Show patches with: State = Action Required       |   11892 patches
« 1 2 3 4118 119 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v2,2/2] lsm: Add/fix return values in lsm_hooks.h and fix formatting lsm: Improve LSM hooks documentation - - - --- 2022-11-28 Roberto Sassu New
[v2,1/2] lsm: Clarify documentation of vm_enough_memory hook lsm: Improve LSM hooks documentation - - - --- 2022-11-28 Roberto Sassu New
[-next] selftests/landlock: Fix selftest ptrace_test run fail [-next] selftests/landlock: Fix selftest ptrace_test run fail - - - --- 2022-11-28 limin New
[v5] evm: Correct inode_init_security hooks behaviors [v5] evm: Correct inode_init_security hooks behaviors - - - --- 2022-11-25 Nicolas Bouchinet New
ima: Fix hash dependency to correct algorithm ima: Fix hash dependency to correct algorithm - - - --- 2022-11-25 Tianjia Zhang New
[v3,9/9] LSM: selftests for Linux Security Module infrastructure syscalls LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,8/9] LSM: wireup Linux Security Module syscalls LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,7/9] LSM: lsm_set_self_attr syscall for LSM self attributes LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,6/9] LSM: Create lsm_module_list system call LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,5/9] LSM: lsm_get_self_attr syscall for LSM self attributes LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,4/9] proc: Use lsmids instead of lsm names for attrs LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,3/9] LSM: Maintain a table of LSM attribute data LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,2/9] LSM: Identify the process attributes for each module LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v3,1/9] LSM: Identify modules by more than name LSM: Three basic syscalls - - - --- 2022-11-23 Casey Schaufler New
[v6,6/6] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu New
[v6,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu New
[v6,4/6] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu New
[v6,3/6] security: Remove security_old_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu New
[v6,2/6] ocfs2: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu New
[v6,1/6] reiserfs: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu New
[v5,6/6] evm: Support multiple LSMs providing an xattr evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu New
[v5,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu New
[v5,4/6] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu New
[v5,3/6] security: Remove security_old_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu New
[v5,2/6] ocfs2: Switch to security_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu New
[v5,1/6] reiserfs: Switch to security_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2022-11-23 Roberto Sassu New
[v10,6/7] doc: trusted-encrypted: describe new CAAM trust source KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 - --- 2022-05-13 Ahmad Fatoum New
[v10,5/7] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 5 --- 2022-05-13 Ahmad Fatoum New
[v10,4/7] crypto: caam - add in-kernel interface for blob generator KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 5 --- 2022-05-13 Ahmad Fatoum New
[v10,3/7] crypto: caam - determine whether CAAM supports blob encap/decap KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 1 1 --- 2022-05-13 Ahmad Fatoum New
[v10,2/7] KEYS: trusted: allow use of kernel RNG for key material KEYS: trusted: Introduce support for NXP CAAM-based trusted keys 2 3 3 --- 2022-05-13 Ahmad Fatoum New
[v10,1/7] KEYS: trusted: allow use of TEE as backend without TCG_TPM support KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 5 --- 2022-05-13 Ahmad Fatoum New
[v2] landlock: Explain how to support Landlock [v2] landlock: Explain how to support Landlock - 1 - --- 2022-05-13 Mickaël Salaün New
[v4] x86/kexec: Carry forward IMA measurement log on kexec [v4] x86/kexec: Carry forward IMA measurement log on kexec - 1 - --- 2022-05-12 Jonathan McDowell New
[v1] landlock: Explain how to support Landlock [v1] landlock: Explain how to support Landlock - - - --- 2022-05-12 Mickaël Salaün New
[-next] apparmor: Fix aa_str_perms() kernel-doc comment [-next] apparmor: Fix aa_str_perms() kernel-doc comment 1 - - --- 2022-05-12 Yang Li New
[v8,4/4] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verification Untitled series #640875 2 1 - --- 2022-05-12 Coiby Xu New
[v8,3/4] arm64: kexec_file: use more system keyrings to verify kernel image signature Untitled series #640875 2 - - --- 2022-05-12 Coiby Xu New
[v8,2/4] kexec, KEYS: make the code in bzImage64_verify_sig generic Untitled series #640875 1 1 - --- 2022-05-12 Coiby Xu New
loadpin: stop using bdevname loadpin: stop using bdevname - - - --- 2022-05-12 Christoph Hellwig New
[v7,4/4] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verification Untitled series #640797 1 1 - --- 2022-05-12 Coiby Xu New
[v7,3/4] arm64: kexec_file: use more system keyrings to verify kernel image signature Untitled series #640797 2 - - --- 2022-05-12 Coiby Xu New
[v7,2/4] kexec, KEYS: make the code in bzImage64_verify_sig generic Untitled series #640797 1 1 - --- 2022-05-12 Coiby Xu New
[v3] x86/kexec: Carry forward IMA measurement log on kexec [v3] x86/kexec: Carry forward IMA measurement log on kexec - - - --- 2022-05-11 Jonathan McDowell New
[v2] big_keys: Use struct for internal payload [v2] big_keys: Use struct for internal payload - - - --- 2022-05-10 Kees Cook New
big_keys: Use struct for internal payload big_keys: Use struct for internal payload - - - --- 2022-05-08 Kees Cook New
[v3,12/12] landlock: Add design choices documentation for filesystem access rights Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,11/12] landlock: Document good practices about filesystem policies Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,10/12] landlock: Document LANDLOCK_ACCESS_FS_REFER and ABI versioning Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,09/12] samples/landlock: Add support for file reparenting Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,08/12] selftests/landlock: Add 11 new test suites dedicated to file reparenting Landlock: file linking and renaming support - - - --- 2022-05-06 Mickaël Salaün New
[v3,07/12] landlock: Add support for file reparenting with LANDLOCK_ACCESS_FS_REFER Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,06/12] LSM: Remove double path_rename hook calls for RENAME_EXCHANGE Landlock: file linking and renaming support 2 1 - --- 2022-05-06 Mickaël Salaün New
[v3,05/12] landlock: Move filesystem helpers and add a new one Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,04/12] landlock: Fix same-layer rule unions Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,03/12] landlock: Create find_rule() from unmask_layers() Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,02/12] landlock: Reduce the maximum number of layers to 16 Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v3,01/12] landlock: Define access_mask_t to enforce a consistent access mask size Landlock: file linking and renaming support - 1 - --- 2022-05-06 Mickaël Salaün New
[v2,10/10] selftests/landlock: Test landlock_create_ruleset(2) argument check ordering Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,09/10] landlock: Change landlock_restrict_self(2) check ordering Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,08/10] landlock: Change landlock_add_rule(2) argument check ordering Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,07/10] selftests/landlock: Add tests for O_PATH Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,06/10] selftests/landlock: Fully test file rename with "remove" access Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,05/10] selftests/landlock: Extend access right tests to directories Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,04/10] selftests/landlock: Add tests for unknown access rights Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,03/10] selftests/landlock: Extend tests for minimal valid attribute size Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,02/10] selftests/landlock: Make tests build with old libc Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v2,01/10] landlock: Fix landlock_add_rule(2) documentation Minor Landlock fixes and new tests - - - --- 2022-05-06 Mickaël Salaün New
[v1,7/7] samples/landlock: Format with clang-format Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,6/7] samples/landlock: Add clang-format exceptions Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,5/7] selftests/landlock: Format with clang-format Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,4/7] selftests/landlock: Normalize array assignment Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,3/7] selftests/landlock: Add clang-format exceptions Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,2/7] landlock: Format with clang-format Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v1,1/7] landlock: Add clang-format exceptions Landlock: Clean up coding style with clang-format - - - --- 2022-05-06 Mickaël Salaün New
[v9,7/7] MAINTAINERS: add KEYS-TRUSTED-CAAM KEYS: trusted: Introduce support for NXP CAAM-based trusted keys 1 1 - --- 2022-05-06 Ahmad Fatoum New
[v9,6/7] doc: trusted-encrypted: describe new CAAM trust source KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 - --- 2022-05-06 Ahmad Fatoum New
[v9,5/7] KEYS: trusted: Introduce support for NXP CAAM-based trusted keys KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 3 --- 2022-05-06 Ahmad Fatoum New
[v9,4/7] crypto: caam - add in-kernel interface for blob generator KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 2 3 --- 2022-05-06 Ahmad Fatoum New
[v9,3/7] crypto: caam - determine whether CAAM supports blob encap/decap KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - - - --- 2022-05-06 Ahmad Fatoum New
[v9,2/7] KEYS: trusted: allow use of kernel RNG for key material KEYS: trusted: Introduce support for NXP CAAM-based trusted keys 2 3 1 --- 2022-05-06 Ahmad Fatoum New
[v9,1/7] KEYS: trusted: allow use of TEE as backend without TCG_TPM support KEYS: trusted: Introduce support for NXP CAAM-based trusted keys - 3 3 --- 2022-05-06 Ahmad Fatoum New
[3/3] ima: Append line feed to ima/binary_runtime_measurements Append line feed to files in securityfs - - - --- 2022-05-05 wangweiyang New
[2/3] evm: Append line feed to /sys/kernel/security/evm Append line feed to files in securityfs - - - --- 2022-05-05 wangweiyang New
[1/3] securityfs: Append line feed to /sys/kernel/security/lsm Append line feed to files in securityfs - - - --- 2022-05-05 wangweiyang New
[05/10] security: keys: trusted: Verify creation data Encrypted Hibernation - - - --- 2022-05-04 Evan Green New
[04/10] security: keys: trusted: Allow storage of PCR values in creation data Encrypted Hibernation - - - --- 2022-05-04 Evan Green New
[03/10] security: keys: trusted: Parse out individual components of the key blob Encrypted Hibernation - - - --- 2022-05-04 Evan Green New
[v3,3/3] dm: verity-loadpin: Use CONFIG_SECURITY_LOADPIN_VERITY for conditional compilation LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-05-04 Matthias Kaehlcke New
[v3,2/3] LoadPin: Enable loading from trusted dm-verity devices LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-05-04 Matthias Kaehlcke New
[v3,1/3] dm: Add verity helpers for LoadPin LoadPin: Enable loading from trusted dm-verity devices - - - --- 2022-05-04 Matthias Kaehlcke New
[32/32] esas2r: Use __mem_to_flex() with struct atto_ioctl Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[31/32] xenbus: Use mem_to_flex_dup() with struct read_buffer Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[30/32] usb: gadget: f_fs: Use mem_to_flex_dup() with struct ffs_buffer Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[29/32] xtensa: Use mem_to_flex_dup() with struct property Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[28/32] selinux: Use mem_to_flex_dup() with xfrm and sidtab Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[27/32] KEYS: Use mem_to_flex_dup() with struct user_key_payload Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[26/32] ima: Use mem_to_flex_dup() with struct modsig Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[25/32] Drivers: hv: utils: Use mem_to_flex_dup() with struct cn_msg Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
[24/32] IB/hfi1: Use mem_to_flex_dup() for struct tid_rb_node Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook New
« 1 2 3 4118 119 »