Show patches with: Archived = No       |   4922 patches
« 1 2 ... 33 34 3549 50 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RESEND,bpf-next,16/18] bpf: consistenly use BPF token throughout BPF verifier logic BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,15/18] bpf: take into account BPF token when fetching helper protos BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,14/18] bpf: add BPF token support to BPF_PROG_LOAD command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,13/18] bpf: keep BPF_PROG_LOAD permission checks clear of validations BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,12/18] selftests/bpf: add BPF token-enabled BPF_BTF_LOAD selftest BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,11/18] libbpf: add BPF token support to bpf_btf_load() API BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,10/18] bpf: add BPF token support to BPF_BTF_LOAD command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,09/18] selftests/bpf: add BPF token-enabled test for BPF_MAP_CREATE command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,08/18] libbpf: add BPF token support to bpf_map_create() API BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,07/18] bpf: add BPF token support to BPF_MAP_CREATE command BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,06/18] bpf: centralize permissions checks for all BPF map types BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,05/18] bpf: inline map creation logic in map_create() function BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,04/18] bpf: move unprivileged checks into map_create() and bpf_prog_load() BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,03/18] selftests/bpf: add BPF_TOKEN_CREATE test BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,02/18] libbpf: add bpf_token_create() API BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[RESEND,bpf-next,01/18] bpf: introduce BPF token object BPF token - - - --- 2023-06-02 Andrii Nakryiko pcmoore Superseded
[GIT,PULL] Asymmetric keys fix for v6.4-rc5 [GIT,PULL] Asymmetric keys fix for v6.4-rc5 2 - - --- 2023-06-02 Roberto Sassu Handled Elsewhere
capability: erase checker warnings about struct __user_cap_data_struct capability: erase checker warnings about struct __user_cap_data_struct 1 - - --- 2023-06-02 GONG, Ruiqi pcmoore Accepted
[GIT,PULL] SELinux fixes for v6.4 (#1) [GIT,PULL] SELinux fixes for v6.4 (#1) - - - --- 2023-06-02 Paul Moore Handled Elsewhere
[v2] integrity: Fix possible multiple allocation in integrity_inode_get() [v2] integrity: Fix possible multiple allocation in integrity_inode_get() - - - --- 2023-06-01 tianjia.zhang Handled Elsewhere
apparmor: remove unused macro apparmor: remove unused macro 1 - - --- 2023-05-31 GONG, Ruiqi Handled Elsewhere
LSM: Infrastructure management of the sock LSM: Infrastructure management of the sock - - - --- 2023-05-31 GONG, Ruiqi pcmoore Rejected
[2/2] sysctl: move security keys sysctl registration to its own file sysctl: move umh and keys sysctls 2 1 - --- 2023-05-30 Luis Chamberlain pcmoore Handled Elsewhere
[1/2] sysctl: move umh sysctl registration to its own file sysctl: move umh and keys sysctls 1 - - --- 2023-05-30 Luis Chamberlain Handled Elsewhere
integrity: Fix possible multiple allocation in integrity_inode_get() integrity: Fix possible multiple allocation in integrity_inode_get() - - - --- 2023-05-30 tianjia.zhang Handled Elsewhere
capabilities: use logical OR capabilities: use logical OR - - - --- 2023-05-29 Min-Hua Chen pcmoore Rejected
lsm: fix a number of misspellings lsm: fix a number of misspellings - 1 - --- 2023-05-25 Paul Moore pcmoore Accepted
[v2,3/3] integrity: Remove EXPERIMENTAL from Kconfig Add digitalSignature enforcement keyring restrictions 1 1 - --- 2023-05-22 Eric Snowberg pcmoore Handled Elsewhere
[v2,2/3] integrity: Enforce digitalSignature usage in the ima and evm keyrings Add digitalSignature enforcement keyring restrictions 1 - - --- 2023-05-22 Eric Snowberg pcmoore Handled Elsewhere
[v2,1/3] KEYS: DigitalSignature link restriction Add digitalSignature enforcement keyring restrictions - 1 - --- 2023-05-22 Eric Snowberg pcmoore Handled Elsewhere
[v2] lsm: adds process attribute getter for Landlock [v2] lsm: adds process attribute getter for Landlock - - - --- 2023-05-18 Shervin Oloumi pcmoore Handled Elsewhere
KEYS: Replace all non-returning strlcpy with strscpy KEYS: Replace all non-returning strlcpy with strscpy - 2 - --- 2023-05-18 Azeem Shaikh Handled Elsewhere
[v6,3/6] mm/gup: remove vmas parameter from get_user_pages_remote() Untitled series #748630 1 3 - --- 2023-05-17 Lorenzo Stoakes Handled Elsewhere
[v11,12/12] landlock: Document Landlock's network support Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,11/12] samples/landlock: Add network demo Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,10/12] selftests/landlock: Add 11 new test suites dedicated to network Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,09/12] selftests/landlock: Share enforce_ruleset() Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,08/12] landlock: Add network rules and TCP hooks support Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,07/12] landlock: Refactor landlock_add_rule() syscall Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,06/12] landlock: Refactor layer helpers Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,05/12] landlock: Move and rename layer helpers Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,04/12] landlock: Refactor merge/inherit_ruleset functions Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,03/12] landlock: Refactor landlock_find_rule/insert_rule Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,02/12] landlock: Allow filesystem layout changes for domains without such rule type Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v11,01/12] landlock: Make ruleset's access masks more generic Network support for Landlock - - - --- 2023-05-15 Konstantin Meskhidze (A) Handled Elsewhere
[v5,3/6] mm/gup: remove vmas parameter from get_user_pages_remote() Untitled series #747370 1 3 - --- 2023-05-14 Lorenzo Stoakes Handled Elsewhere
apparmor: aa_buffer: Convert 1-element array to flexible array apparmor: aa_buffer: Convert 1-element array to flexible array 1 - - --- 2023-05-11 Kees Cook Handled Elsewhere
[RFC,v2] fs/xattr: add *at family syscalls [RFC,v2] fs/xattr: add *at family syscalls 1 - - --- 2023-05-11 Christian Göttsche Handled Elsewhere
[v4,3/9] capability: use new capable_any functionality [v4,1/9] capability: introduce new capable flag NODENYAUDIT 1 - - --- 2023-05-11 Christian Göttsche pcmoore Superseded
[v4,2/9] capability: add any wrapper to test for multiple caps with exactly one audit message [v4,1/9] capability: introduce new capable flag NODENYAUDIT - - - --- 2023-05-11 Christian Göttsche pcmoore Superseded
[v4,1/9] capability: introduce new capable flag NODENYAUDIT [v4,1/9] capability: introduce new capable flag NODENYAUDIT - 1 - --- 2023-05-11 Christian Göttsche pcmoore Superseded
security: keys: perform capable check only on privileged operations security: keys: perform capable check only on privileged operations 1 - - --- 2023-05-11 Christian Göttsche Handled Elsewhere
[2/2] block: use block_admin_capable() for Persistent Reservations capability: Introduce CAP_BLOCK_ADMIN - - - --- 2023-05-11 tianjia.zhang pcmoore Rejected
[1/2] capability: Introduce CAP_BLOCK_ADMIN capability: Introduce CAP_BLOCK_ADMIN - - - --- 2023-05-11 tianjia.zhang pcmoore Rejected
[-next] capability: fix kernel-doc warnings in capability.c [-next] capability: fix kernel-doc warnings in capability.c 1 - - --- 2023-05-11 cuigaosheng pcmoore Accepted
[3/3] integrity: Remove EXPERIMENTAL from Kconfig Add digitalSignature enforcement keyring restrictions 1 1 - --- 2023-05-08 Eric Snowberg Handled Elsewhere
[2/3] integrity: Enforce digitalSignature usage in the ima and evm keyrings Add digitalSignature enforcement keyring restrictions 1 - - --- 2023-05-08 Eric Snowberg Handled Elsewhere
[1/3] KEYS: DigitalSignature link restriction Add digitalSignature enforcement keyring restrictions - 1 - --- 2023-05-08 Eric Snowberg Handled Elsewhere
[RFC,2/2] smack: Record transmuting in smk_transmuted [RFC,1/2] smack: Retrieve transmuting information in smack_inode_getsecurity() - - - --- 2023-05-08 Roberto Sassu Handled Elsewhere
[RFC,1/2] smack: Retrieve transmuting information in smack_inode_getsecurity() [RFC,1/2] smack: Retrieve transmuting information in smack_inode_getsecurity() - - - --- 2023-05-08 Roberto Sassu Handled Elsewhere
[v1,9/9] virt: Add Heki KUnit tests Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,8/9] KVM: x86/mmu: Enable guests to lock themselves thanks to MBEC Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,7/9] KVM: VMX: Add MBEC support Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,6/9] KVM: x86: Add Heki hypervisor support Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,5/9] KVM: x86: Add new hypercall to lock control registers Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,4/9] KVM: x86: Add new hypercall to set EPT permissions Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,3/9] virt: Implement Heki common code Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,2/9] KVM: x86/mmu: Add support for prewrite page tracking Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[v1,1/9] KVM: x86: Add kvm_x86_ops.fault_gva() Hypervisor-Enforced Kernel Integrity - - - --- 2023-05-05 Mickaël Salaün pcmoore Handled Elsewhere
[-next,2/2] lsm: Change inode_setattr hook to take struct path argument lsm: Change inode_setattr() to take struct - - - --- 2023-05-05 Xiu Jianfeng pcmoore Rejected
[-next,1/2] fs: Change notify_change() to take struct path argument lsm: Change inode_setattr() to take struct 1 - - --- 2023-05-05 Xiu Jianfeng pcmoore Rejected
[RFC,16/16] nvme: Support atomic writes block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,15/16] scsi: scsi_debug: Atomic write support block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,14/16] scsi: sd: Add WRITE_ATOMIC_16 support block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,13/16] scsi: sd: Support reading atomic properties from block limits VPD block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,12/16] xfs: Add support for fallocate2 block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,11/16] fs: iomap: Atomic write support block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,10/16] block: Add fops atomic write support block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,09/16] block: Add blk_validate_atomic_write_op() block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,08/16] block: Add support for atomic_write_unit block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,07/16] block: Add bdev_find_max_atomic_write_alignment() block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,06/16] block: Limit atomic writes according to bio and queue limits block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,05/16] block: Add REQ_ATOMIC flag block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,04/16] fs: Add RWF_ATOMIC and IOCB_ATOMIC flags for atomic write support block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,03/16] xfs: Support atomic write for statx block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,02/16] fs/bdev: Add atomic write support info to statx block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[RFC,01/16] block: Add atomic write operations to request_queue limits block atomic writes - - - --- 2023-05-03 John Garry Handled Elsewhere
[v2] LSM: SafeSetID: fix UID printed instead of GID [v2] LSM: SafeSetID: fix UID printed instead of GID - 1 - --- 2023-05-03 Alexander Mikhalitsyn pcmoore Accepted
[RFC,4/4] samples/landlock: Add support for LANDLOCK_ACCESS_FS_IOCTL Landlock: ioctl support - - - --- 2023-05-02 Günther Noack Handled Elsewhere
[RFC,3/4] selftests/landlock: Test ioctl support Landlock: ioctl support - - - --- 2023-05-02 Günther Noack Handled Elsewhere
[RFC,2/4] landlock: Add LANDLOCK_ACCESS_FS_IOCTL access right Landlock: ioctl support - - - --- 2023-05-02 Günther Noack Handled Elsewhere
[RFC,1/4] landlock: Increment Landlock ABI version to 4 Landlock: ioctl support - - - --- 2023-05-02 Günther Noack Handled Elsewhere
LSM: SafeSetID: fix UID printed instead of GID LSM: SafeSetID: fix UID printed instead of GID - - - --- 2023-05-02 Alexander Mikhalitsyn Superseded
[v10,11/11] LSM: selftests for Linux Security Module syscalls [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore Superseded
[v10,10/11] SELinux: Add selfattr hooks [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore Superseded
[v10,09/11] AppArmor: Add selfattr hooks [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore Superseded
[v10,08/11] Smack: implement setselfattr and getselfattr hooks [v10,01/11] LSM: Identify modules by more than name - - - --- 2023-04-28 Casey Schaufler pcmoore Superseded
[v10,07/11] LSM: Helpers for attribute names and filling lsm_ctx [v10,01/11] LSM: Identify modules by more than name - 1 - --- 2023-04-28 Casey Schaufler pcmoore Superseded
[v10,06/11] LSM: wireup Linux Security Module syscalls [v10,01/11] LSM: Identify modules by more than name 2 1 - --- 2023-04-28 Casey Schaufler pcmoore Superseded
[v10,05/11] LSM: Create lsm_list_modules system call [v10,01/11] LSM: Identify modules by more than name - 2 - --- 2023-04-28 Casey Schaufler pcmoore Superseded
« 1 2 ... 33 34 3549 50 »