Show patches with: State = Action Required       |    Archived = No       |   9125 patches
« 1 2 3 491 92 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v37,15/24] x86/sgx: Enable provisioning for remote attestation Untitled series #347399 1 1 - --- 2020-09-11 Jarkko Sakkinen New
[v37,11/24] x86/sgx: Add SGX enclave driver Untitled series #347399 1 1 7 --- 2020-09-11 Jarkko Sakkinen New
security: keys: Use kvfree_sensitive in a few places security: keys: Use kvfree_sensitive in a few places - - - --- 2020-09-11 Alex Dewar New
socket.7,unix.7: add initial description for SO_PEERSEC socket.7,unix.7: add initial description for SO_PEERSEC - - - --- 2020-09-10 Stephen Smalley New
[RFC,6/6] security/fbfam: Mitigate a fork brute force attack Fork brute force attack mitigation (fbfam) - - - --- 2020-09-10 Kees Cook New
[RFC,5/6] security/fbfam: Detect a fork brute force attack Fork brute force attack mitigation (fbfam) - - - --- 2020-09-10 Kees Cook New
[RFC,4/6] security/fbfam: Add a new sysctl to control the crashing rate threshold Fork brute force attack mitigation (fbfam) - - - --- 2020-09-10 Kees Cook New
[RFC,3/6] security/fbfam: Use the api to manage statistics Fork brute force attack mitigation (fbfam) - - - --- 2020-09-10 Kees Cook New
[RFC,2/6] security/fbfam: Add the api to manage statistics Fork brute force attack mitigation (fbfam) - - - --- 2020-09-10 Kees Cook New
[RFC,1/6] security/fbfam: Add a Kconfig to enable the fbfam feature Fork brute force attack mitigation (fbfam) - - - --- 2020-09-10 Kees Cook New
[[PATCH,V4] ] audit: trigger accompanying records when no rules present [[PATCH,V4] ] audit: trigger accompanying records when no rules present - - - --- 2020-09-10 Richard Guy Briggs New
ima: Use kmemdup rather than kmalloc+memcpy ima: Use kmemdup rather than kmalloc+memcpy - - - --- 2020-09-09 Alex Dewar New
selinux: Add helper functions to get and set checkreqprot selinux: Add helper functions to get and set checkreqprot - - - --- 2020-09-09 Lakshmi Ramasubramanian New
[v2] certs: Add EFI_CERT_X509_GUID support for dbx entries [v2] certs: Add EFI_CERT_X509_GUID support for dbx entries - - - --- 2020-09-09 Eric Snowberg New
[net-next] netlabel: Fix some kernel-doc warnings [net-next] netlabel: Fix some kernel-doc warnings 1 - - --- 2020-09-08 Wang Hai New
[net-next] cipso: fix 'audit_secid' kernel-doc warning in cipso_ipv4.c [net-next] cipso: fix 'audit_secid' kernel-doc warning in cipso_ipv4.c 1 - - --- 2020-09-08 Wang Hai New
[RFC,v8,3/3] selftest/interpreter: Add tests for AT_INTERPRETED enforcing Add support for AT_INTERPRETED (was O_MAYEXEC) - 1 - --- 2020-09-08 Mickaël Salaün New
[RFC,v8,2/3] fs,doc: Enable to configure exec checks for AT_INTERPRETED Add support for AT_INTERPRETED (was O_MAYEXEC) - 1 - --- 2020-09-08 Mickaël Salaün New
[RFC,v8,1/3] fs: Introduce AT_INTERPRETED flag for faccessat2(2) Add support for AT_INTERPRETED (was O_MAYEXEC) - - - --- 2020-09-08 Mickaël Salaün New
SELinux: Measure state and hash of policy using IMA SELinux: Measure state and hash of policy using IMA - - - --- 2020-09-07 Lakshmi Ramasubramanian New
[RFC,6/9] security/fbfam: Mitigate a fork brute force attack [RFC,1/9] security/fbfam: Add a Kconfig to enable the fbfam feature - - - --- 2020-09-06 John Wood New
[RFC,5/9] security/fbfam: Detect a fork brute force attack [RFC,1/9] security/fbfam: Add a Kconfig to enable the fbfam feature - - - --- 2020-09-06 John Wood New
[RFC,4/9] security/fbfam: Add a new sysctl to control the crashing rate threshold [RFC,1/9] security/fbfam: Add a Kconfig to enable the fbfam feature - - - --- 2020-09-06 John Wood New
[RFC,3/9] security/fbfam: Use the api to manage statistics [RFC,1/9] security/fbfam: Add a Kconfig to enable the fbfam feature - - - --- 2020-09-06 John Wood New
[RFC,2/9] security/fbfam: Add the api to manage statistics [RFC,1/9] security/fbfam: Add a Kconfig to enable the fbfam feature - - - --- 2020-09-06 John Wood New
[RFC,1/9] security/fbfam: Add a Kconfig to enable the fbfam feature [RFC,1/9] security/fbfam: Add a Kconfig to enable the fbfam feature - - - --- 2020-09-06 John Wood New
[V2,3/3] integrity: Load certs from the EFI MOK config table integrity: Load certs from EFI MOK config table - - - --- 2020-09-05 Lenny Szubowicz New
[V2,2/3] integrity: Move import of MokListRT certs to a separate routine integrity: Load certs from EFI MOK config table - 1 - --- 2020-09-05 Lenny Szubowicz New
[V2,1/3] efi: Support for MOK variable config table integrity: Load certs from EFI MOK config table - - 1 --- 2020-09-05 Lenny Szubowicz New
[RFC] sched: only issue an audit on privileged operation [RFC] sched: only issue an audit on privileged operation - - - --- 2020-09-04 Christian Göttsche New
[v2,12/12] ima: Don't remove security.ima if file must not be appraised IMA/EVM fixes - 1 - --- 2020-09-04 Roberto Sassu New
[v2,11/12] ima: Introduce template field evmsig and write to field sig as fallback IMA/EVM fixes - - - --- 2020-09-04 Roberto Sassu New
[v2,10/12] ima: Allow imasig requirement to be satisfied by EVM portable signatures IMA/EVM fixes - 1 - --- 2020-09-04 Roberto Sassu New
[v2,09/12] evm: Allow setxattr() and setattr() if metadata digest won't change IMA/EVM fixes - - - --- 2020-09-04 Roberto Sassu New
[v2,08/12] evm: Allow xattr/attr operations for portable signatures if check fails IMA/EVM fixes - 1 - --- 2020-09-04 Roberto Sassu New
[v2,07/12] evm: Introduce EVM_RESET_STATUS atomic flag IMA/EVM fixes - - - --- 2020-09-04 Roberto Sassu New
[v2,06/12] evm: Refuse EVM_ALLOW_METADATA_WRITES only if the HMAC key is loaded IMA/EVM fixes - - - --- 2020-09-04 Roberto Sassu New
[v2,05/12] evm: Load EVM key in ima_load_x509() to avoid appraisal IMA/EVM fixes - 1 - --- 2020-09-04 Roberto Sassu New
[v2,04/12] evm: Execute evm_inode_init_security() only when the HMAC key is loaded IMA/EVM fixes - 1 - --- 2020-09-04 Roberto Sassu New
[v2,03/12] evm: Check size of security.evm before using it IMA/EVM fixes - 1 - --- 2020-09-04 Roberto Sassu New
[v2,02/12] ima: Remove semicolon at the end of ima_get_binary_runtime_size() IMA/EVM fixes - - - --- 2020-09-04 Roberto Sassu New
[v2,01/12] ima: Don't ignore errors from crypto_shash_update() IMA/EVM fixes - 1 - --- 2020-09-04 Roberto Sassu New
[v6,8/8] integrity: Asymmetric digsig supports SM2-with-SM3 algorithm crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - 2 1 --- 2020-09-03 Tianjia Zhang New
[v6,7/8] X.509: support OSCCA sm2-with-sm3 certificate verification crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - 1 1 --- 2020-09-03 Tianjia Zhang New
[v6,6/8] X.509: support OSCCA certificate parse crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - 1 1 --- 2020-09-03 Tianjia Zhang New
[v6,5/8] crypto: testmgr - support test with different ciphertext per encryption crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - - 1 --- 2020-09-03 Tianjia Zhang New
[v6,4/8] crypto: sm2 - introduce OSCCA SM2 asymmetric cipher algorithm crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - - 1 --- 2020-09-03 Tianjia Zhang New
[v6,3/8] lib/mpi: Introduce ec implementation to MPI library crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - - 1 --- 2020-09-03 Tianjia Zhang New
[v6,2/8] lib/mpi: Extend the MPI library crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - - 1 --- 2020-09-03 Tianjia Zhang New
[v6,1/8] crypto: sm3 - export crypto_sm3_final function crpyto: introduce OSCCA certificate and SM2 asymmetric algorithm - - 1 --- 2020-09-03 Tianjia Zhang New
[RFC] certs: Add EFI_CERT_X509_GUID support for dbx entries [RFC] certs: Add EFI_CERT_X509_GUID support for dbx entries - - - --- 2020-09-01 Eric Snowberg New
[v2,3/3] IMA: Support early boot measurement of critical data IMA: Generalize early boot data measurement - - - --- 2020-08-28 Lakshmi Ramasubramanian New
[v2,2/3] IMA: Support measurement of generic data during early boot IMA: Generalize early boot data measurement - - - --- 2020-08-28 Lakshmi Ramasubramanian New
[v2,1/3] IMA: Generalize early boot measurement of asymmetric keys IMA: Generalize early boot data measurement - - - --- 2020-08-28 Lakshmi Ramasubramanian New
[v2] netlabel: remove unused param from audit_log_format() [v2] netlabel: remove unused param from audit_log_format() 1 - - --- 2020-08-28 Alex Dewar New
[v3,6/6] IMA: validate supported kernel data sources before measurement IMA: Infrastructure for measurement of critical kernel data - - - --- 2020-08-28 Tushar Sugandhi New
[v3,5/6] IMA: add hook to measure critical data from kernel components IMA: Infrastructure for measurement of critical kernel data - - - --- 2020-08-28 Tushar Sugandhi New
[v3,4/6] IMA: add policy to measure critical data from kernel components IMA: Infrastructure for measurement of critical kernel data - - - --- 2020-08-28 Tushar Sugandhi New
[v3,3/6] IMA: update process_buffer_measurement to measure buffer hash IMA: Infrastructure for measurement of critical kernel data - - - --- 2020-08-28 Tushar Sugandhi New
[v3,2/6] IMA: change process_buffer_measurement return type from void to int IMA: Infrastructure for measurement of critical kernel data - - - --- 2020-08-28 Tushar Sugandhi New
[v3,1/6] IMA: generalize keyring specific measurement constructs IMA: Infrastructure for measurement of critical kernel data - - - --- 2020-08-28 Tushar Sugandhi New
[RFC] netlabel: remove unused param from audit_log_format() [RFC] netlabel: remove unused param from audit_log_format() - - - --- 2020-08-27 Alex Dewar New
security/keys: use kvfree_sensitive() security/keys: use kvfree_sensitive() - 1 - --- 2020-08-27 Denis Efremov New
[v8,3/3] Wire UFFD up to SELinux SELinux support for anonymous inodes and UFFD - - - --- 2020-08-27 Lokesh Gidra New
[v8,2/3] Teach SELinux about anonymous inodes SELinux support for anonymous inodes and UFFD 2 - - --- 2020-08-27 Lokesh Gidra New
[v8,1/3] Add a new LSM-supporting anonymous inode interface SELinux support for anonymous inodes and UFFD - - - --- 2020-08-27 Lokesh Gidra New
[v20,23/23] AppArmor: Remove the exclusive flag LSM: Module stacking for AppArmor 1 2 - --- 2020-08-26 Casey Schaufler New
[v20,22/23] LSM: Add /proc attr entry for full LSM context LSM: Module stacking for AppArmor - 1 - --- 2020-08-26 Casey Schaufler New
[v20,21/23] Audit: Add a new record for multiple object LSM attributes LSM: Module stacking for AppArmor - - - --- 2020-08-26 Casey Schaufler New
[v20,20/23] Audit: Add new record for multiple process LSM attributes LSM: Module stacking for AppArmor - - - --- 2020-08-26 Casey Schaufler New
[v20,19/23] LSM: Verify LSM display sanity in binder LSM: Module stacking for AppArmor 2 1 - --- 2020-08-26 Casey Schaufler New
[v20,18/23] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,17/23] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor 1 2 - --- 2020-08-26 Casey Schaufler New
[v20,16/23] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor 2 - - --- 2020-08-26 Casey Schaufler New
[v20,15/23] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor 2 1 - --- 2020-08-26 Casey Schaufler New
[v20,14/23] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,13/23] LSM: Specify which LSM to display LSM: Module stacking for AppArmor 2 1 - --- 2020-08-26 Casey Schaufler New
[v20,12/23] IMA: Change internal interfaces to use lsmblobs LSM: Module stacking for AppArmor 1 2 - --- 2020-08-26 Casey Schaufler New
[v20,11/23] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,10/23] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,09/23] LSM: Use lsmblob in security_task_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,08/23] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,07/23] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,06/23] LSM: Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor 1 1 - --- 2020-08-26 Casey Schaufler New
[v20,05/23] net: Prepare UDS for security module stacking LSM: Module stacking for AppArmor - - - --- 2020-08-26 Casey Schaufler New
[v20,04/23] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,03/23] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[v20,02/23] LSM: Create and manage the lsmblob data structure. LSM: Module stacking for AppArmor 2 - - --- 2020-08-26 Casey Schaufler New
[v20,01/23] LSM: Infrastructure management of the sock security LSM: Module stacking for AppArmor 2 2 - --- 2020-08-26 Casey Schaufler New
[3/3] integrity: Load certs from the EFI MOK config table integrity: Load certs from EFI MOK config table - - - --- 2020-08-26 Lenny Szubowicz New
[2/3] integrity: Move import of MokListRT certs to a separate routine integrity: Load certs from EFI MOK config table - 1 - --- 2020-08-26 Lenny Szubowicz New
[1/3] efi: Support for MOK variable config table integrity: Load certs from EFI MOK config table - - - --- 2020-08-26 Lenny Szubowicz New
[bpf-next,v10,7/7] bpf: Add selftests for local_storage Generalizing bpf_local_storage 1 - - --- 2020-08-25 KP Singh New
[bpf-next,v10,6/7] bpf: Allow local storage to be used from LSM programs Generalizing bpf_local_storage 1 - - --- 2020-08-25 KP Singh New
[bpf-next,v10,5/7] bpf: Implement bpf_local_storage for inodes Generalizing bpf_local_storage - - - --- 2020-08-25 KP Singh New
[bpf-next,v10,4/7] bpf: Split bpf_local_storage to bpf_sk_storage Generalizing bpf_local_storage 1 - - --- 2020-08-25 KP Singh New
[bpf-next,v10,3/7] bpf: Generalize bpf_sk_storage Generalizing bpf_local_storage - - - --- 2020-08-25 KP Singh New
[bpf-next,v10,2/7] bpf: Generalize caching for sk_storage. Generalizing bpf_local_storage 1 - - --- 2020-08-25 KP Singh New
[bpf-next,v10,1/7] bpf: Renames in preparation for bpf_local_storage Generalizing bpf_local_storage 1 - - --- 2020-08-25 KP Singh New
[v2] block: grant IOPRIO_CLASS_RT to CAP_SYS_NICE [v2] block: grant IOPRIO_CLASS_RT to CAP_SYS_NICE 1 1 - --- 2020-08-24 Khazhismel Kumykov New
« 1 2 3 491 92 »