Show patches with: State = Action Required       |    Archived = No       |   6537 patches
« 1 2 ... 3 4 565 66 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[V37,07/29] Copy secure_boot flag in boot params across kexec reboot security: Add support for locking down the kernel - 1 - 0 0 0 2019-07-31 Matthew Garrett New
[V37,06/29] kexec_load: Disable at runtime if the kernel is locked down security: Add support for locking down the kernel 1 1 - 0 0 0 2019-07-31 Matthew Garrett New
[V37,05/29] Restrict /dev/{mem,kmem,port} when the kernel is locked down security: Add support for locking down the kernel - 1 - 0 0 0 2019-07-31 Matthew Garrett New
[V37,04/29] Enforce module signatures if the kernel is locked down security: Add support for locking down the kernel - 1 - 0 0 0 2019-07-31 Matthew Garrett New
[V37,03/29] security: Add a static lockdown policy LSM security: Add support for locking down the kernel - 1 - 0 0 0 2019-07-31 Matthew Garrett New
[V37,02/29] security: Add a "locked down" LSM hook security: Add support for locking down the kernel 2 - - 0 0 0 2019-07-31 Matthew Garrett New
[V37,01/29] security: Support early LSMs security: Add support for locking down the kernel 2 - - 0 0 0 2019-07-31 Matthew Garrett New
[GIT,PULL] SafeSetID MAINTAINERS file update for v5.3 [GIT,PULL] SafeSetID MAINTAINERS file update for v5.3 - - - 0 0 0 2019-07-31 Micah Morton New
tomoyo: common: Fix potential Spectre v1 vulnerability tomoyo: common: Fix potential Spectre v1 vulnerability - - - 0 0 0 2019-07-31 Gustavo A. R. Silva New
fanotify, inotify, dnotify, security: add security hook for fs notifications fanotify, inotify, dnotify, security: add security hook for fs notifications 1 - - 0 0 0 2019-07-31 Aaron Goidel New
tracefs: Restrict tracefs when the kernel is locked down tracefs: Restrict tracefs when the kernel is locked down - 1 - 0 0 0 2019-07-30 Matthew Garrett New
[RFC,v2,6/6] MAINTAINERS: Add entry for TEE based Trusted Keys Introduce TEE based Trusted Keys support - - - 0 0 0 2019-07-30 Sumit Garg New
[RFC,v2,5/6] doc: keys: Document usage of TEE based Trusted Keys Introduce TEE based Trusted Keys support - - - 0 0 0 2019-07-30 Sumit Garg New
[RFC,v2,4/6] KEYS: trusted: Introduce TEE based Trusted Keys Introduce TEE based Trusted Keys support - - - 0 0 0 2019-07-30 Sumit Garg New
[RFC,v2,3/6] tee: add private login method for kernel clients Introduce TEE based Trusted Keys support - - - 0 0 0 2019-07-30 Sumit Garg New
[RFC,v2,2/6] tee: enable support to register kernel memory Introduce TEE based Trusted Keys support - 2 - 0 0 0 2019-07-30 Sumit Garg New
[RFC,v2,1/6] tee: optee: allow kernel pages to register as shm Introduce TEE based Trusted Keys support - 2 - 0 0 0 2019-07-30 Sumit Garg New
[27/27] AppArmor: Remove the exclusive flag LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[26/27] LSM: Add /proc attr entry for full LSM context LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[25/27] NET: Add SO_PEERCONTEXT for multiple LSMs LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[24/27] LSM: Provide an user space interface for the default display LSM: Module stacking for AppArmor - 1 - 0 0 0 2019-07-26 Casey Schaufler New
[23/27] Audit: Include object data for all security modules LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[22/27] Audit: Add subj_LSM fields when necessary LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[21/27] SELinux: Verify LSM display sanity in binder LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[20/27] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[19/27] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[18/27] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[17/27] LSM: Use lsmcontext in security_dentry_init_security LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[16/27] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[15/27] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[14/27] LSM: Specify which LSM to display LSM: Module stacking for AppArmor - - - 0 0 0 2019-07-26 Casey Schaufler New
[13/27] IMA: Change internal interfaces to use lsmblobs LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[12/27] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[11/27] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[10/27] LSM: Use lsmblob in security_task_getsecid LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[09/27] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[08/27] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[07/27] LSM: Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[06/27] net: Prepare UDS for security module stacking LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[05/27] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[04/27] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[03/27] LSM: Create and manage the lsmblob data structure. LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[02/27] LSM: Infrastructure management of the key blob LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[01/27] LSM: Infrastructure management of the sock security LSM: Module stacking for AppArmor - 2 - 0 0 0 2019-07-26 Casey Schaufler New
[GIT,PULL] SELinux fixes for v5.3 (#1) [GIT,PULL] SELinux fixes for v5.3 (#1) - - - 0 0 0 2019-07-26 Paul Moore New
AppArmor: Remove semicolon AppArmor: Remove semicolon - - - 0 0 0 2019-07-26 Vasyl Gomonovych New
[5/5] EVM: use obj-y for non-modular objects security: integrity: Makefile cleanups - - - 0 0 0 2019-07-26 Masahiro Yamada New
[4/5] IMA: use obj-y for non-modular objects security: integrity: Makefile cleanups - - - 0 0 0 2019-07-26 Masahiro Yamada New
[3/5] integrity: use obj-y for non-modular objects security: integrity: Makefile cleanups - - - 0 0 0 2019-07-26 Masahiro Yamada New
[2/5] integrity: remove pointless subdir-$(CONFIG_...) security: integrity: Makefile cleanups - - - 0 0 0 2019-07-26 Masahiro Yamada New
[1/5] integrity: remove unneeded, broken attempt to add -fshort-wchar security: integrity: Makefile cleanups - - - 0 0 0 2019-07-26 Masahiro Yamada New
test_meminit: use GFP_ATOMIC in RCU critical section test_meminit: use GFP_ATOMIC in RCU critical section - - - 0 0 0 2019-07-25 Alexander Potapenko New
[RFC,v3] fanotify, inotify, dnotify, security: add security hook for fs notifications [RFC,v3] fanotify, inotify, dnotify, security: add security hook for fs notifications - - - 0 0 0 2019-07-23 Aaron Goidel New
security: smack: Fix possible null-pointer dereferences in smack_socket_sock_rcv_skb() security: smack: Fix possible null-pointer dereferences in smack_socket_sock_rcv_skb() - - - 0 0 0 2019-07-23 Jia-Ju Bai New
[RESEND,v2] structleak: disable STRUCTLEAK_BYREF in combination with KASAN_STACK [RESEND,v2] structleak: disable STRUCTLEAK_BYREF in combination with KASAN_STACK 1 - - 0 0 0 2019-07-22 Arnd Bergmann New
[bpf-next,v10,10/10] landlock: Add user and kernel documentation for Landlock Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,09/10] bpf,landlock: Add tests for Landlock Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,08/10] bpf: Add a Landlock sandbox example Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,07/10] landlock: Add ptrace restrictions Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,06/10] bpf,landlock: Add a new map type: inode Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,05/10] landlock: Handle filesystem access control Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,04/10] seccomp,landlock: Enforce Landlock programs per process hierarchy Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,03/10] bpf,landlock: Define an eBPF program type for Landlock hooks Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,02/10] bpf: Add expected_attach_triggers and a is_valid_triggers() verifier Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[bpf-next,v10,01/10] fs,security: Add a new file access type: MAY_CHROOT Landlock LSM: Toward unprivileged sandboxing - - - 0 0 0 2019-07-21 Mickaël Salaün New
[V36,29/29] lockdown: Print current->comm in restriction messages security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down security: Add kernel lockdown functionality 1 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,27/29] tracefs: Restrict tracefs when the kernel is locked down security: Add kernel lockdown functionality - - - 0 0 0 2019-07-18 Matthew Garrett New
[V36,26/29] debugfs: Restrict debugfs when the kernel is locked down security: Add kernel lockdown functionality - - - 0 0 0 2019-07-18 Matthew Garrett New
[V36,25/29] kexec: Allow kexec_file() with appropriate IMA policy when locked down security: Add kernel lockdown functionality 1 - - 0 0 0 2019-07-18 Matthew Garrett New
[V36,24/29] Lock down perf when in confidentiality mode security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,23/29] bpf: Restrict bpf when kernel lockdown is in confidentiality mode security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,22/29] Lock down tracing and perf kprobes when in confidentiality mode security: Add kernel lockdown functionality 1 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,21/29] Lock down /proc/kcore security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,20/29] x86/mmiotrace: Lock down the testmmiotrace module security: Add kernel lockdown functionality 1 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,19/29] Lock down module params that specify hardware parameters (eg. ioport) security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,18/29] Lock down TIOCSSERIAL security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,17/29] Prohibit PCMCIA CIS storage when the kernel is locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,16/29] acpi: Disable ACPI table override if the kernel is locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,15/29] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,14/29] ACPI: Limit access to custom_method when the kernel is locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,13/29] x86/msr: Restrict MSR access when the kernel is locked down security: Add kernel lockdown functionality 1 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,12/29] x86: Lock down IO port access when the kernel is locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,11/29] PCI: Lock down BAR access when the kernel is locked down security: Add kernel lockdown functionality 1 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,10/29] hibernate: Disable when the kernel is locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,09/29] kexec_file: Restrict at runtime if the kernel is locked down security: Add kernel lockdown functionality - 2 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,08/29] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE security: Add kernel lockdown functionality - 2 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,07/29] Copy secure_boot flag in boot params across kexec reboot security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,06/29] kexec_load: Disable at runtime if the kernel is locked down security: Add kernel lockdown functionality 1 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,05/29] Restrict /dev/{mem,kmem,port} when the kernel is locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,04/29] Enforce module signatures if the kernel is locked down security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,03/29] security: Add a static lockdown policy LSM security: Add kernel lockdown functionality - 1 - 0 0 0 2019-07-18 Matthew Garrett New
[V36,02/29] security: Add a "locked down" LSM hook security: Add kernel lockdown functionality 2 - - 0 0 0 2019-07-18 Matthew Garrett New
[V36,01/29] security: Support early LSMs security: Add kernel lockdown functionality 2 - - 0 0 0 2019-07-18 Matthew Garrett New
[RFC,v2] fanotify, inotify, dnotify, security: add security hook for fs notifications [RFC,v2] fanotify, inotify, dnotify, security: add security hook for fs notifications - - - 0 0 0 2019-07-18 Aaron Goidel New
[RFC/RFT,v2,2/2] KEYS: trusted: Add generic trusted keys framework KEYS: trusted: Add generic trusted keys framework - - - 0 0 0 2019-07-18 Sumit Garg New
[RFC/RFT,v2,1/2] KEYS: trusted: create trusted keys subsystem KEYS: trusted: Add generic trusted keys framework - - - 0 0 0 2019-07-18 Sumit Garg New
[RFC,v7,1/1] Add dm verity root hash pkcs7 sig validation. Add dm verity root hash pkcs7 sig validation. - - - 0 0 0 2019-07-18 Jaskaran Singh Khurana New
[RFC] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down [RFC] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down - 1 - 0 0 0 2019-07-16 Matthew Garrett New
[V35,29/29] lockdown: Print current->comm in restriction messages Kernel lockdown functionality - 1 - 0 0 0 2019-07-15 Matthew Garrett New
« 1 2 ... 3 4 565 66 »