Show patches with: State = Action Required       |   10492 patches
« 1 2 ... 4 5 6104 105 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[1/7] ima: Avoid measurement and audit if access to the file will be denied ima/evm: Small enhancements - - - --- 2021-04-09 Roberto Sassu New
[2/2] selinux: fix SECURITY_LSM_NATIVE_LABELS flag handling on double mount vfs/security/NFS/btrfs: clean up and fix LSM option handling - - - --- 2021-04-09 Ondrej Mosnacek New
[1/2] vfs,LSM: introduce the FS_HANDLES_LSM_OPTS flag vfs/security/NFS/btrfs: clean up and fix LSM option handling - - - --- 2021-04-09 Ondrej Mosnacek New
fs_context: drop the unused lsm_flags member fs_context: drop the unused lsm_flags member - - - --- 2021-04-09 Ondrej Mosnacek New
[2/2] selinux:Delete selinux_xfrm_policy_lookup() useless argument Untitled series #463963 - - - --- 2021-04-09 Zhongjun Tan New
LoadPin: Allow filesystem switch when not enforcing LoadPin: Allow filesystem switch when not enforcing - - - --- 2021-04-08 Kees Cook New
[v2,2/2] certs: Add support for using elliptic curve keys for signing modules Add support for ECDSA-signed kernel modules - 1 - --- 2021-04-08 Stefan Berger New
[v2,1/2] certs: Trigger creation of RSA module signing key if it's not an RSA key Add support for ECDSA-signed kernel modules - 1 - --- 2021-04-08 Stefan Berger New
[v2,18/18] keyctl_pkey: Add pkey parameters slen and mgfhash for PSS Untitled series #463493 - - - --- 2021-04-08 Varad Gautam New
selinux:Delete selinux_xfrm_policy_lookup() useless argument selinux:Delete selinux_xfrm_policy_lookup() useless argument - - - --- 2021-04-08 Zhongjun Tan New
selinux:Delete selinux_xfrm_policy_lookup() useless argument selinux:Delete selinux_xfrm_policy_lookup() useless argument - - - --- 2021-04-08 Zhongjun Tan New
[RESEND,v5,09/12] evm: Allow setxattr() and setattr() for unmodified metadata Untitled series #462743 - 1 - --- 2021-04-07 Roberto Sassu New
[v33,12/12] landlock: Add user and kernel documentation Landlock LSM - 2 - --- 2021-04-07 Mickaël Salaün New
[v33,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - 2 - --- 2021-04-07 Mickaël Salaün New
[v33,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2021-04-07 Mickaël Salaün New
[v33,08/12] landlock: Add syscall implementations Landlock LSM 1 - - --- 2021-04-07 Mickaël Salaün New
[v33,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2021-04-07 Mickaël Salaün New
[v33,06/12] fs,security: Add sb_delete hook Landlock LSM 1 2 - --- 2021-04-07 Mickaël Salaün New
[v33,05/12] LSM: Infrastructure management of the superblock Landlock LSM 1 2 - --- 2021-04-07 Mickaël Salaün New
[v33,04/12] landlock: Add ptrace restrictions Landlock LSM 1 2 - --- 2021-04-07 Mickaël Salaün New
[v33,03/12] landlock: Set up the security framework and manage credentials Landlock LSM 1 2 - --- 2021-04-07 Mickaël Salaün New
[v33,02/12] landlock: Add ruleset and domain management Landlock LSM 1 2 - --- 2021-04-07 Mickaël Salaün New
[v33,01/12] landlock: Add object management Landlock LSM 1 2 - --- 2021-04-07 Mickaël Salaün New
[v5,12/12] ima: Don't remove security.ima if file must not be appraised evm: Improve usability of portable signatures - 1 - --- 2021-04-07 Roberto Sassu New
[v5,11/12] ima: Introduce template field evmsig and write to field sig as fallback evm: Improve usability of portable signatures - - - --- 2021-04-07 Roberto Sassu New
[v5,10/12] ima: Allow imasig requirement to be satisfied by EVM portable signatures evm: Improve usability of portable signatures - 1 - --- 2021-04-07 Roberto Sassu New
[v5,09/12] evm: Allow setxattr() and setattr() for unmodified metadata evm: Improve usability of portable signatures - 1 - --- 2021-04-07 Roberto Sassu New
[v5,08/12] evm: Pass user namespace to set/remove xattr hooks evm: Improve usability of portable signatures - 1 - --- 2021-04-07 Roberto Sassu New
[v5,07/12] evm: Allow xattr/attr operations for portable signatures evm: Improve usability of portable signatures - 1 - --- 2021-04-07 Roberto Sassu New
[v5,06/12] evm: Ignore INTEGRITY_NOLABEL/INTEGRITY_NOXATTRS if conditions are safe evm: Improve usability of portable signatures - - - --- 2021-04-07 Roberto Sassu New
[v5,05/12] evm: Introduce evm_status_revalidate() evm: Improve usability of portable signatures - - - --- 2021-04-07 Roberto Sassu New
[v5,04/12] ima: Move ima_reset_appraise_flags() call to post hooks evm: Improve usability of portable signatures - - - --- 2021-04-07 Roberto Sassu New
[v5,03/12] evm: Refuse EVM_ALLOW_METADATA_WRITES only if an HMAC key is loaded evm: Improve usability of portable signatures - - - --- 2021-04-07 Roberto Sassu New
[v5,02/12] evm: Load EVM key in ima_load_x509() to avoid appraisal evm: Improve usability of portable signatures - 1 - --- 2021-04-07 Roberto Sassu New
[v5,01/12] evm: Execute evm_inode_init_security() only when an HMAC key is loaded evm: Improve usability of portable signatures - 1 - --- 2021-04-07 Roberto Sassu New
[v2] integrity: Add declarations to init_once void arguments. [v2] integrity: Add declarations to init_once void arguments. - - - --- 2021-04-07 Jiele Zhao New
[2/2] certs: Add support for using elliptic curve keys for signing modules Add support for ECDSA-signed kernel modules - - - --- 2021-04-06 Stefan Berger New
[1/2] certs: Trigger recreation of module signing key if it's not an RSA key Add support for ECDSA-signed kernel modules - - - --- 2021-04-06 Stefan Berger New
[v2] ima: Fix function name error in comment. [v2] ima: Fix function name error in comment. - - - --- 2021-04-06 Jiele Zhao New
[-next] KEYS: trusted: Switch to kmemdup_nul() [-next] KEYS: trusted: Switch to kmemdup_nul() 1 - - --- 2021-04-02 Yang Yingliang New
[v32,12/12] landlock: Add user and kernel documentation Landlock LSM - 2 - --- 2021-04-01 Mickaël Salaün New
[v32,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - 2 - --- 2021-04-01 Mickaël Salaün New
[v32,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2021-04-01 Mickaël Salaün New
[v32,08/12] landlock: Add syscall implementations Landlock LSM 1 - - --- 2021-04-01 Mickaël Salaün New
[v32,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2021-04-01 Mickaël Salaün New
[v32,06/12] fs,security: Add sb_delete hook Landlock LSM 1 2 - --- 2021-04-01 Mickaël Salaün New
[v32,05/12] LSM: Infrastructure management of the superblock Landlock LSM 1 2 - --- 2021-04-01 Mickaël Salaün New
[v32,04/12] landlock: Add ptrace restrictions Landlock LSM 1 2 - --- 2021-04-01 Mickaël Salaün New
[v32,03/12] landlock: Set up the security framework and manage credentials Landlock LSM 1 2 - --- 2021-04-01 Mickaël Salaün New
[v32,02/12] landlock: Add ruleset and domain management Landlock LSM 1 2 - --- 2021-04-01 Mickaël Salaün New
[v32,01/12] landlock: Add object management Landlock LSM 1 2 - --- 2021-04-01 Mickaël Salaün New
[18/18] keyctl_pkey: Add pkey parameter slen to pass in PSS salt length Untitled series #458309 - 1 - --- 2021-03-30 Varad Gautam New
[v3,3/3] ima: enable loading of build time generated key on .ima keyring ima: kernel build support for loading the kernel module signing key 1 - - --- 2021-03-30 Nayna Jain New
[v3,2/3] ima: enable signing of modules with build time generated key ima: kernel build support for loading the kernel module signing key 1 - - --- 2021-03-30 Nayna Jain New
[v3,1/3] keys: cleanup build time module signing keys ima: kernel build support for loading the kernel module signing key - 3 - --- 2021-03-30 Nayna Jain New
tomoyo: don't special case PF_IO_WORKER for PF_KTHREAD tomoyo: don't special case PF_IO_WORKER for PF_KTHREAD - - - --- 2021-03-26 Jens Axboe New
Revert "Smack: Handle io_uring kernel thread privileges" Revert "Smack: Handle io_uring kernel thread privileges" - - - --- 2021-03-26 Jens Axboe New
[GIT,PULL] integrity subsystem fix for v5.12 [GIT,PULL] integrity subsystem fix for v5.12 - - - --- 2021-03-25 Mimi Zohar New
[v31,12/12] landlock: Add user and kernel documentation Landlock LSM - 2 - --- 2021-03-24 Mickaël Salaün New
[v31,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - 2 - --- 2021-03-24 Mickaël Salaün New
[v31,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2021-03-24 Mickaël Salaün New
[v31,08/12] landlock: Add syscall implementations Landlock LSM 1 - - --- 2021-03-24 Mickaël Salaün New
[v31,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2021-03-24 Mickaël Salaün New
[v31,06/12] fs,security: Add sb_delete hook Landlock LSM 1 2 - --- 2021-03-24 Mickaël Salaün New
[v31,05/12] LSM: Infrastructure management of the superblock Landlock LSM 1 2 - --- 2021-03-24 Mickaël Salaün New
[v31,04/12] landlock: Add ptrace restrictions Landlock LSM 1 2 - --- 2021-03-24 Mickaël Salaün New
[v31,03/12] landlock: Set up the security framework and manage credentials Landlock LSM 1 2 - --- 2021-03-24 Mickaël Salaün New
[v31,02/12] landlock: Add ruleset and domain management Landlock LSM 1 2 - --- 2021-03-24 Mickaël Salaün New
[v31,01/12] landlock: Add object management Landlock LSM 1 2 - --- 2021-03-24 Mickaël Salaün New
ima: Fix function name error in comment. ima: Fix function name error in comment. - - - --- 2021-03-23 Jiele Zhao New
integrity/ima: Add declarations to init_once void arguments. integrity/ima: Add declarations to init_once void arguments. - - - --- 2021-03-23 Jiele Zhao New
[GIT,PULL] SELinux fixes for v5.12 (#1) [GIT,PULL] SELinux fixes for v5.12 (#1) - - - --- 2021-03-22 Paul Moore New
[11/11,RFC] drm/i915/dp: fix array overflow warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[10/11] drm/i915: avoid stringop-overread warning on pri_latency treewide: address gcc-11 -Wstringop-overread warnings - 1 - --- 2021-03-22 Arnd Bergmann New
[09/11] scsi: lpfc: fix gcc -Wstringop-overread warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[08/11] atmel: avoid gcc -Wstringop-overflow warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[07/11] ARM: sharpsl_param: work around -Wstringop-overread warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[06/11] cgroup: fix -Wzero-length-bounds warnings treewide: address gcc-11 -Wstringop-overread warnings - 1 - --- 2021-03-22 Arnd Bergmann New
[05/11] qnx: avoid -Wstringop-overread warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[04/11] ath11: Wstringop-overread warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[03/11] security: commoncap: fix -Wstringop-overread warning treewide: address gcc-11 -Wstringop-overread warnings 1 - - --- 2021-03-22 Arnd Bergmann New
[02/11] x86: tboot: avoid Wstringop-overread-warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[01/11] x86: compressed: avoid gcc-11 -Wstringop-overread warning treewide: address gcc-11 -Wstringop-overread warnings - - - --- 2021-03-22 Arnd Bergmann New
[2/2] integrity: double check iint_cache was initialized [1/2] ima: don't access a file's integrity status before an IMA policy is loaded - - - --- 2021-03-22 Mimi Zohar New
[1/2] ima: don't access a file's integrity status before an IMA policy is loaded [1/2] ima: don't access a file's integrity status before an IMA policy is loaded - - - --- 2021-03-22 Mimi Zohar New
apparmor: avoid -Wempty-body warning apparmor: avoid -Wempty-body warning - - - --- 2021-03-22 Arnd Bergmann New
keys: Allow disabling read permissions for key possessor keys: Allow disabling read permissions for key possessor - - - --- 2021-03-22 Andrey Ryabinin New
[V2] device_cgroup: A typo fix [V2] device_cgroup: A typo fix 1 - - --- 2021-03-21 Bhaskar Chowdhury New
security: A typo fix security: A typo fix - - - --- 2021-03-21 Bhaskar Chowdhury New
security: A typo fix security: A typo fix 1 - - --- 2021-03-21 Bhaskar Chowdhury New
cap: Trivial spelling fixes throughout the file cap: Trivial spelling fixes throughout the file - - - --- 2021-03-21 Bhaskar Chowdhury New
[RFC,2/2] integrity: double check iint_cache was initialized [RFC,1/2] ima: don't access a file's integrity status before an IMA policy is loaded - - - --- 2021-03-19 Mimi Zohar New
[RFC,1/2] ima: don't access a file's integrity status before an IMA policy is loaded [RFC,1/2] ima: don't access a file's integrity status before an IMA policy is loaded - - - --- 2021-03-19 Mimi Zohar New
[v2,3/3] smack: differentiate between subjective and objective task credentials Split security_task_getsecid() into subj and obj variants 1 2 - --- 2021-03-18 Paul Moore New
[v2,2/3] selinux: clarify task subjective and objective credentials Split security_task_getsecid() into subj and obj variants - 1 - --- 2021-03-18 Paul Moore New
[v2,1/3] lsm: separate security_task_getsecid() into subjective and objective variants Split security_task_getsecid() into subj and obj variants 2 1 - --- 2021-03-18 Paul Moore New
security: fix misspellings using codespell tool security: fix misspellings using codespell tool - - - --- 2021-03-18 Menglong Dong New
security/smack: fix misspellings using codespell tool security/smack: fix misspellings using codespell tool - - - --- 2021-03-18 Menglong Dong New
security/smack/: fix misspellings using codespell tool security/smack/: fix misspellings using codespell tool - - - --- 2021-03-18 Menglong Dong New
selinux: vsock: Set SID for socket returned by accept() selinux: vsock: Set SID for socket returned by accept() - - - --- 2021-03-17 David Brazdil New
« 1 2 ... 4 5 6104 105 »