Show patches with: none      |   15894 patches
« 1 2 ... 152 153 154158 159 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[15/16] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down - - - --- 2016-11-16 David Howells New
[14/16] Restrict /dev/mem and /dev/kmem when the kernel is locked down - - - --- 2016-11-16 David Howells New
[13/16] asus-wmi: Restrict debugfs interface when the kernel is locked down - - - --- 2016-11-16 David Howells New
[12/16] ACPI: Limit access to custom_method when the kernel is locked down - - - --- 2016-11-16 David Howells New
[11/16] x86: Lock down IO port access when the kernel is locked down - - - --- 2016-11-16 David Howells New
[10/16] PCI: Lock down BAR access when the kernel is locked down - - - --- 2016-11-16 David Howells New
[09/16] hibernate: Disable when the kernel is locked down - - - --- 2016-11-16 David Howells New
[08/16] Copy secure_boot flag in boot params across kexec reboot - - - --- 2016-11-16 David Howells New
[07/16] kexec: Disable at runtime if the kernel is locked down - - - --- 2016-11-16 David Howells New
[06/16] Add a sysrq option to exit secure boot mode - - - --- 2016-11-16 David Howells New
[05/16] efi: Add EFI_SECURE_BOOT bit - - - --- 2016-11-16 David Howells New
[04/16] efi: Lock down the kernel if booted in secure boot mode - - - --- 2016-11-16 David Howells New
[03/16] efi: Disable secure boot if shim is in insecure mode - - - --- 2016-11-16 David Howells New
[02/16] efi: Get the secure boot status - - - --- 2016-11-16 David Howells New
[01/16] Add the ability to lock down access to the running kernel image - - - --- 2016-11-16 David Howells New
[9/9] MODSIGN: Allow the "db" UEFI variable to be suppressed - - - --- 2016-11-16 David Howells New
[8/9] MODSIGN: Import certificates from UEFI Secure Boot - - - --- 2016-11-16 David Howells New
[7/9] efi: Add an EFI signature blob parser - - - --- 2016-11-16 David Howells New
[6/9] efi: Add EFI signature data types - 1 - --- 2016-11-16 David Howells New
[5/9] efi: Add SHIM and image security database GUID definitions - 1 - --- 2016-11-16 David Howells New
[4/9] KEYS: Allow unrestricted boot-time addition of keys to secondary keyring - - - --- 2016-11-16 David Howells New
[3/9] PKCS#7: Handle blacklisted certificates - - - --- 2016-11-16 David Howells New
[2/9] X.509: Allow X.509 certs to be blacklisted - - - --- 2016-11-16 David Howells New
[1/9] KEYS: Add a system blacklist keyring - - - --- 2016-11-16 David Howells New
tpm: drop chip->is_open and chip->duration_adjusted - - - --- 2016-11-14 Jarkko Sakkinen New
Smack: Remove unnecessary smack_known_invalid - - - --- 2016-11-14 Casey Schaufler New
SELinux: Use GFP_KERNEL for selinux_parse_opts_str(). - - - --- 2016-11-14 Tetsuo Handa New
Smack: Use GFP_KERNEL for smk_netlbl_mls(). - - - --- 2016-11-14 Tetsuo Handa New
Smack: Use GFP_KERNEL for smack_parse_opts_str(). 1 - - --- 2016-11-14 Tetsuo Handa New
AppArmor: Use GFP_KERNEL for __aa_kvmalloc(). 1 - - --- 2016-11-14 Tetsuo Handa New
[v6,9/9] tpm: cleanup of printk error messages - 1 1 --- 2016-11-14 Nayna New
[v6,8/9] tpm: replace of_find_node_by_name() with dev of_node property - 1 - --- 2016-11-14 Nayna New
[v6,7/9] tpm: redefine read_log() to handle ACPI/OF at runtime - 2 1 --- 2016-11-14 Nayna New
[v6,6/9] tpm: fix the missing .owner in tpm_bios_measurements_ops - 1 1 --- 2016-11-14 Nayna New
[v6,5/9] tpm: have event log use the tpm_chip - 1 1 --- 2016-11-14 Nayna New
[v6,4/9] tpm: drop tpm1_chip_register(/unregister) - 2 1 --- 2016-11-14 Nayna New
[v6,3/9] tpm: replace dynamically allocated bios_dir with a static array - - 1 --- 2016-11-14 Nayna New
[v6,2/9] tpm: replace symbolic permission with octal for securityfs files - 2 1 --- 2016-11-14 Nayna New
[v6,1/9] tpm: define a generic open() method for ascii & bios measurements - 2 1 --- 2016-11-14 Nayna New
[3.16,138/346] x86/syscalls/64: Add compat_sys_keyctl for 32-bit userspace - - 1 --- 2016-11-14 Ben Hutchings New
[3.16,119/346] KEYS: 64-bit MIPS needs to use compat_sys_keyctl for 32-bit userspace - - - --- 2016-11-14 Ben Hutchings New
[3.2,051/152] x86/syscalls/64: Add compat_sys_keyctl for 32-bit userspace - - 1 --- 2016-11-14 Ben Hutchings New
[3.2,044/152] KEYS: 64-bit MIPS needs to use compat_sys_keyctl for 32-bit userspace - - - --- 2016-11-14 Ben Hutchings New
Security: selinux - Improvement in code readability when - - - --- 2016-11-11 shailendra.v@samsung.com New
[PATCHC,v7,10/10] ima: platform-independent hash value - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,09/10] ima: define a canonical binary_runtime_measurements list format - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,08/10] ima: support restoring multiple template formats - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,07/10] ima: store the builtin/custom template definitions in a list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,06/10] ima: on soft reboot, save the measurement list 1 - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,05/10] powerpc: ima: Send the kexec buffer to the next kernel 1 - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,04/10] ima: maintain memory size needed for serializing the measurement list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,03/10] ima: permit duplicate measurement list entries - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,02/10] ima: on soft reboot, restore the measurement list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,01/10] powerpc: ima: Get the kexec buffer passed by the previous kernel 1 - - --- 2016-11-10 Mimi Zohar New
smack: parse mnt opts after privileges check 1 - - --- 2016-11-10 Himanshu Shukla New
SMACK: Do not apply star label in smack_setprocattr hook 1 - - --- 2016-11-10 Himanshu Shukla New
SMACK: Fix the memory leak in smack_cred_prepare() hook 1 - - --- 2016-11-10 Himanshu Shukla New
[v4,9/9] selinux: Add a cache for quicker retreival of PKey SIDs - - - --- 2016-11-08 Daniel Jurgens New
[v4,8/9] selinux: Add IB Port SMP access vector - - - --- 2016-11-08 Daniel Jurgens New
[v4,7/9] selinux: Implement Infiniband PKey "Access" access vector - - - --- 2016-11-08 Daniel Jurgens New
[v4,6/9] selinux: Allocate and free infiniband security hooks - - - --- 2016-11-08 Daniel Jurgens New
[v4,5/9] selinux: Create policydb version for Infiniband support - 1 - --- 2016-11-08 Daniel Jurgens New
[v4,4/9] IB/core: Enforce security on management datagrams - - - --- 2016-11-08 Daniel Jurgens New
[v4,3/9] selinux lsm IB/core: Implement LSM notification system - - - --- 2016-11-08 Daniel Jurgens New
[v4,2/9] IB/core: Enforce PKey security on QPs - - - --- 2016-11-08 Daniel Jurgens New
[v4,1/9] IB/core: IB cache enhancements to support Infiniband security - 2 - --- 2016-11-08 Daniel Jurgens New
Smack: ipv6 label match fix - - - --- 2016-11-08 Casey Schaufler New
[1/1,V2] mqueue: Implment generic xattr support 1 - - --- 2016-11-07 David Graziano New
Doc: security: keys-trusted: drop duplicate blobauth entry - - - --- 2016-11-06 Baruch Siach New
[v3,1/8] exec: introduce cred_guard_light - - - --- 2016-11-05 Oleg Nesterov New
[v3,1/8] exec: introduce cred_guard_light - - - --- 2016-11-04 Eric W. Biederman New
[v3,1/8] exec: introduce cred_guard_light - - - --- 2016-11-04 Eric W. Biederman New
[v2] Smack: improves the documentation - - - --- 2016-11-04 José Bollo New
xattr: Fix setting security xattrs on sockfs - - - --- 2016-11-03 Andreas Gruenbacher New
xattr: Fix setting security xattrs on sockfs - - - --- 2016-11-03 Andreas Gruenbacher New
Smack: improves the documentation - - - --- 2016-11-03 José Bollo New
Smack: Assign smack_known_web label for kernel thread's - - - --- 2016-11-03 José Bollo New
[v3,3/3] selinux: require EXECMEM for forced ptrace poke - - - --- 2016-11-03 Jann Horn New
[v3,2/3] mm: add LSM hook for writes to readonly memory - - - --- 2016-11-03 Jann Horn New
[v3,1/3] fs/exec: don't force writing memory access 1 1 - --- 2016-11-03 Jann Horn New
[3/3] selinux: require EXECMEM for forced ptrace poke - - - --- 2016-11-03 Jann Horn New
[2/3] mm: add LSM hook for writes to readonly memory - - - --- 2016-11-03 Jann Horn New
[1/3] fs/exec: don't force writing memory access - 1 - --- 2016-11-03 Jann Horn New
LSM: Add /sys/kernel/security/lsm 1 - - --- 2016-11-02 Casey Schaufler New
Re: Problem with setxattr on sockfs with Smack after 971df15bd54ad46e907046ff33750a137b2f0096 - - - --- 2016-11-02 Andreas Gruenbacher New
[GIT,PULL] TPM bugfix - - - --- 2016-10-31 James Morris New
[v3,8/8] Documentation: add security/ptrace_checks.txt 1 - - --- 2016-10-30 Jann Horn New
[v3,7/8] proc: fix timerslack_ns handling - - - --- 2016-10-30 Jann Horn New
[v3,6/8] fs/proc: fix attr access check - - - --- 2016-10-30 Jann Horn New
[v3,5/8] proc: lock properly in ptrace_may_access callers - - - --- 2016-10-30 Jann Horn New
[v3,4/8] futex: don't leak robust_list pointer - - - --- 2016-10-30 Jann Horn New
[v3,3/8] proc: use open()-time creds for ptrace checks - - - --- 2016-10-30 Jann Horn New
[v3,2/8] exec: add privunit to task_struct - - - --- 2016-10-30 Jann Horn New
[v3,1/8] exec: introduce cred_guard_light - - - --- 2016-10-30 Jann Horn New
[v2,2/2] mm: unexport __get_user_pages_unlocked() - - - --- 2016-10-27 Lorenzo Stoakes New
[v2,1/2] mm: add locked parameter to get_user_pages_remote() - - - --- 2016-10-27 Lorenzo Stoakes New
Keyrings, user namespaces and the user_struct - - - --- 2016-10-27 Eric W. Biederman New
[2/2] mm: unexport __get_user_pages_unlocked() 1 - - --- 2016-10-27 Lorenzo Stoakes New
[1/2] mm: add locked parameter to get_user_pages_remote() - - - --- 2016-10-27 Lorenzo Stoakes New
[v6,3/3] LSM: Add context interface for proc attrs - - - --- 2016-10-27 Casey Schaufler New
« 1 2 ... 152 153 154158 159 »