Show patches with: Archived = No       |   795 patches
« 1 2 3 47 8 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
integrity: Update comment for load_moklist_certs() integrity: Update comment for load_moklist_certs() - - - --- 2024-05-11 Yusong Gao New
[bpf-next,v4,01/20] lsm: Refactor return value of LSM hook vm_enough_memory Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,02/20] lsm: Refactor return value of LSM hook inode_need_killpriv Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,03/20] lsm: Refactor return value of LSM hook inode_getsecurity Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,04/20] lsm: Refactor return value of LSM hook inode_listsecurity Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,05/20] lsm: Refactor return value of LSM hook inode_copy_up_xattr Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,06/20] lsm: Refactor return value of LSM hook getselfattr Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,07/20] lsm: Refactor return value of LSM hook setprocattr Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,08/20] lsm: Refactor return value of LSM hook getprocattr Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,09/20] lsm: Refactor return value of LSM hook key_getsecurity Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,10/20] lsm: Refactor return value of LSM hook audit_rule_match Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,11/20] bpf, lsm: Add disabled BPF LSM hook list Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,12/20] bpf, lsm: Enable BPF LSM prog to read/write return value parameters Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,13/20] bpf, lsm: Add check for BPF LSM return value Add return value range check for BPF LSM 1 - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,14/20] bpf: Prevent tail call between progs attached to different hooks Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,15/20] bpf: Fix compare error in function retval_range_within Add return value range check for BPF LSM 1 - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,16/20] bpf: Add a special case for bitwise AND on range [-1, 0] Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,17/20] selftests/bpf: Avoid load failure for token_lsm.c Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,18/20] selftests/bpf: Add return value checks for failed tests Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,19/20] selftests/bpf: Add test for lsm tail call Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[bpf-next,v4,20/20] selftests/bpf: Add verifier tests for bpf lsm Add return value range check for BPF LSM - - - --- 2024-07-11 Xu Kuohai New
[v1] tpm_tis_spi: add missing attpm20p SPI device ID entry [v1] tpm_tis_spi: add missing attpm20p SPI device ID entry - 2 - --- 2024-06-21 Vitor Soares New
[v4,1/3] crypto: streebog - add Streebog hash function crypto: streebog - add Streebog hash function - 1 - --- 2018-11-06 Vitaly Chikunov Not Applicable
[v4,2/3] crypto: streebog - register Streebog in hash info for IMA crypto: streebog - add Streebog hash function - 1 - --- 2018-11-06 Vitaly Chikunov Not Applicable
[v4,3/3] crypto: streebog - add Streebog test vectors crypto: streebog - add Streebog hash function 1 - - --- 2018-11-06 Vitaly Chikunov Not Applicable
[1/3] ima-avm-utils: Fix hash buffer overflow in verify_evm [1/3] ima-avm-utils: Fix hash buffer overflow in verify_evm - - - --- 2018-11-26 Vitaly Chikunov Superseded
[2/3] ima-evm-utils: Add --xattr-user option for testing [1/3] ima-avm-utils: Fix hash buffer overflow in verify_evm - - - --- 2018-11-26 Vitaly Chikunov Superseded
[3/3] ima-evm-utils: Allow to use Streebog hash function [1/3] ima-avm-utils: Fix hash buffer overflow in verify_evm - - - --- 2018-11-26 Vitaly Chikunov Superseded
[v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm [v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-11-28 Vitaly Chikunov Changes Requested
[v2,2/7] ima-evm-utils: Define hash and sig buffer sizes and add asserts [v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-11-28 Vitaly Chikunov Changes Requested
[v2,3/7] ima-evm-utils: Define the '--xattr-user' option for testing [v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-11-28 Vitaly Chikunov Changes Requested
[v2,4/7] ima-evm-utils: Allow using Streebog hash function [v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-11-28 Vitaly Chikunov Changes Requested
[v2,5/7] ima-evm-utils: Preload OpenSSL engine via '--engine' option [v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-11-28 Vitaly Chikunov Changes Requested
[v2,6/7] ima-evm-utils: Extract digest algorithms from hash_info.h [v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-11-28 Vitaly Chikunov Superseded
[v2,7/7] ima-evm-utils: Try to load digest by its alias [v2,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-11-28 Vitaly Chikunov Changes Requested
[v2.1,6/7] ima-evm-utils: Extract digest algorithms from hash_info.h Untitled series #49333 - - - --- 2018-11-29 Vitaly Chikunov Changes Requested
[v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm [v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-12-03 Vitaly Chikunov Accepted
[v3,2/7] ima-evm-utils: Define hash and sig buffer sizes and add asserts [v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-12-03 Vitaly Chikunov Accepted
[v3,3/7] ima-evm-utils: Define the '--xattr-user' option for testing [v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-12-03 Vitaly Chikunov Accepted
[v3,4/7] ima-evm-utils: Allow using Streebog hash function [v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-12-03 Vitaly Chikunov Accepted
[v3,5/7] ima-evm-utils: Preload OpenSSL engine via '--engine' option [v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-12-03 Vitaly Chikunov Accepted
[v3,6/7] ima-evm-utils: Extract digest algorithms from hash_info.h [v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-12-03 Vitaly Chikunov Accepted
[v3,7/7] ima-evm-utils: Try to load digest by its alias [v3,1/7] ima-evm-utils: Fix hash buffer overflow in verify_evm and hmac_evm - - - --- 2018-12-03 Vitaly Chikunov Accepted
[v2,27/33] tpm_tis_spi: Follow renaming of SPI "master" to "controller" spi: get rid of some legacy macros - 1 - --- 2024-01-22 Uwe Kleine-König New
[v3,26/32] tpm_tis_spi: Follow renaming of SPI "master" to "controller" spi: get rid of some legacy macros 1 1 - --- 2024-02-07 Uwe Kleine-König New
[v2] tpm: Require that all digests are present in TCG_PCR_EVENT2 structures [v2] tpm: Require that all digests are present in TCG_PCR_EVENT2 structures - 1 - --- 2020-07-10 Tyler Hicks jsakkine Accepted
[v4,1/7] ima: define and call ima_alloc_kexec_file_buf ima: kexec: measure events between kexec load and execute - - - --- 2024-01-22 Tushar Sugandhi New
[v4,2/7] kexec: define functions to map and unmap segments ima: kexec: measure events between kexec load and execute - - - --- 2024-01-22 Tushar Sugandhi New
[v4,3/7] ima: kexec: skip IMA segment validation after kexec soft reboot ima: kexec: measure events between kexec load and execute - - - --- 2024-01-22 Tushar Sugandhi New
[v4,4/7] ima: kexec: move ima log copy from kexec load to execute ima: kexec: measure events between kexec load and execute - - - --- 2024-01-22 Tushar Sugandhi New
[v4,5/7] ima: suspend measurements during buffer copy at kexec execute ima: kexec: measure events between kexec load and execute - 1 - --- 2024-01-22 Tushar Sugandhi New
[v4,6/7] ima: make the kexec extra memory configurable ima: kexec: measure events between kexec load and execute - - - --- 2024-01-22 Tushar Sugandhi New
[v4,7/7] ima: measure kexec load and exec events as critical data ima: kexec: measure events between kexec load and execute - - - --- 2024-01-22 Tushar Sugandhi New
[v5,1/8] ima: define and call ima_alloc_kexec_file_buf ima: kexec: measure events between kexec load and execute - - - --- 2024-02-14 Tushar Sugandhi New
[v5,2/8] kexec: define functions to map and unmap segments ima: kexec: measure events between kexec load and execute - 1 - --- 2024-02-14 Tushar Sugandhi New
[v5,3/8] ima: kexec: skip IMA segment validation after kexec soft reboot ima: kexec: measure events between kexec load and execute - - - --- 2024-02-14 Tushar Sugandhi New
[v5,4/8] ima: kexec: define functions to copy IMA log at soft boot ima: kexec: measure events between kexec load and execute - 1 - --- 2024-02-14 Tushar Sugandhi New
[v5,5/8] ima: kexec: move IMA log copy from kexec load to execute ima: kexec: measure events between kexec load and execute - - - --- 2024-02-14 Tushar Sugandhi New
[v5,6/8] ima: suspend measurements during buffer copy at kexec execute ima: kexec: measure events between kexec load and execute - 1 - --- 2024-02-14 Tushar Sugandhi New
[v5,7/8] ima: make the kexec extra memory configurable ima: kexec: measure events between kexec load and execute - 1 - --- 2024-02-14 Tushar Sugandhi New
[v5,8/8] ima: measure kexec load and exec events as critical data ima: kexec: measure events between kexec load and execute - - - --- 2024-02-14 Tushar Sugandhi New
TPM error path on probe TPM error path on probe - - - --- 2024-02-29 Tim Harvey New
[v3,1/5] tpm: move tpm_eventlog.h outside of drivers folder - - - --- 2017-09-20 Thiébaud Weksteen Accepted
[v3,2/5] tpm: rename event log provider files - 1 - --- 2017-09-20 Thiébaud Weksteen Accepted
[v3,3/5] tpm: add event log format version - - - --- 2017-09-20 Thiébaud Weksteen Accepted
[v3,4/5] efi: call get_event_log before ExitBootServices - - - --- 2017-09-20 Thiébaud Weksteen Accepted
[v3,5/5] tpm: parse TPM event logs based on EFI table - 1 - --- 2017-09-20 Thiébaud Weksteen Accepted
[v7,1/2] acpi: Extend TPM2 ACPI table with missing log fields tpm2: Make TPM2 logs accessible for non-UEFI firmware 1 1 - --- 2020-06-25 Stefan Berger jsakkine Rejected
[v7,2/2] tpm: Add support for event log pointer found in TPM2 ACPI table tpm2: Make TPM2 logs accessible for non-UEFI firmware - - - --- 2020-06-25 Stefan Berger jsakkine Rejected
[RESEND,v9,1/2] acpi: Extend TPM2 ACPI table with missing log fields tpm2: Make TPM2 logs accessible for non-UEFI firmware 1 2 - --- 2020-07-06 Stefan Berger jsakkine Accepted
[RESEND,v9,2/2] tpm: Add support for event log pointer found in TPM2 ACPI table tpm2: Make TPM2 logs accessible for non-UEFI firmware - 1 - --- 2020-07-06 Stefan Berger jsakkine Accepted
[1/5] security: allow finer granularity in permitting copy-up of security xattrs evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[2/5] evm: Implement per signature type decision in security_inode_copy_up_xattr evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[3/5] ima: Reset EVM status upon detecting changes to overlay backing file evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[4/5] evm: Use the real inode's metadata to calculate metadata hash evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[5/5] evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509 evm: Support signatures on stacked filesystem - - - --- 2024-01-30 Stefan Berger New
[v1,ima-evm-utils,1/6] headers: Remove usage of CONFIG_IMA_EVM_ENGINE from public header Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,2/6] Pass ENGINE and keyid through to function using them Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,3/6] evmctl: Replace deprecated sign_hash with imaevm_signhash Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,4/6] Add support for OpenSSL provider to the library and evmctl Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,5/6] tests: Add pkcs11 test using provider Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v1,ima-evm-utils,6/6] ci: Install pkcs11-provider where available Deprecate sign_hash and add provider support - - - --- 2024-02-05 Stefan Berger New
[v2,1/9] ima: Rename backing_inode to real_inode evm: Support signatures on stacked filesystem 1 - - --- 2024-02-05 Stefan Berger New
[v2,2/9] security: allow finer granularity in permitting copy-up of security xattrs evm: Support signatures on stacked filesystem 2 - - --- 2024-02-05 Stefan Berger New
[v2,3/9] evm: Implement per signature type decision in security_inode_copy_up_xattr evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,4/9] ima: Reset EVM status upon detecting changes to the real file evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,5/9] evm: Use the inode holding the metadata to calculate metadata hash evm: Support signatures on stacked filesystem 1 - - --- 2024-02-05 Stefan Berger New
[v2,6/9] evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509 evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,7/9] fs: Rename SB_I_EVM_UNSUPPORTED to SB_I_EVM_HMAC_UNSUPPORTED evm: Support signatures on stacked filesystem 1 - - --- 2024-02-05 Stefan Berger New
[v2,8/9] evm: Rename is_unsupported_fs to is_unsupported_hmac_fs evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,9/9] ima: Record i_version of real_inode for change detection evm: Support signatures on stacked filesystem - - - --- 2024-02-05 Stefan Berger New
[v2,ima-evm-utils,1/6] headers: Remove usage of CONFIG_IMA_EVM_ENGINE from public header Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,2/6] Pass ENGINE and keyid through to function using them Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,3/6] evmctl: Replace deprecated sign_hash with imaevm_signhash Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,4/6] Add support for OpenSSL provider to the library and evmctl Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,5/6] tests: Add pkcs11 test using provider Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v2,ima-evm-utils,6/6] ci: Install pkcs11-provider where available Deprecate sign_hash and add provider support - - - --- 2024-02-23 Stefan Berger New
[v3,01/10] ima: Rename backing_inode to real_inode evm: Support signatures on stacked filesystem 1 - - --- 2024-02-23 Stefan Berger New
[v3,02/10] security: allow finer granularity in permitting copy-up of security xattrs evm: Support signatures on stacked filesystem 1 - - --- 2024-02-23 Stefan Berger New
[v3,03/10] evm: Implement per signature type decision in security_inode_copy_up_xattr evm: Support signatures on stacked filesystem - - - --- 2024-02-23 Stefan Berger New
« 1 2 3 47 8 »