Show patches with: State = Action Required       |   12124 patches
« 1 2 ... 3 4 5121 122 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v3,04/12] landlock: Fix same-layer rule unions Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,03/12] landlock: Create find_rule() from unmask_layers() Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,02/12] landlock: Reduce the maximum number of layers to 16 Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,01/12] landlock: Define access_mask_t to enforce a consistent access mask size Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v2,10/10] selftests/landlock: Test landlock_create_ruleset(2) argument check ordering Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,09/10] landlock: Change landlock_restrict_self(2) check ordering Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,08/10] landlock: Change landlock_add_rule(2) argument check ordering Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,07/10] selftests/landlock: Add tests for O_PATH Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,06/10] selftests/landlock: Fully test file rename with "remove" access Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,05/10] selftests/landlock: Extend access right tests to directories Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,04/10] selftests/landlock: Add tests for unknown access rights Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,03/10] selftests/landlock: Extend tests for minimal valid attribute size Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,02/10] selftests/landlock: Make tests build with old libc Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,01/10] landlock: Fix landlock_add_rule(2) documentation Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v1,7/7] samples/landlock: Format with clang-format Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,6/7] samples/landlock: Add clang-format exceptions Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,5/7] selftests/landlock: Format with clang-format Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,4/7] selftests/landlock: Normalize array assignment Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,3/7] selftests/landlock: Add clang-format exceptions Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,2/7] landlock: Format with clang-format Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,1/7] landlock: Add clang-format exceptions Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v9,7/7] MAINTAINERS: add KEYS-TRUSTED-CAAM KEYS: trusted: Introduce support for NXP CAAM-based trusted keys 1 1 - --- 2022-05-06 Ahmad Fatoum New
[v9,6/7] doc: trusted-encrypted: describe new CAAM trust source KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 - --- 2022-05-06 Ahmad Fatoum New
[v9,5/7] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 3 --- 2022-05-06 Ahmad Fatoum New
[v9,4/7] crypto: caam - add in-kernel interface for blob generator KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 3 --- 2022-05-06 Ahmad Fatoum New
[v9,3/7] crypto: caam - determine whether CAAM supports blob encap/decap KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - - - --- 2022-05-06 Ahmad Fatoum New
[v9,2/7] KEYS: trusted: allow use of kernel RNG for key material KEYS: trusted: Introduce support for NXP CAAM-based trusted keys 2 3 1 --- 2022-05-06 Ahmad Fatoum New
[v9,1/7] KEYS: trusted: allow use of TEE as backend without TCG_TPM support KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 3 --- 2022-05-06 Ahmad Fatoum New
[3/3] ima: Append line feed to ima/binary_runtime_measurements Append line feed to files in securityfs - - - --- 2022-05-05 Wang Weiyang New
[2/3] evm: Append line feed to /sys/kernel/security/evm Append line feed to files in securityfs - - - --- 2022-05-05 Wang Weiyang New
[1/3] securityfs: Append line feed to /sys/kernel/security/lsm Append line feed to files in securityfs - - - --- 2022-05-05 Wang Weiyang New
[05/10] security: keys: trusted: Verify creation data Encrypted Hibernation - - - --- 2022-05-04 Evan Green New
[04/10] security: keys: trusted: Allow storage of PCR values in creation data Encrypted Hibernation - - - --- 2022-05-04 Evan Green New
[03/10] security: keys: trusted: Parse out individual components of the key blob Encrypted Hibernation - - - --- 2022-05-04 Evan Green New
[v3,3/3] dm: verity-loadpin: Use CONFIG_SECURITY_LOADPIN_VERITY for conditional compilation LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-05-04 Matthias Kaehlcke New
[v3,2/3] LoadPin: Enable loading from trusted dm-verity devices LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-05-04 Matthias Kaehlcke New
[v3,1/3] dm: Add verity helpers for LoadPin LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-05-04 Matthias Kaehlcke New
[32/32] esas2r: Use __mem_to_flex() with struct atto_ioctl Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[31/32] xenbus: Use mem_to_flex_dup() with struct read_buffer Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[30/32] usb: gadget: f_fs: Use mem_to_flex_dup() with struct ffs_buffer Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[29/32] xtensa: Use mem_to_flex_dup() with struct property Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[28/32] selinux: Use mem_to_flex_dup() with xfrm and sidtab Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[27/32] KEYS: Use mem_to_flex_dup() with struct user_key_payload Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[26/32] ima: Use mem_to_flex_dup() with struct modsig Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[25/32] Drivers: hv: utils: Use mem_to_flex_dup() with struct cn_msg Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[24/32] IB/hfi1: Use mem_to_flex_dup() for struct tid_rb_node Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[23/32] Bluetooth: Use mem_to_flex_dup() with struct hci_op_configure_data_path Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[22/32] atags_proc: Use mem_to_flex_dup() with struct buffer Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[21/32] soc: qcom: apr: Use mem_to_flex_dup() with struct apr_rx_buf Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[20/32] ASoC: sigmadsp: Use mem_to_flex_dup() with struct sigmadsp_data Introduce flexible array struct memcpy() helpers 1 - - --- 2022-05-04 Kees Cook New
[19/32] afs: Use mem_to_flex_dup() with struct afs_acl Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[18/32] firewire: Use __mem_to_flex_dup() with struct iso_interrupt_event Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[17/32] net/flow_offload: Use mem_to_flex_dup() with struct flow_action_cookie Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[16/32] 802/mrp: Use mem_to_flex_dup() with struct mrp_attr Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[15/32] 802/garp: Use mem_to_flex_dup() with struct garp_attr Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[14/32] af_unix: Use mem_to_flex_dup() with struct unix_address Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[13/32] mac80211: Use mem_to_flex_dup() with several structs Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[12/32] cfg80211: Use mem_to_flex_dup() with struct cfg80211_bss_ies Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[11/32] nl80211: Use mem_to_flex_dup() with struct cfg80211_cqm_config Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[10/32] wcn36xx: Use mem_to_flex_dup() with struct wcn36xx_hal_ind_msg Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[09/32] p54: Use mem_to_flex_dup() with struct p54_cal_database Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[08/32] iwlwifi: mvm: Use mem_to_flex_dup() with struct ieee80211_key_conf Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[07/32] iwlwifi: calib: Use mem_to_flex_dup() with struct iwl_calib_result Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[06/32] iwlwifi: calib: Prepare to use mem_to_flex_dup() Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[05/32] brcmfmac: Use mem_to_flex_dup() with struct brcmf_fweh_queue_item Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[04/32] fortify: Add run-time WARN for cross-field memcpy() Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[03/32] flex_array: Add Kunit tests Introduce flexible array struct memcpy() helpers - 1 - --- 2022-05-04 Kees Cook New
[02/32] Introduce flexible array struct memcpy() helpers Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[01/32] netlink: Avoid memcpy() across flexible array boundary Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
fsnotify: add generic perm check for unlink/rmdir fsnotify: add generic perm check for unlink/rmdir - - - --- 2022-05-03 Guowei Du New
[RFC] getting misc stats/attributes via xattr API [RFC] getting misc stats/attributes via xattr API - - - --- 2022-05-03 Miklos Szeredi New
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-05-02 Christian Göttsche New
[v2,8/8] net: use new capable_or functionality [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message - 1 - --- 2022-05-02 Christian Göttsche New
[v2,7/8] kernel/bpf: use new capable_or functionality [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-05-02 Christian Göttsche New
[v2,6/8] kernel: use new capable_or functionality [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-05-02 Christian Göttsche New
[v2,5/8] fs: use new capable_or functionality [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-05-02 Christian Göttsche New
[v2,4/8] drivers: use new capable_or functionality [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message 1 1 - --- 2022-05-02 Christian Göttsche New
[v2,3/8] block: use new capable_or functionality [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-05-02 Christian Göttsche New
[v2,2/8] capability: use new capable_or functionality [v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-05-02 Christian Göttsche New
[v8,6/6] MAINTAINERS: add myself as CAAM trusted key maintainer KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 1 - --- 2022-04-28 Ahmad Fatoum New
[v8,5/6] doc: trusted-encrypted: describe new CAAM trust source KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 - --- 2022-04-28 Ahmad Fatoum New
[v8,4/6] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 3 --- 2022-04-28 Ahmad Fatoum New
[v8,3/6] crypto: caam - add in-kernel interface for blob generator KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 3 --- 2022-04-28 Ahmad Fatoum New
[v8,2/6] KEYS: trusted: allow use of kernel RNG for key material KEYS: trusted: Introduce support for NXP CAAM-based trusted keys 2 3 1 --- 2022-04-28 Ahmad Fatoum New
[v8,1/6] KEYS: trusted: allow use of TEE as backend without TCG_TPM support KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 3 --- 2022-04-28 Ahmad Fatoum New
apparmor: fix reference count leak in aa_pivotroot() apparmor: fix reference count leak in aa_pivotroot() 1 - - --- 2022-04-28 Xin Xiong New
[v2,3/3] dm: verity-loadpin: Use CONFIG_SECURITY_LOADPIN_VERITY for conditional compilation LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-04-26 Matthias Kaehlcke New
[v2,2/3] LoadPin: Enable loading from trusted dm-verity devices LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-04-26 Matthias Kaehlcke New
[v2,1/3] dm: Add verity helpers for LoadPin LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-04-26 Matthias Kaehlcke New
[v2] Carry forward IMA measurement log on kexec on x86_64 [v2] Carry forward IMA measurement log on kexec on x86_64 - - - --- 2022-04-26 Jonathan McDowell New
integrity: Allow ima_appraise bootparam to be set when SB is enabled integrity: Allow ima_appraise bootparam to be set when SB is enabled - - - --- 2022-04-25 Eric Snowberg New
[1/2] clk-bcm2835: use subsys_initcall for the clock driver when IMA is enabled [1/2] clk-bcm2835: use subsys_initcall for the clock driver when IMA is enabled - - - --- 2022-04-23 Alberto Solavagione New
[v7,RESEND] efi: Do not import certificates from UEFI Secure Boot for T2 Macs [v7,RESEND] efi: Do not import certificates from UEFI Secure Boot for T2 Macs - 1 - --- 2022-04-22 Aditya Garg New
Carry forward IMA measurement log on kexec on x86_64 Carry forward IMA measurement log on kexec on x86_64 - - - --- 2022-04-22 Jonathan McDowell New
[v12,26/26] ima: Enable IMA namespaces ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-04-20 Stefan Berger New
[v12,25/26] ima: Restrict informational audit messages to init_ima_ns ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-04-20 Stefan Berger New
[v12,24/26] ima: Limit number of policy rules in non-init_ima_ns ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-04-20 Stefan Berger New
[v12,23/26] ima: Show owning user namespace's uid and gid when displaying policy ima: Namespace IMA with audit support in IMA-ns - 2 - --- 2022-04-20 Stefan Berger New
[v12,22/26] ima: Introduce securityfs file to activate an IMA namespace ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-04-20 Stefan Berger New
[v12,21/26] ima: Setup securityfs for IMA namespace ima: Namespace IMA with audit support in IMA-ns 2 1 - --- 2022-04-20 Stefan Berger New
« 1 2 ... 3 4 5121 122 »