Toggle navigation
Patchwork
Security modules development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| 12025 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
holtmann
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
asi123
andmike
cvaroqui
nomura
jbrassow
dtor
kueda
bmarzins
tmlind
jmberg
jmberg
mcgrof
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
bhelgaas
vkoul
vkoul
szlin
davejiang
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
matthias_bgg
dvhart
axboe
axboe
pcmoore
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
dgc
kbingham
derosier
narmstrong
narmstrong
atull
tytso
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
pkshih
patersonc
brauner
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
broonie
broonie
broonie
mricon
mricon
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
perfinion
bbrezillon
bachradsusi
rostedt
rostedt
kholk
nbd
ebiggers
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wens
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
mani_sadhasivam
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
dhowells
tzungbi
conchuod
paulmck
jes
mtkaczyk
colyli
pateldipen1984
iweiny
iweiny
bjorn
mhiramat
JanKiszka
jaegeuk
mraynal
aring
konradybcio
ij
Hailan
jstitt007
denkenz
denkenz
mkorenbl
jjohnson
frank_li
geliang
mdraidci
Apply
«
1
2
...
70
71
72
…
120
121
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[GIT,PULL,UPDATED] security: yama and LSM config fixes
[GIT,PULL,UPDATED] security: yama and LSM config fixes
- - -
-
-
-
2019-03-29
James Morris
New
LSM: Revive CONFIG_DEFAULT_SECURITY_* for "make oldconfig"
LSM: Revive CONFIG_DEFAULT_SECURITY_* for "make oldconfig"
1 - -
-
-
-
2019-03-29
Kees Cook
New
[GIT,PULL] security: yama fix for v5.1
[GIT,PULL] security: yama fix for v5.1
- - -
-
-
-
2019-03-29
James Morris
New
[GIT,PULL] tpmdd fixes for Linux v5.1
[GIT,PULL] tpmdd fixes for Linux v5.1
- - -
-
-
-
2019-03-29
Jarkko Sakkinen
New
[RFC,40/68] vfs: Convert smackfs to use the new mount API
Untitled series #97843
- - -
-
-
-
2019-03-27
David Howells
New
[RFC,39/68] vfs: Convert selinuxfs to use the new mount API
Untitled series #97843
- - -
-
-
-
2019-03-27
David Howells
New
[RFC,38/68] vfs: Convert securityfs to use the new mount API
Untitled series #97843
- - -
-
-
-
2019-03-27
David Howells
New
[RFC,37/68] vfs: Convert apparmorfs to use the new mount API
Untitled series #97843
- - -
-
-
-
2019-03-27
David Howells
New
keys: safe concurrent user->{session,uid}_keyring access
keys: safe concurrent user->{session,uid}_keyring access
- - -
-
-
-
2019-03-27
Jann Horn
New
security: don't use RCU accessors for cred->session_keyring
security: don't use RCU accessors for cred->session_keyring
- - -
-
-
-
2019-03-27
Jann Horn
New
Yama: mark function as static
Yama: mark function as static
- - -
-
-
-
2019-03-27
Mukesh Ojha
New
Yama: mark local symbols as static
Yama: mark local symbols as static
- 1 -
-
-
-
2019-03-26
Jann Horn
New
[ghak109,V2] audit: link integrity evm_write_xattrs record to syscall event
[ghak109,V2] audit: link integrity evm_write_xattrs record to syscall event
2 - -
-
-
-
2019-03-26
Richard Guy Briggs
New
[V31,25/25] debugfs: Disable open() when kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,24/25] lockdown: Print current->comm in restriction messages
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,23/25] Lock down perf when in confidentiality mode
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,22/25] bpf: Restrict bpf when kernel lockdown is in confidentiality mode
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,21/25] Lock down kprobes when in confidentiality mode
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,20/25] Lock down /proc/kcore
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,19/25] x86/mmiotrace: Lock down the testmmiotrace module
Add support for kernel lockdown
1 - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,18/25] Lock down module params that specify hardware parameters (eg. ioport)
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,17/25] Lock down TIOCSSERIAL
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,16/25] Prohibit PCMCIA CIS storage when the kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,15/25] acpi: Disable ACPI table override if the kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,14/25] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,13/25] ACPI: Limit access to custom_method when the kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,12/25] x86/msr: Restrict MSR access when the kernel is locked down
Add support for kernel lockdown
1 1 -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,11/25] x86: Lock down IO port access when the kernel is locked down
Add support for kernel lockdown
- 1 -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,10/25] PCI: Lock down BAR access when the kernel is locked down
Add support for kernel lockdown
1 - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,09/25] uswsusp: Disable when the kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,08/25] hibernate: Disable when the kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,07/25] kexec_file: Restrict at runtime if the kernel is locked down
Add support for kernel lockdown
- 1 -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,06/25] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE
Add support for kernel lockdown
- 1 -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,05/25] Copy secure_boot flag in boot params across kexec reboot
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,04/25] kexec_load: Disable at runtime if the kernel is locked down
Add support for kernel lockdown
1 - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,03/25] Restrict /dev/{mem,kmem,port} when the kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,02/25] Enforce module signatures if the kernel is locked down
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[V31,01/25] Add the ability to lock down access to the running kernel image
Add support for kernel lockdown
- - -
-
-
-
2019-03-26
Matthew Garrett
New
[v3] KEYS: trusted: allow trusted.ko to initialize w/o a TPM
[v3] KEYS: trusted: allow trusted.ko to initialize w/o a TPM
- - 1
-
-
-
2019-03-26
Jarkko Sakkinen
New
[v2] KEYS: trusted: allow trusted.ko to initialize w/o a TPM
[v2] KEYS: trusted: allow trusted.ko to initialize w/o a TPM
- - 1
-
-
-
2019-03-26
Jarkko Sakkinen
New
[1/1] RFC: security: add SECURE_KEEP_FSUID to preserve fsuid/fsgid across execve
RFC: security: add SECURE_KEEP_FSUID to preserve fsuid/fsgid across execve
- - -
-
-
-
2019-03-25
Lubashev, Igor
New
[27/27] kexec: Allow kexec_file() with appropriate IMA policy when locked down
[PULL,REQUEST] Lockdown patches for 5.2
1 - -
-
-
-
2019-03-25
Matthew Garrett
New
[26/27] lockdown: Print current->comm in restriction messages
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[25/27] debugfs: Restrict debugfs when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[24/27] Lock down perf
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[23/27] bpf: Restrict kernel image access functions when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[22/27] Lock down kprobes
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[21/27] Lock down /proc/kcore
[PULL,REQUEST] Lockdown patches for 5.2
- 1 -
-
-
-
2019-03-25
Matthew Garrett
New
[20/27] x86/mmiotrace: Lock down the testmmiotrace module
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[19/27] Lock down module params that specify hardware parameters (eg. ioport)
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[18/27] Lock down TIOCSSERIAL
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[17/27] Prohibit PCMCIA CIS storage when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[16/27] acpi: Disable APEI error injection if the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[15/27] acpi: Disable ACPI table override if the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[14/27] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[13/27] ACPI: Limit access to custom_method when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[12/27] x86/msr: Restrict MSR access when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
1 1 -
-
-
-
2019-03-25
Matthew Garrett
New
[11/27] x86: Lock down IO port access when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- 1 -
-
-
-
2019-03-25
Matthew Garrett
New
[10/27] PCI: Lock down BAR access when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
1 - -
-
-
-
2019-03-25
Matthew Garrett
New
[09/27] uswsusp: Disable when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- 1 -
-
-
-
2019-03-25
Matthew Garrett
New
[08/27] hibernate: Disable when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[07/27] kexec_file: Restrict at runtime if the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- 1 -
-
-
-
2019-03-25
Matthew Garrett
New
[06/27] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE
[PULL,REQUEST] Lockdown patches for 5.2
- 1 -
-
-
-
2019-03-25
Matthew Garrett
New
[05/27] Copy secure_boot flag in boot params across kexec reboot
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[04/27] kexec_load: Disable at runtime if the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
1 - -
-
-
-
2019-03-25
Matthew Garrett
New
[03/27] Restrict /dev/{mem,kmem,port} when the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
[02/27] Enforce module signatures if the kernel is locked down
[PULL,REQUEST] Lockdown patches for 5.2
- 1 -
-
-
-
2019-03-25
Matthew Garrett
New
[01/27] Add the ability to lock down access to the running kernel image
[01/27] Add the ability to lock down access to the running kernel image
1 - -
-
-
-
2019-03-25
Matthew Garrett
New
[PULL,REQUEST] Lockdown patches for 5.2
[PULL,REQUEST] Lockdown patches for 5.2
- - -
-
-
-
2019-03-25
Matthew Garrett
New
KEYS: trusted: allow trusted.ko to initialize w/o a TPM
KEYS: trusted: allow trusted.ko to initialize w/o a TPM
- - -
-
-
-
2019-03-25
Jarkko Sakkinen
New
LSM: lsm_hooks.h - fix missing colon in docstring
LSM: lsm_hooks.h - fix missing colon in docstring
- - -
-
-
-
2019-03-25
Ondrej Mosnacek
New
[2/2,v2] efi: print appropriate status message when loading certificates
[1/2] efi: add a function for transferring status to string
- - -
-
-
-
2019-03-24
Chun-Yi Lee
New
[1/2] efi: add a function for transferring status to string
[1/2] efi: add a function for transferring status to string
- - -
-
-
-
2019-03-24
Chun-Yi Lee
New
[1/2] efi: add a function for transferring status to string
[1/2] efi: add a function for transferring status to string
- - -
-
-
-
2019-03-23
Chun-Yi Lee
New
KEYS: trusted: defer execution of TPM-specific code until key instantiate
KEYS: trusted: defer execution of TPM-specific code until key instantiate
- - 1
-
-
-
2019-03-22
Roberto Sassu
New
tpm: turn on TPM on suspend for TPM 1.x
tpm: turn on TPM on suspend for TPM 1.x
- - 1
-
-
-
2019-03-22
Jarkko Sakkinen
New
[2/2] efi: print appropriate status message when loading certificates
[1/2] efi: add a function for transferring status to string
- - -
-
-
-
2019-03-22
Chun-Yi Lee
New
[1/2] efi: add a function for transferring status to string
[1/2] efi: add a function for transferring status to string
- - -
-
-
-
2019-03-22
Chun-Yi Lee
New
[GIT,PULL] SELinux fixes for v5.1 (#2)
[GIT,PULL] SELinux fixes for v5.1 (#2)
- - -
-
-
-
2019-03-21
Paul Moore
New
[v19,RESEND,17/27] x86/sgx: Add provisioning
Untitled series #94401
- - -
-
-
-
2019-03-20
Jarkko Sakkinen
New
device_cgroup: fix RCU imbalance in error case
device_cgroup: fix RCU imbalance in error case
1 - -
-
-
-
2019-03-19
Jann Horn
New
[v19,17/27] x86/sgx: Add provisioning
Untitled series #92723
- - -
-
-
-
2019-03-17
Jarkko Sakkinen
New
[ghak109,V1] audit: link integrity evm_write_xattrs record to syscall event
[ghak109,V1] audit: link integrity evm_write_xattrs record to syscall event
- - -
-
-
-
2019-03-16
Richard Guy Briggs
New
security: inode: fix a missing check for securityfs_create_file
security: inode: fix a missing check for securityfs_create_file
- - -
-
-
-
2019-03-15
Kangjie Lu
New
security: inode: fix a missing check for securityfs_create_file
security: inode: fix a missing check for securityfs_create_file
- - -
-
-
-
2019-03-15
Kangjie Lu
New
[37/38] vfs: Convert smackfs to fs_context
Untitled series #91731
- - -
-
-
-
2019-03-14
David Howells
New
[36/38] vfs: Convert selinuxfs to fs_context
Untitled series #91731
- - -
-
-
-
2019-03-14
David Howells
New
[35/38] vfs: Convert securityfs to fs_context
Untitled series #91731
- - -
-
-
-
2019-03-14
David Howells
New
[34/38] vfs: Convert apparmorfs to fs_context
Untitled series #91731
- - -
-
-
-
2019-03-14
David Howells
New
[1/1] Smack: Create smack_rule cache to optimize memory usage
[1/1] Smack: Create smack_rule cache to optimize memory usage
- - -
-
-
-
2019-03-14
Vishal Goel
New
[GIT,PULL] SELinux fixes for v5.1 (#1)
[GIT,PULL] SELinux fixes for v5.1 (#1)
- - -
-
-
-
2019-03-12
Paul Moore
New
[GIT,PULL] apparmor updates for v5.1
[GIT,PULL] apparmor updates for v5.1
- - -
-
-
-
2019-03-12
John Johansen
New
secuirty: integrity: ima: pedantic formatting
secuirty: integrity: ima: pedantic formatting
- - -
-
-
-
2019-03-11
Enrico Weigelt, metux IT consult
New
[GIT,PULL] security: tpm subsystem updates for v5.1
[GIT,PULL] security: tpm subsystem updates for v5.1
- - -
-
-
-
2019-03-08
James Morris
New
[GIT,PULL] security: integrity subsystem updates for v5.1
[GIT,PULL] security: integrity subsystem updates for v5.1
- - -
-
-
-
2019-03-08
James Morris
New
[v2,2/2] initmem: introduce CONFIG_INIT_ALL_HEAP
RFC: introduce CONFIG_INIT_ALL_MEMORY
- - -
-
-
-
2019-03-08
Alexander Potapenko
New
[v2,1/2] initmem: introduce CONFIG_INIT_ALL_MEMORY and CONFIG_INIT_ALL_STACK
RFC: introduce CONFIG_INIT_ALL_MEMORY
- - -
-
-
-
2019-03-08
Alexander Potapenko
New
x86/cpufeature: Remove __pure attribute to _static_cpu_has()
x86/cpufeature: Remove __pure attribute to _static_cpu_has()
- - -
-
-
-
2019-03-07
Borislav Petkov
New
[1/1] RFC: initmem: introduce CONFIG_INIT_ALL_MEMORY and CONFIG_INIT_ALL_STACK
RFC: introduce CONFIG_INIT_ALL_MEMORY
- - -
-
-
-
2019-03-07
Alexander Potapenko
New
[1/1] smack: removal of global rule list
[1/1] smack: removal of global rule list
- - -
-
-
-
2019-03-07
Vishal Goel
New
«
1
2
...
70
71
72
…
120
121
»