Show patches with: State = Action Required       |   12042 patches
« 1 2 ... 70 71 72120 121 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[V32,14/27] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
[V32,13/27] ACPI: Limit access to custom_method when the kernel is locked down Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
[V32,12/27] x86/msr: Restrict MSR access when the kernel is locked down Lockdown patches for 5.2 1 1 - --- 2019-04-04 Matthew Garrett New
[V32,11/27] x86: Lock down IO port access when the kernel is locked down Lockdown patches for 5.2 - 1 - --- 2019-04-04 Matthew Garrett New
[V32,10/27] PCI: Lock down BAR access when the kernel is locked down Lockdown patches for 5.2 1 - - --- 2019-04-04 Matthew Garrett New
[V32,09/27] uswsusp: Disable when the kernel is locked down Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
[V32,08/27] hibernate: Disable when the kernel is locked down Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
[V32,07/27] kexec_file: Restrict at runtime if the kernel is locked down Lockdown patches for 5.2 - 1 - --- 2019-04-04 Matthew Garrett New
[V32,06/27] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE Lockdown patches for 5.2 - 1 - --- 2019-04-04 Matthew Garrett New
[V32,05/27] Copy secure_boot flag in boot params across kexec reboot Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
[V32,04/27] kexec_load: Disable at runtime if the kernel is locked down Lockdown patches for 5.2 1 - - --- 2019-04-04 Matthew Garrett New
[V32,03/27] Restrict /dev/{mem,kmem,port} when the kernel is locked down Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
[V32,02/27] Enforce module signatures if the kernel is locked down Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
[V32,01/27] Add the ability to lock down access to the running kernel image Lockdown patches for 5.2 - - - --- 2019-04-04 Matthew Garrett New
Smack: Fix IPv6 handling of 0 secmark Smack: Fix IPv6 handling of 0 secmark - - - --- 2019-04-03 Casey Schaufler New
[2/2] tpm: Fix builds on platforms that lack early_memremap() [1/2] efi: Fix cast to pointer from integer of different size in TPM log code - 1 - --- 2019-04-02 Matthew Garrett New
[1/2] efi: Fix cast to pointer from integer of different size in TPM log code [1/2] efi: Fix cast to pointer from integer of different size in TPM log code 1 1 - --- 2019-04-02 Matthew Garrett New
[GIT,PULL,UPDATED] security: yama and LSM config fixes [GIT,PULL,UPDATED] security: yama and LSM config fixes - - - --- 2019-03-29 James Morris New
LSM: Revive CONFIG_DEFAULT_SECURITY_* for "make oldconfig" LSM: Revive CONFIG_DEFAULT_SECURITY_* for "make oldconfig" 1 - - --- 2019-03-29 Kees Cook New
[GIT,PULL] security: yama fix for v5.1 [GIT,PULL] security: yama fix for v5.1 - - - --- 2019-03-29 James Morris New
[GIT,PULL] tpmdd fixes for Linux v5.1 [GIT,PULL] tpmdd fixes for Linux v5.1 - - - --- 2019-03-29 Jarkko Sakkinen New
[RFC,40/68] vfs: Convert smackfs to use the new mount API Untitled series #97843 - - - --- 2019-03-27 David Howells New
[RFC,39/68] vfs: Convert selinuxfs to use the new mount API Untitled series #97843 - - - --- 2019-03-27 David Howells New
[RFC,38/68] vfs: Convert securityfs to use the new mount API Untitled series #97843 - - - --- 2019-03-27 David Howells New
[RFC,37/68] vfs: Convert apparmorfs to use the new mount API Untitled series #97843 - - - --- 2019-03-27 David Howells New
keys: safe concurrent user->{session,uid}_keyring access keys: safe concurrent user->{session,uid}_keyring access - - - --- 2019-03-27 Jann Horn New
security: don't use RCU accessors for cred->session_keyring security: don't use RCU accessors for cred->session_keyring - - - --- 2019-03-27 Jann Horn New
Yama: mark function as static Yama: mark function as static - - - --- 2019-03-27 Mukesh Ojha New
Yama: mark local symbols as static Yama: mark local symbols as static - 1 - --- 2019-03-26 Jann Horn New
[ghak109,V2] audit: link integrity evm_write_xattrs record to syscall event [ghak109,V2] audit: link integrity evm_write_xattrs record to syscall event 2 - - --- 2019-03-26 Richard Guy Briggs New
[V31,25/25] debugfs: Disable open() when kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,24/25] lockdown: Print current->comm in restriction messages Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,23/25] Lock down perf when in confidentiality mode Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,22/25] bpf: Restrict bpf when kernel lockdown is in confidentiality mode Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,21/25] Lock down kprobes when in confidentiality mode Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,20/25] Lock down /proc/kcore Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,19/25] x86/mmiotrace: Lock down the testmmiotrace module Add support for kernel lockdown 1 - - --- 2019-03-26 Matthew Garrett New
[V31,18/25] Lock down module params that specify hardware parameters (eg. ioport) Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,17/25] Lock down TIOCSSERIAL Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,16/25] Prohibit PCMCIA CIS storage when the kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,15/25] acpi: Disable ACPI table override if the kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,14/25] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,13/25] ACPI: Limit access to custom_method when the kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,12/25] x86/msr: Restrict MSR access when the kernel is locked down Add support for kernel lockdown 1 1 - --- 2019-03-26 Matthew Garrett New
[V31,11/25] x86: Lock down IO port access when the kernel is locked down Add support for kernel lockdown - 1 - --- 2019-03-26 Matthew Garrett New
[V31,10/25] PCI: Lock down BAR access when the kernel is locked down Add support for kernel lockdown 1 - - --- 2019-03-26 Matthew Garrett New
[V31,09/25] uswsusp: Disable when the kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,08/25] hibernate: Disable when the kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,07/25] kexec_file: Restrict at runtime if the kernel is locked down Add support for kernel lockdown - 1 - --- 2019-03-26 Matthew Garrett New
[V31,06/25] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE Add support for kernel lockdown - 1 - --- 2019-03-26 Matthew Garrett New
[V31,05/25] Copy secure_boot flag in boot params across kexec reboot Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,04/25] kexec_load: Disable at runtime if the kernel is locked down Add support for kernel lockdown 1 - - --- 2019-03-26 Matthew Garrett New
[V31,03/25] Restrict /dev/{mem,kmem,port} when the kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,02/25] Enforce module signatures if the kernel is locked down Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[V31,01/25] Add the ability to lock down access to the running kernel image Add support for kernel lockdown - - - --- 2019-03-26 Matthew Garrett New
[v3] KEYS: trusted: allow trusted.ko to initialize w/o a TPM [v3] KEYS: trusted: allow trusted.ko to initialize w/o a TPM - - 1 --- 2019-03-26 Jarkko Sakkinen New
[v2] KEYS: trusted: allow trusted.ko to initialize w/o a TPM [v2] KEYS: trusted: allow trusted.ko to initialize w/o a TPM - - 1 --- 2019-03-26 Jarkko Sakkinen New
[1/1] RFC: security: add SECURE_KEEP_FSUID to preserve fsuid/fsgid across execve RFC: security: add SECURE_KEEP_FSUID to preserve fsuid/fsgid across execve - - - --- 2019-03-25 Lubashev, Igor New
[27/27] kexec: Allow kexec_file() with appropriate IMA policy when locked down [PULL,REQUEST] Lockdown patches for 5.2 1 - - --- 2019-03-25 Matthew Garrett New
[26/27] lockdown: Print current->comm in restriction messages [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[25/27] debugfs: Restrict debugfs when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[24/27] Lock down perf [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[23/27] bpf: Restrict kernel image access functions when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[22/27] Lock down kprobes [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[21/27] Lock down /proc/kcore [PULL,REQUEST] Lockdown patches for 5.2 - 1 - --- 2019-03-25 Matthew Garrett New
[20/27] x86/mmiotrace: Lock down the testmmiotrace module [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[19/27] Lock down module params that specify hardware parameters (eg. ioport) [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[18/27] Lock down TIOCSSERIAL [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[17/27] Prohibit PCMCIA CIS storage when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[16/27] acpi: Disable APEI error injection if the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[15/27] acpi: Disable ACPI table override if the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[14/27] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[13/27] ACPI: Limit access to custom_method when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[12/27] x86/msr: Restrict MSR access when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 1 1 - --- 2019-03-25 Matthew Garrett New
[11/27] x86: Lock down IO port access when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - 1 - --- 2019-03-25 Matthew Garrett New
[10/27] PCI: Lock down BAR access when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 1 - - --- 2019-03-25 Matthew Garrett New
[09/27] uswsusp: Disable when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - 1 - --- 2019-03-25 Matthew Garrett New
[08/27] hibernate: Disable when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[07/27] kexec_file: Restrict at runtime if the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - 1 - --- 2019-03-25 Matthew Garrett New
[06/27] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE [PULL,REQUEST] Lockdown patches for 5.2 - 1 - --- 2019-03-25 Matthew Garrett New
[05/27] Copy secure_boot flag in boot params across kexec reboot [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[04/27] kexec_load: Disable at runtime if the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 1 - - --- 2019-03-25 Matthew Garrett New
[03/27] Restrict /dev/{mem,kmem,port} when the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
[02/27] Enforce module signatures if the kernel is locked down [PULL,REQUEST] Lockdown patches for 5.2 - 1 - --- 2019-03-25 Matthew Garrett New
[01/27] Add the ability to lock down access to the running kernel image [01/27] Add the ability to lock down access to the running kernel image 1 - - --- 2019-03-25 Matthew Garrett New
[PULL,REQUEST] Lockdown patches for 5.2 [PULL,REQUEST] Lockdown patches for 5.2 - - - --- 2019-03-25 Matthew Garrett New
KEYS: trusted: allow trusted.ko to initialize w/o a TPM KEYS: trusted: allow trusted.ko to initialize w/o a TPM - - - --- 2019-03-25 Jarkko Sakkinen New
LSM: lsm_hooks.h - fix missing colon in docstring LSM: lsm_hooks.h - fix missing colon in docstring - - - --- 2019-03-25 Ondrej Mosnacek New
[2/2,v2] efi: print appropriate status message when loading certificates [1/2] efi: add a function for transferring status to string - - - --- 2019-03-24 Lee, Chun-Yi New
[1/2] efi: add a function for transferring status to string [1/2] efi: add a function for transferring status to string - - - --- 2019-03-24 Lee, Chun-Yi New
[1/2] efi: add a function for transferring status to string [1/2] efi: add a function for transferring status to string - - - --- 2019-03-23 Lee, Chun-Yi New
KEYS: trusted: defer execution of TPM-specific code until key instantiate KEYS: trusted: defer execution of TPM-specific code until key instantiate - - 1 --- 2019-03-22 Roberto Sassu New
tpm: turn on TPM on suspend for TPM 1.x tpm: turn on TPM on suspend for TPM 1.x - - 1 --- 2019-03-22 Jarkko Sakkinen New
[2/2] efi: print appropriate status message when loading certificates [1/2] efi: add a function for transferring status to string - - - --- 2019-03-22 Lee, Chun-Yi New
[1/2] efi: add a function for transferring status to string [1/2] efi: add a function for transferring status to string - - - --- 2019-03-22 Lee, Chun-Yi New
[GIT,PULL] SELinux fixes for v5.1 (#2) [GIT,PULL] SELinux fixes for v5.1 (#2) - - - --- 2019-03-21 Paul Moore New
[v19,RESEND,17/27] x86/sgx: Add provisioning Untitled series #94401 - - - --- 2019-03-20 Jarkko Sakkinen New
device_cgroup: fix RCU imbalance in error case device_cgroup: fix RCU imbalance in error case 1 - - --- 2019-03-19 Jann Horn New
[v19,17/27] x86/sgx: Add provisioning Untitled series #92723 - - - --- 2019-03-17 Jarkko Sakkinen New
[ghak109,V1] audit: link integrity evm_write_xattrs record to syscall event [ghak109,V1] audit: link integrity evm_write_xattrs record to syscall event - - - --- 2019-03-16 Richard Guy Briggs New
« 1 2 ... 70 71 72120 121 »