cook New
[13/13] security/integrity/ima: converts stats to seqnum_ops Introduce seqnum_ops - - - --- 2020-11-10 Shuah Khan New
[13/13] tpm: Allow locality 2 to be set when initializing the TPM for Secure Launch x86: Trenchboot secure dynamic launch Linux kernel support - - - --- 2020-09-24 Ross Philipson New
[13/34] selftests: add idmapped mounts xattr selftest fs: idmapped mounts - - - --- 2020-10-29 Christian Brauner New
[131/141] tpm: Fix fall-through warnings for Clang Fix fall-through warnings for Clang - 2 - --- 2020-11-20 Gustavo A. R. Silva New
« 1 2 3 410 11 »