Show patches with: Archived = No       |   3842 patches
« 1 2 3 438 39 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[04/13] Add TSEM master header file. Implement Trusted Security Event Modeling. - - - --- 2023-07-10 Dr. Greg pcmoore Changes Requested
[04/14] Implement CAP_TRUST capability. Implement Trusted Security Event Modeling. - - - --- 2023-02-04 Dr. Greg pcmoore Changes Requested
[04/16] capability: use vfsuid_t for vfs_caps rootids fs: use type-safe uid representation for filesystem capabilities 1 - - --- 2023-11-29 Seth Forshee pcmoore Changes Requested
[04/22] lsm: move the inode hook comments to security/security.c Move LSM hook comments into security/security.c - - - --- 2023-02-17 Paul Moore pcmoore Accepted
[05/10] CaitSith: Add LSM interface management file. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[05/10] drivers: use new capable_any functionality [01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY 2 - - --- 2024-03-15 Christian Göttsche pcmoore New
[05/11] Creation of "check_vmflags" LSM hook - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[05/11] loadpin: simplify sysctls use with register_sysctl() sysctl: deprecate register_sysctl_paths() 1 1 - --- 2023-03-02 Luis Chamberlain Handled Elsewhere
[05/11] neighbour: constify ctl_table arguments of utility function sysctl: treewide: constify ctl_table argument of sysctl handlers - - - --- 2024-03-15 Thomas Weißschuh pcmoore Handled Elsewhere
[05/11] selinux: use dlist for isec inode list vfs: inode cache scalability improvements 1 - - --- 2023-12-06 Dave Chinner pcmoore Handled Elsewhere
[05/13] Add primary TSEM implementation file. Implement Trusted Security Event Modeling. - - - --- 2023-07-10 Dr. Greg pcmoore Changes Requested
[05/14] Add TSEM master header file. Implement Trusted Security Event Modeling. - - - --- 2023-02-04 Dr. Greg pcmoore Changes Requested
[05/16] capability: provide helpers for converting between xattrs and vfs_caps fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee pcmoore Changes Requested
[05/22] lsm: move the kernfs hook comments to security/security.c Move LSM hook comments into security/security.c - - - --- 2023-02-17 Paul Moore pcmoore Accepted
[06/10] fs: use new capable_any functionality [01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY 1 - - --- 2024-03-15 Christian Göttsche pcmoore New
[06/11] ipv4/sysctl: constify ctl_table arguments of utility functions sysctl: treewide: constify ctl_table argument of sysctl handlers - - - --- 2024-03-15 Thomas Weißschuh pcmoore Handled Elsewhere
[06/11] S.A.R.A. cred blob management - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[06/11] vfs: factor out inode hash head calculation vfs: inode cache scalability improvements 1 - - --- 2023-12-06 Dave Chinner pcmoore Handled Elsewhere
[06/11] yama: simplfy sysctls with register_sysctl() sysctl: deprecate register_sysctl_paths() 1 - - --- 2023-03-02 Luis Chamberlain Handled Elsewhere
[06/13] Add root domain trust implementation. Implement Trusted Security Event Modeling. - - - --- 2023-07-10 Dr. Greg pcmoore Changes Requested
[06/14] Add primary TSEM implementation file. Implement Trusted Security Event Modeling. - - - --- 2023-02-04 Dr. Greg pcmoore Changes Requested
[06/16] capability: provide a helper for converting vfs_caps to xattr for userspace fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee pcmoore Changes Requested
[06/22] lsm: move the file hook comments to security/security.c Move LSM hook comments into security/security.c - - - --- 2023-02-17 Paul Moore pcmoore Accepted
[07/10] CaitSith: Add permission checking functions. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[07/10] kernel: use new capable_any functionality [01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY - 2 - --- 2024-03-15 Christian Göttsche pcmoore New
[07/11] hlist-bl: add hlist_bl_fake() vfs: inode cache scalability improvements - - - --- 2023-12-06 Dave Chinner pcmoore Handled Elsewhere
[07/11] ipv6/addrconf: constify ctl_table arguments of utility functions sysctl: treewide: constify ctl_table argument of sysctl handlers - - - --- 2024-03-15 Thomas Weißschuh pcmoore Handled Elsewhere
[07/11] S.A.R.A. WX Protection - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[07/11] seccomp: simplify sysctls with register_sysctl_init() sysctl: deprecate register_sysctl_paths() 1 - - --- 2023-03-02 Luis Chamberlain Handled Elsewhere
[07/11] sysctl: Add size to register_sysctl Untitled series #759009 - - - --- 2023-06-21 Joel Granados Handled Elsewhere
[07/13] Implement TSEM control plane. Implement Trusted Security Event Modeling. - - - --- 2023-07-10 Dr. Greg pcmoore Changes Requested
[07/14] Add root domain trust implementation. Implement Trusted Security Event Modeling. - - - --- 2023-02-04 Dr. Greg pcmoore Changes Requested
[07/16] fs: add inode operations to get/set/remove fscaps fs: use type-safe uid representation for filesystem capabilities - 1 - --- 2023-11-29 Seth Forshee pcmoore Changes Requested
[07/22] lsm: move the task hook comments to security/security.c Move LSM hook comments into security/security.c - - - --- 2023-02-17 Paul Moore pcmoore Accepted
[08/10] CaitSith: Add pathname calculation functions. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[08/10] net: use new capable_any functionality [01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY - 1 - --- 2024-03-15 Christian Göttsche pcmoore New
[08/11] Creation of "pagefault_handler_x86" LSM hook - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[08/11] ipv6/ndisc: constify ctl_table arguments of utility function sysctl: treewide: constify ctl_table argument of sysctl handlers - - - --- 2024-03-15 Thomas Weißschuh pcmoore Handled Elsewhere
[08/11] kernel: pid_namespace: simplify sysctls with register_sysctl() sysctl: deprecate register_sysctl_paths() 1 - - --- 2023-03-02 Luis Chamberlain Handled Elsewhere
[08/11] sysctl: Add size to register_sysctl_init Untitled series #759009 - - - --- 2023-06-21 Joel Granados Handled Elsewhere
[08/11] vfs: inode cache conversion to hash-bl vfs: inode cache scalability improvements - 1 - --- 2023-12-06 Dave Chinner pcmoore Handled Elsewhere
[08/13] Add namespace implementation. Implement Trusted Security Event Modeling. - - - --- 2023-07-10 Dr. Greg pcmoore Changes Requested
[08/14] Implement TSEM control plane. Implement Trusted Security Event Modeling. - - - --- 2023-02-04 Dr. Greg pcmoore Changes Requested
[08/16] fs: add vfs_get_fscaps() fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee pcmoore Changes Requested
[08/22] lsm: move the netlink hook comments to security/security.c Move LSM hook comments into security/security.c - - - --- 2023-02-17 Paul Moore pcmoore Accepted
[09/10] bpf: use new capable_any functionality [01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY 1 - - --- 2024-03-15 Christian Göttsche pcmoore New
[09/10] CaitSith: Add garbage collector functions. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[09/11] fs-verity: simplify sysctls with register_sysctl() sysctl: deprecate register_sysctl_paths() - - - --- 2023-03-02 Luis Chamberlain Handled Elsewhere
[09/11] hash-bl: explicitly initialise hash-bl heads vfs: inode cache scalability improvements - - - --- 2023-12-06 Dave Chinner pcmoore Handled Elsewhere
[09/11] ipvs: constify ctl_table arguments of utility functions sysctl: treewide: constify ctl_table argument of sysctl handlers - - - --- 2024-03-15 Thomas Weißschuh pcmoore Handled Elsewhere
[09/11] sysctl: Remove the end element in sysctl table arrays Untitled series #759009 - - - --- 2023-06-21 Joel Granados Handled Elsewhere
[09/11] Trampoline emulation - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[09/13] Add security event description export facility. Implement Trusted Security Event Modeling. - - - --- 2023-07-10 Dr. Greg pcmoore Changes Requested
[09/14] Add namespace implementation. Implement Trusted Security Event Modeling. - - - --- 2023-02-04 Dr. Greg pcmoore Changes Requested
[09/16] fs: add vfs_set_fscaps() fs: use type-safe uid representation for filesystem capabilities - - - --- 2023-11-29 Seth Forshee pcmoore Changes Requested
[09/22] lsm: move the AF_UNIX hook comments to security/security.c Move LSM hook comments into security/security.c - - - --- 2023-02-17 Paul Moore pcmoore Accepted
[09/29] security: add set acl hook acl: add vfs posix acl api - - - --- 2022-09-22 Christian Brauner pcmoore Superseded
[1/1,RFC] SELINUX: Remove obsolete deferred inode security init list. SELINUX: Remove obsolete deferred inode security - - - --- 2022-12-13 Alexander Kozhevnikov Handled Elsewhere
[1/1] Add CONFIG_SECURITY_SELINUX_PERMISSIVE_DONTAUDIT Add CONFIG_SECURITY_SELINUX_PERMISSIVE_DONTAUDIT - - 2 --- 2022-09-21 Jeff Xu Handled Elsewhere
[1/1] apparmor: cache buffers on percpu list if there is lock contention Cover letter - - - --- 2023-02-16 Anil Altinay Handled Elsewhere
[1/1] efi: Correct Macmini capitalisation in uefi cert quirk [1/1] efi: Correct Macmini capitalisation in uefi cert quirk - - 1 --- 2022-08-06 Orlando Chamberlain Handled Elsewhere
[1/1] keys/keyrings: Fix typo in string [1/1] keys/keyrings: Fix typo in string - - - --- 2022-07-15 XU pengfei Handled Elsewhere
[1/1] keys/request_key_auth.c: Use strscpy instead of strlcpy [1/1] keys/request_key_auth.c: Use strscpy instead of strlcpy - 1 - --- 2022-09-05 Petr Vorel Handled Elsewhere
[1/1] lsm: adds process attribute getter for Landlock process attribute support for Landlock - - - --- 2023-03-02 Shervin Oloumi Handled Elsewhere
[1/1] mm: change inlined allocation helpers to account at the call site [1/1] mm: change inlined allocation helpers to account at the call site - - - --- 2024-04-04 Suren Baghdasaryan Handled Elsewhere
[1/1] Modify macro NETLBL_CATMAP_MAPTYPE to define a type using typedef [1/1] Modify macro NETLBL_CATMAP_MAPTYPE to define a type using typedef - - - --- 2024-02-02 George Guo pcmoore Handled Elsewhere
[1/1] security: avoid a leak in securityfs_remove() [1/1] security: avoid a leak in securityfs_remove() - - - --- 2022-06-02 Yuanjun Gong pcmoore Rejected
[1/1] smack_lsm: remove unnecessary type casting [1/1] smack_lsm: remove unnecessary type casting - - - --- 2022-10-26 XU pengfei Handled Elsewhere
[1/2] apparmor: rename the data start flag inside verify_header apparmor: fix namespace check in serialized stream headers from the same policy load - - - --- 2024-01-13 Fedor Pchelkin Handled Elsewhere
[1/2] audit: introduce a struct to represent an audit timestamp Provide matching audit timestamp in the SELinux AVC trace event - - - --- 2022-12-19 Ondrej Mosnacek pcmoore Handled Elsewhere
[1/2] capability: add cap_isidentical [1/2] capability: add cap_isidentical - 1 - --- 2023-01-14 Mateusz Guzik pcmoore Superseded
[1/2] capability: Introduce CAP_BLOCK_ADMIN capability: Introduce CAP_BLOCK_ADMIN - - - --- 2023-05-11 tianjia.zhang pcmoore Rejected
[1/2] cipso: fix total option length computation cipso: make cipso_v4_skbuff_delattr() fully remove the CIPSO options - - - --- 2024-04-16 Ondrej Mosnacek pcmoore Under Review
[1/2] evm: Fix build warnings [1/2] evm: Fix build warnings - - - --- 2023-06-06 Roberto Sassu Handled Elsewhere
[1/2] fs: convert simple_xattrs to RCU list fs: fix capable() call in simple_xattr_list() - - - --- 2022-09-01 Ondrej Mosnacek pcmoore Handled Elsewhere
[1/2] fs/exec: Explicitly unshare fs_struct on exec [1/2] fs/exec: Explicitly unshare fs_struct on exec - - - --- 2022-10-06 Kees Cook Handled Elsewhere
[1/2] ima: Add machine keyring reference to IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY ima: IMA_KEYRINGS_PERMIT_SIGNED_BY_BUILTIN_OR_SECONDARY cleanup - - - --- 2023-11-02 Eric Snowberg Handled Elsewhere
[1/2] landlock: Add hook on socket_listen() Forbid illegitimate binding via listen(2) - 1 - --- 2024-04-08 Ivanov Mikhail pcmoore New
[1/2] landlock: Simplify current_check_access_socket() [1/2] landlock: Simplify current_check_access_socket() - - - --- 2024-03-07 Mickaël Salaün Handled Elsewhere
[1/2] landlock: Support truncate(2). landlock: truncate(2) support - - - --- 2022-07-07 Günther Noack Handled Elsewhere
[1/2] lsm: change 'target' parameter to 'const' in security_capget LSM hook lsm: change security_capget LSM hook - - - --- 2023-07-31 Khadija Kamran pcmoore Changes Requested
[1/2] lsm: fix default return value for vm_enough_memory lsm: fix default return values for some hooks - - - --- 2023-10-31 Ondrej Mosnacek pcmoore Accepted
[1/2] lsm: Fix description of fs_context_parse_param [1/2] lsm: Fix description of fs_context_parse_param - - - --- 2022-12-09 Roberto Sassu pcmoore Accepted
[1/2] powerpc/pseries: block untrusted device tree changes when locked down powerpc/pseries: restrict error injection and DT changes when locked down - - - --- 2022-09-22 Nathan Lynch pcmoore Superseded
[1/2] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - - - --- 2022-06-21 Frederick Lawler Handled Elsewhere
[1/2] security, lsm: Introduce security_mptcp_add_subflow() lsm: introduce and use security_mptcp_add_subflow() - - - --- 2022-12-14 Paolo Abeni Superseded
[1/2] security: Add LSM hook to setgroups() syscall [1/2] security: Add LSM hook to setgroups() syscall - - - --- 2022-06-13 Micah Morton Superseded
[1/2] security: Handle dentries without inode in security_path_post_mknod() [1/2] security: Handle dentries without inode in security_path_post_mknod() 2 - - --- 2024-03-29 Roberto Sassu pcmoore Under Review
[1/2] security/keys/secure_key: Adds the secure key support based on CAAM. - 1 - --- 2018-07-20 Udit Agarwal Superseded
[1/2] selftests: landlock: allow other ABI versions selftests: landlock: fix runs on older systems - - - --- 2023-08-09 Andre Przywara Handled Elsewhere
[1/2] selftests/landlock: Redefine TEST_F() as TEST_F_FORK() [1/2] selftests/landlock: Redefine TEST_F() as TEST_F_FORK() - - - --- 2024-02-26 Mickaël Salaün Handled Elsewhere
[1/2] SELinux: Fix lsm_get_self_attr() [1/2] SELinux: Fix lsm_get_self_attr() - - - --- 2024-02-23 Mickaël Salaün pcmoore Accepted
[1/2] sysctl: move umh sysctl registration to its own file sysctl: move umh and keys sysctls 1 - - --- 2023-05-30 Luis Chamberlain Handled Elsewhere
[1/2] yama: document function parameter [1/2] yama: document function parameter - 3 - --- 2024-03-15 Christian Göttsche pcmoore Under Review
[1/3] AppArmor: Fix kernel-doc [1/3] AppArmor: Fix kernel-doc 1 - - --- 2022-10-08 Jiapeng Chong Handled Elsewhere
[1/3] arch/x86: Move struct pci_setup_rom into pci_setup.h arch/x86: Remove unnecessary dependencies on bootparam.h - - - --- 2023-12-06 Thomas Zimmermann Handled Elsewhere
[1/3] fscrypt: destroy keyring after security_sb_delete() Fix crash with fscrypt + Landlock - 1 - --- 2023-03-13 Eric Biggers Handled Elsewhere
[1/3] KEYS: DigitalSignature link restriction Add digitalSignature enforcement keyring restrictions - 1 - --- 2023-05-08 Eric Snowberg Handled Elsewhere
[1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Accepted
[1/3] LSM: add security_bprm_aborting_creds() hook fs/exec: remove current->in_execve flag - - - --- 2024-01-28 Tetsuo Handa pcmoore Superseded
« 1 2 3 438 39 »