Show patches with: State = Action Required       |   12083 patches
« 1 2 ... 7 8 9120 121 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v1,06/11] landlock: Add support for file reparenting with LANDLOCK_ACCESS_FS_REFER Landlock: file linking and renaming support - - - --- 2022-02-21 Mickaël Salaün New
[v1,05/11] landlock: Move filesystem helpers and add a new one Landlock: file linking and renaming support - 1 - --- 2022-02-21 Mickaël Salaün New
[v1,04/11] landlock: Fix same-layer rule unions Landlock: file linking and renaming support - 1 - --- 2022-02-21 Mickaël Salaün New
[v1,03/11] landlock: Create find_rule() from unmask_layers() Landlock: file linking and renaming support - 1 - --- 2022-02-21 Mickaël Salaün New
[v1,02/11] landlock: Reduce the maximum number of layers to 16 Landlock: file linking and renaming support - 1 - --- 2022-02-21 Mickaël Salaün New
[v1,01/11] landlock: Define access_mask_t to enforce a consistent access mask size Landlock: file linking and renaming support - 1 - --- 2022-02-21 Mickaël Salaün New
[v1,7/7] selftest/landlock: Fully test file rename with "remove" access Minor Landlock fixes and new tests - - - --- 2022-02-21 Mickaël Salaün New
[v1,6/7] selftest/landlock: Extend access right tests to directories Minor Landlock fixes and new tests - - - --- 2022-02-21 Mickaël Salaün New
[v1,5/7] selftest/landlock: Add tests for unknown access rights Minor Landlock fixes and new tests - - - --- 2022-02-21 Mickaël Salaün New
[v1,4/7] selftest/landlock: Extend tests for minimal valid attribute size Minor Landlock fixes and new tests - - - --- 2022-02-21 Mickaël Salaün New
[v1,3/7] selftest/landlock: Make tests build with old libc Minor Landlock fixes and new tests - - - --- 2022-02-21 Mickaël Salaün New
[v1,2/7] landlock: Fix landlock_add_rule(2) signature Minor Landlock fixes and new tests - - - --- 2022-02-21 Mickaël Salaün New
[v1,1/7] landlock: Fix landlock_add_rule(2) documentation Minor Landlock fixes and new tests - - - --- 2022-02-21 Mickaël Salaün New
[RFC,1/2] capability: add capable_or to test for multiple caps with exactly one audit message [RFC,1/2] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-02-17 Christian Göttsche New
[RFC,2/2] capability: use new capable_or functionality [RFC,1/2] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2022-02-17 Christian Göttsche New
selinux: log anon inode class name selinux: log anon inode class name - - - --- 2022-02-17 Christian Göttsche New
security: declare member holding string literal const security: declare member holding string literal const - 2 - --- 2022-02-17 Christian Göttsche New
[RFC,1/1] selinuxns: Replace state pointer with namespace id SELinux-namespaces - - - --- 2022-02-16 Igor Baranov New
[4/4] module, KEYS: Make use of platform keyring for signature verification [1/4] Fix arm64 kexec forbidding kernels signed with keys in the secondary keyring to boot - - - --- 2022-02-15 Michal Suchánek New
[3/4] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verification [1/4] Fix arm64 kexec forbidding kernels signed with keys in the secondary keyring to boot - 1 - --- 2022-02-15 Michal Suchánek New
[2/4] kexec, KEYS, arm64: Make use of platform keyring for signature verification [1/4] Fix arm64 kexec forbidding kernels signed with keys in the secondary keyring to boot - 1 - --- 2022-02-15 Michal Suchánek New
[1/4] Fix arm64 kexec forbidding kernels signed with keys in the secondary keyring to boot [1/4] Fix arm64 kexec forbidding kernels signed with keys in the secondary keyring to boot 1 1 - --- 2022-02-15 Michal Suchánek New
[v5] KEYS: encrypted: Instantiate key with user-provided decrypted data [v5] KEYS: encrypted: Instantiate key with user-provided decrypted data - 3 - --- 2022-02-15 Yael Tzur New
[v2,6/6] selftests/bpf: Add test for bpf_lsm_kernel_read_file() bpf-lsm: Extend interoperability with IMA - - - --- 2022-02-15 Roberto Sassu New
[v2,5/6] bpf-lsm: Make bpf_lsm_kernel_read_file() as sleepable bpf-lsm: Extend interoperability with IMA - - - --- 2022-02-15 Roberto Sassu New
[v2,4/6] selftests/bpf: Add test for bpf_ima_file_hash() bpf-lsm: Extend interoperability with IMA - - - --- 2022-02-15 Roberto Sassu New
[v2,3/6] bpf-lsm: Introduce new helper bpf_ima_file_hash() bpf-lsm: Extend interoperability with IMA - - - --- 2022-02-15 Roberto Sassu New
[v2,2/6] ima: Always return a file measurement in ima_file_hash() bpf-lsm: Extend interoperability with IMA - - - --- 2022-02-15 Roberto Sassu New
[v2,1/6] ima: Fix documentation-related warnings in ima_main.c bpf-lsm: Extend interoperability with IMA - 1 - --- 2022-02-15 Roberto Sassu New
apparmor: fix aa_label_asxprint return check apparmor: fix aa_label_asxprint return check 1 - - --- 2022-02-13 Tom Rix New
[net,v3,2/2] security: implement sctp_assoc_established hook in selinux security: fixups for the security hooks in sctp - - - --- 2022-02-12 Ondrej Mosnacek New
[net,v3,1/2] security: add sctp_assoc_established hook security: fixups for the security hooks in sctp - - - --- 2022-02-12 Ondrej Mosnacek New
ima: Calculate digest in ima_inode_hash() if not available ima: Calculate digest in ima_inode_hash() if not available - - - --- 2022-02-11 Roberto Sassu New
[v3] efi: Do not import certificates from UEFI Secure Boot for T2 Macs [v3] efi: Do not import certificates from UEFI Secure Boot for T2 Macs - - - --- 2022-02-10 Aditya Garg New
[v2] efi: Do not import certificates from UEFI Secure Boot for T2 Macs [v2] efi: Do not import certificates from UEFI Secure Boot for T2 Macs - - - --- 2022-02-10 Aditya Garg New
efi: Do not import certificates from UEFI Secure Boot for T2 Macs efi: Do not import certificates from UEFI Secure Boot for T2 Macs - - - --- 2022-02-09 Aditya Garg New
KEYS: trusted: fix crash when TPM/TEE are built as module KEYS: trusted: fix crash when TPM/TEE are built as module - 1 - --- 2022-02-04 Tong Zhang New
[GIT,PULL] SELinux fixes for v5.17 (#1) [GIT,PULL] SELinux fixes for v5.17 (#1) - - - --- 2022-02-03 Paul Moore New
[v32,28/28] AppArmor: Remove the exclusive flag LSM: Module stacking for AppArmor 2 1 - --- 2022-02-02 Casey Schaufler New
[v32,27/28] LSM: Add /proc attr entry for full LSM context LSM: Module stacking for AppArmor - 1 - --- 2022-02-02 Casey Schaufler New
[v32,26/28] Audit: Add record for multiple object security contexts LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,25/28] Audit: Add record for multiple task security contexts LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,24/28] Audit: Add framework for auxiliary records LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,23/28] Audit: Create audit_stamp structure LSM: Module stacking for AppArmor 1 - - --- 2022-02-02 Casey Schaufler New
[v32,22/28] Audit: Keep multiple LSM data in audit_names LSM: Module stacking for AppArmor 1 - - --- 2022-02-02 Casey Schaufler New
[v32,21/28] LSM: Extend security_secid_to_secctx to include module selection LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,20/28] binder: Pass LSM identifier for confirmation LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,19/28] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor 2 2 - --- 2022-02-02 Casey Schaufler New
[v32,18/28] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor 3 2 - --- 2022-02-02 Casey Schaufler New
[v32,17/28] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor 3 2 - --- 2022-02-02 Casey Schaufler New
[v32,16/28] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,15/28] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor 3 2 - --- 2022-02-02 Casey Schaufler New
[v32,14/28] LSM: Specify which LSM to display LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,13/28] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2022-02-02 Casey Schaufler New
[v32,12/28] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2022-02-02 Casey Schaufler New
[v32,11/28] LSM: Use lsmblob in security_current_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2022-02-02 Casey Schaufler New
[v32,10/28] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor 2 2 - --- 2022-02-02 Casey Schaufler New
[v32,09/28] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor 1 1 - --- 2022-02-02 Casey Schaufler New
[v32,08/28] LSM: Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor 1 1 - --- 2022-02-02 Casey Schaufler New
[v32,07/28] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor 2 2 - --- 2022-02-02 Casey Schaufler New
[v32,06/28] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor 1 - - --- 2022-02-02 Casey Schaufler New
[v32,05/28] IMA: avoid label collisions with stacked LSMs LSM: Module stacking for AppArmor - - - --- 2022-02-02 Casey Schaufler New
[v32,04/28] LSM: provide lsm name and id slot mappings LSM: Module stacking for AppArmor 1 1 - --- 2022-02-02 Casey Schaufler New
[v32,03/28] LSM: Add the lsmblob data structure. LSM: Module stacking for AppArmor - 1 - --- 2022-02-02 Casey Schaufler New
[v32,02/28] LSM: Infrastructure management of the sock security LSM: Module stacking for AppArmor 2 2 - --- 2022-02-02 Casey Schaufler New
[v32,01/28] integrity: disassociate ima_filter_rule from security_audit_rule LSM: Module stacking for AppArmor 1 - - --- 2022-02-02 Casey Schaufler New
[4/4,v5] fortify: Add Clang support fortify: Add Clang support - - - --- 2022-02-02 Kees Cook New
[3/4] Compiler Attributes: Add __diagnose_as fortify: Add Clang support - - - --- 2022-02-02 Kees Cook New
[2/4] Compiler Attributes: Add __overloadable fortify: Add Clang support - - - --- 2022-02-02 Kees Cook New
[1/4] Compiler Attributes: Add Clang's __pass_object_size fortify: Add Clang support - - - --- 2022-02-02 Kees Cook New
lsm: Remove stale info about sb_copy_data and sb_parse_opts_str lsm: Remove stale info about sb_copy_data and sb_parse_opts_str - - - --- 2022-02-01 Igor Zhbanov New
[v10,27/27] ima: Enable IMA namespaces ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,26/27] ima: Limit number of policy rules in non-init_ima_ns ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,25/27] ima: Show owning user namespace's uid and gid when displaying policy ima: Namespace IMA with audit support in IMA-ns - 1 - --- 2022-02-01 Stefan Berger New
[v10,24/27] ima: Introduce securityfs file to activate an IMA namespace ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,23/27] ima: Setup securityfs for IMA namespace ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-02-01 Stefan Berger New
[v10,22/27] securityfs: Extend securityfs with namespacing support ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,21/27] ima: Remove unused iints from the integrity_iint_cache ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,20/27] ima: Namespace audit status flags ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,19/27] integrity: Add optional callback function to integrity_inode_free() ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,18/27] integrity/ima: Define ns_status for storing namespaced iint data ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,17/27] ima: Add functions for creating and freeing of an ima_namespace ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-02-01 Stefan Berger New
[v10,16/27] ima: Implement ima_free_policy_rules() for freeing of an ima_namespace ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,15/27] ima: Implement hierarchical processing of file accesses ima: Namespace IMA with audit support in IMA-ns - 1 - --- 2022-02-01 Stefan Berger New
[v10,14/27] userns: Add pointer to ima_namespace to user_namespace ima: Namespace IMA with audit support in IMA-ns - 1 - --- 2022-02-01 Stefan Berger New
[v10,13/27] ima: Only accept AUDIT rules for non-init_ima_ns namespaces for now ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-02-01 Stefan Berger New
[v10,12/27] ima: Define mac_admin_ns_capable() as a wrapper for ns_capable() ima: Namespace IMA with audit support in IMA-ns - - - --- 2022-02-01 Stefan Berger New
[v10,11/27] ima: Move ima_lsm_policy_notifier into ima_namespace ima: Namespace IMA with audit support in IMA-ns - 1 - --- 2022-02-01 Stefan Berger New
[v10,10/27] ima: Move IMA securityfs files into ima_namespace or onto stack ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-02-01 Stefan Berger New
[v10,09/27] ima: Move some IMA policy and filesystem related variables into ima_namespace ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-02-01 Stefan Berger New
[v10,08/27] ima: Move measurement list related variables into ima_namespace ima: Namespace IMA with audit support in IMA-ns - 1 - --- 2022-02-01 Stefan Berger New
[v10,07/27] ima: Move ima_htable into ima_namespace ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-02-01 Stefan Berger New
[v10,06/27] ima: Move arch_policy_entry into ima_namespace ima: Namespace IMA with audit support in IMA-ns 1 1 - --- 2022-02-01 Stefan Berger New
[v10,05/27] ima: Define ima_namespace struct and start moving variables into it ima: Namespace IMA with audit support in IMA-ns 1 - - --- 2022-02-01 Stefan Berger New
[v10,04/27] securityfs: rework dentry creation ima: Namespace IMA with audit support in IMA-ns - 1 - --- 2022-02-01 Stefan Berger New
[v10,03/27] ima: Return error code obtained from securityfs functions ima: Namespace IMA with audit support in IMA-ns - 1 - --- 2022-02-01 Stefan Berger New
[v10,02/27] ima: Do not print policy rule with inactive LSM labels ima: Namespace IMA with audit support in IMA-ns 1 - - --- 2022-02-01 Stefan Berger New
[v10,01/27] ima: Remove ima_policy file before directory ima: Namespace IMA with audit support in IMA-ns 1 - - --- 2022-02-01 Stefan Berger New
[v7,5/5] docs: security: Add coco/efi_secret documentation Allow guest access to EFI confidential computing secret area - 1 - --- 2022-02-01 Dov Murik New
[v7,4/5] efi: Load efi_secret module if EFI secret area is populated Allow guest access to EFI confidential computing secret area - 1 - --- 2022-02-01 Dov Murik New
« 1 2 ... 7 8 9120 121 »