Show patches with: Archived = No       |   1102 patches
« 1 2 3 411 12 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[mptcp-net] mptcp: fix LSM labeling for passive msk [mptcp-net] mptcp: fix LSM labeling for passive msk - - - --- 2022-12-07 Paolo Abeni New
[RFC,v2,7/7] selftests/bpf: Change return value in test_libbpf_get_fd_by_id_opts.c bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu New
[RFC,v2,6/7] selftests/bpf: Prevent positive ret values in test_lsm and verify_pkcs7_sig bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu New
[RFC,v2,5/7] selftests/bpf: Check if return values of LSM programs are allowed bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu New
[RFC,v2,4/7] bpf-lsm: Enforce return value limitations on security modules bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu New
[RFC,v2,3/7] lsm: Redefine LSM_HOOK() macro to add return value flags as argument bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu New
[RFC,v2,2/7] bpf: Mark ALU32 operations in bpf_reg_state structure bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu New
[RFC,v2,1/7] bpf: Remove superfluous btf_id_set_contains() declaration bpf-lsm: Check return values of security modules - - - --- 2022-12-07 Roberto Sassu New
[v2,10/10] integrity: restrict INTEGRITY_KEYRING_MACHINE to restrict_link_by_ca Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,09/10] KEYS: CA link restriction Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,08/10] integrity: Use root of trust signature restriction Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,07/10] KEYS: X.509: Flag Intermediate CA certs as endorsed Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,06/10] KEYS: Introduce keyring restriction that validates ca trust Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,05/10] KEYS: Introduce a CA endorsed flag Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,04/10] KEYS: X.509: Parse Key Usage Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,03/10] KEYS: X.509: Parse Basic Constraints for CA Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,02/10] KEYS: Add missing function documentation Add CA enforcement keyring restrictions - - - --- 2022-12-07 Eric Snowberg New
[v2,01/10] KEYS: Create static version of public_key_verify_signature Add CA enforcement keyring restrictions - 2 - --- 2022-12-07 Eric Snowberg New
public_key: Add a comment to public_key_signature struct definition public_key: Add a comment to public_key_signature struct definition - - - --- 2022-12-07 Roberto Sassu New
[v1] landlock: Explain file descriptor access rights [v1] landlock: Explain file descriptor access rights - - - --- 2022-12-05 Mickaël Salaün Handled Elsewhere
[v2,2/2] ima: Alloc ima_max_digest_data in xattr_verify() if CONFIG_VMAP_STACK=y ima/evm: Ensure digest to verify is in linear mapping area - - - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v2,1/2] evm: Alloc evm_digest in evm_verify_hmac() if CONFIG_VMAP_STACK=y ima/evm: Ensure digest to verify is in linear mapping area - - - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v2,2/2] lsm: Add/fix return values in lsm_hooks.h and fix formatting lsm: Improve LSM hooks documentation - - - --- 2022-11-28 Roberto Sassu Accepted
[-next] selftests/landlock: Fix selftest ptrace_test run fail [-next] selftests/landlock: Fix selftest ptrace_test run fail - - - --- 2022-11-28 limin Handled Elsewhere
[v5] evm: Correct inode_init_security hooks behaviors [v5] evm: Correct inode_init_security hooks behaviors - - - --- 2022-11-25 Nicolas Bouchinet New
ima: Fix hash dependency to correct algorithm ima: Fix hash dependency to correct algorithm - - - --- 2022-11-25 Tianjia Zhang Handled Elsewhere
[v1,8/8] lsm: wireup syscalls lsm_self_attr and lsm_module_list [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v1,7/8] LSM: Create lsm_module_list system call [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v1,6/8] LSM: lsm_self_attr syscall for LSM self attributes [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v1,5/8] proc: Use lsmids instead of lsm names for attrs [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v1,4/8] LSM: Maintain a table of LSM attribute data [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v1,3/8] LSM: Identify the process attributes for each module [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v1,2/8] LSM: Add an LSM identifier for external use [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v1,1/8] LSM: Identify modules by more than name [v1,1/8] LSM: Identify modules by more than name - - - --- 2022-11-23 Casey Schaufler Superseded
[v3,3/3] certs: don't try to update blacklist keys certs: Prevent spurious errors on repeated blacklisting - - - --- 2022-11-18 Thomas Weißschuh Handled Elsewhere
[v3,2/3] KEYS: Add key_create() certs: Prevent spurious errors on repeated blacklisting - - - --- 2022-11-18 Thomas Weißschuh Handled Elsewhere
[v3,1/3] certs: log hash value on blacklist error certs: Prevent spurious errors on repeated blacklisting - - - --- 2022-11-18 Thomas Weißschuh Handled Elsewhere
landlock: Allow filesystem layout changes for domains without such rule type landlock: Allow filesystem layout changes for domains without such rule type - - - --- 2022-11-17 Mickaël Salaün Handled Elsewhere
[RFC,1/1] Use ioctl selinux callback io_uring commands that implement the ioctl op convention RFC on how to include LSM hooks for io_uring commands - - - --- 2022-11-16 Joel Granados Changes Requested
[mm-unstable,v1,20/20] mm: rename FOLL_FORCE to FOLL_PTRACE mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - - - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,19/20] habanalabs: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) 1 - - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,18/20] RDMA/hw/qib/qib_user_pages: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - - - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,17/20] drm/exynos: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,16/20] mm/frame-vector: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) 2 2 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,15/20] media: pci/ivtv: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) 1 - - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,14/20] drm/etnaviv: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,13/20] media: videobuf-dma-sg: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) 1 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,12/20] RDMA/siw: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,11/20] RDMA/usnic: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,10/20] RDMA/umem: remove FOLL_FORCE usage mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 1 --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,09/20] mm/gup: reliable R/O long-term pinning in COW mappings mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) 1 2 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,08/20] mm: extend FAULT_FLAG_UNSHARE support to anything in a COW mapping mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,07/20] mm: don't call vm_ops->huge_fault() in wp_huge_pmd()/wp_huge_pud() for priva… mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,06/20] mm: rework handling in do_wp_page() based on private vs. shared mappings mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,05/20] mm: add early FAULT_FLAG_WRITE consistency checks mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,04/20] mm: add early FAULT_FLAG_UNSHARE consistency checks mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - 1 - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,03/20] selftests/vm: cow: R/O long-term pinning reliability tests for non-anon pages mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - - - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,02/20] selftests/vm: cow: basic COW tests for non-anonymous pages mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) - - - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[mm-unstable,v1,01/20] selftests/vm: anon_cow: prepare for non-anonymous COW tests mm/gup: remove FOLL_FORCE usage from drivers (reliable R/O long-term pinning) 1 - - --- 2022-11-16 David Hildenbrand Handled Elsewhere
[bpf,v2] selftests/bpf: fix memory leak of lsm_cgroup [bpf,v2] selftests/bpf: fix memory leak of lsm_cgroup 1 - - --- 2022-11-15 wangyufen Handled Elsewhere
[RFC] SELINUX: Remove obsolete deferred inode security init list. [RFC] SELINUX: Remove obsolete deferred inode security init list. - - - --- 2022-11-14 Konstantin Meskhidze (A) Handled Elsewhere
[bpf] selftests/bpf: fix memory leak of lsm_cgroup [bpf] selftests/bpf: fix memory leak of lsm_cgroup - - - --- 2022-11-14 wangyufen Handled Elsewhere
[RESEND,v2,2/2] kernel/watch_queue: NULL the dangling *pipe, and use it for clear check watch_queue: Clean up some code - - - --- 2022-11-12 Siddh Raman Pant Handled Elsewhere
[RESEND,v2,1/2] include/linux/watch_queue: Improve documentation watch_queue: Clean up some code - - - --- 2022-11-12 Siddh Raman Pant Handled Elsewhere
ima: Fix misuse of dereference of pointer in template_desc_init_fields() ima: Fix misuse of dereference of pointer in template_desc_init_fields() - 1 - --- 2022-11-12 xiujianfeng Handled Elsewhere
[v5,06/11] security: keys: trusted: Verify creation data Encrypted Hibernation - 1 - --- 2022-11-11 Evan Green Handled Elsewhere
[v5,05/11] security: keys: trusted: Allow storage of PCR values in creation data Encrypted Hibernation - 2 - --- 2022-11-11 Evan Green Handled Elsewhere
[v5,04/11] security: keys: trusted: Include TPM2 creation data Encrypted Hibernation - - - --- 2022-11-11 Evan Green Handled Elsewhere
[v2] integrity: Fix memory leakage in keyring allocation error path [v2] integrity: Fix memory leakage in keyring allocation error path - - - --- 2022-11-11 GUO Zihua Handled Elsewhere
net: fix memory leak in security_sk_alloc() net: fix memory leak in security_sk_alloc() - - - --- 2022-11-11 wangyufen Rejected
KEYS: trusted: tee: Make registered shm dependency explicit KEYS: trusted: tee: Make registered shm dependency explicit - 1 1 --- 2022-11-10 Sumit Garg Handled Elsewhere
integrity: Free key restriction when keyring allocation fails integrity: Free key restriction when keyring allocation fails - - - --- 2022-11-09 GUO Zihua Handled Elsewhere
[v2,3/3] certs: don't try to update blacklist keys certs: Prevent spurious errors on repeated blacklisting - - - --- 2022-11-09 Thomas Weißschuh Handled Elsewhere
[v2,2/3] KEYS: Add key_create() certs: Prevent spurious errors on repeated blacklisting - - - --- 2022-11-09 Thomas Weißschuh Handled Elsewhere
[v2,1/3] certs: log more information on blacklist error certs: Prevent spurious errors on repeated blacklisting - - - --- 2022-11-09 Thomas Weißschuh Handled Elsewhere
[v3] samples/landlock: Document best-effort approach for LANDLOCK_ACCESS_FS_REFER [v3] samples/landlock: Document best-effort approach for LANDLOCK_ACCESS_FS_REFER - - - --- 2022-11-07 Günther Noack Handled Elsewhere
integrity: iint: Remove unnecessary (void*) conversions integrity: iint: Remove unnecessary (void*) conversions - - - --- 2022-11-07 Li zeming Handled Elsewhere
[GIT,PULL] Landlock fix for v6.1 #2 [GIT,PULL] Landlock fix for v6.1 #2 - - - --- 2022-11-04 Mickaël Salaün Handled Elsewhere
[v2] samples/landlock: Document best-effort approach for LANDLOCK_ACCESS_FS_REFER [v2] samples/landlock: Document best-effort approach for LANDLOCK_ACCESS_FS_REFER - - - --- 2022-11-04 Günther Noack Handled Elsewhere
ima: Make a copy of sig and digest in asymmetric_verify() ima: Make a copy of sig and digest in asymmetric_verify() - - - --- 2022-11-04 Roberto Sassu Handled Elsewhere
[v4,06/11] security: keys: trusted: Verify creation data Encrypted Hibernation - 1 - --- 2022-11-03 Evan Green Handled Elsewhere
[v4,05/11] security: keys: trusted: Allow storage of PCR values in creation data Encrypted Hibernation - 2 - --- 2022-11-03 Evan Green Handled Elsewhere
[v4,04/11] security: keys: trusted: Include TPM2 creation data Encrypted Hibernation - 1 - --- 2022-11-03 Evan Green Handled Elsewhere
ima: Fix memory leak in __ima_inode_hash() ima: Fix memory leak in __ima_inode_hash() - 1 - --- 2022-11-02 Roberto Sassu Handled Elsewhere
samples/landlock: Document best-effort approach for LANDLOCK_ACCESS_FS_REFER samples/landlock: Document best-effort approach for LANDLOCK_ACCESS_FS_REFER - - - --- 2022-10-30 Günther Noack Handled Elsewhere
apparmor: Add __init annotation to aa_{setup/teardown}_dfa_engine() apparmor: Add __init annotation to aa_{setup/teardown}_dfa_engine() 1 - - --- 2022-10-29 xiujianfeng Handled Elsewhere
[RFC,3/3] selftests/bpf: Check if return values of LSM programs are allowed [RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu Superseded
[RFC,2/3] bpf-lsm: Limit values that can be returned by security modules [RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu Superseded
[RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook [RFC,1/3] lsm: Clarify documentation of vm_enough_memory hook - - - --- 2022-10-28 Roberto Sassu Superseded
apparmor: Fix memleak in alloc_ns() apparmor: Fix memleak in alloc_ns() 1 - - --- 2022-10-28 xiujianfeng Handled Elsewhere
efi: Add iMac Pro 2017 to uefi skip cert quirk efi: Add iMac Pro 2017 to uefi skip cert quirk - - - --- 2022-10-27 Aditya Garg Handled Elsewhere
efi: Add iMac Pro 2017 to uefi skip cert quirk efi: Add iMac Pro 2017 to uefi skip cert quirk - - - --- 2022-10-27 Aditya Garg Handled Elsewhere
[1/1] smack_lsm: remove unnecessary type casting [1/1] smack_lsm: remove unnecessary type casting - - - --- 2022-10-26 XU pengfei Handled Elsewhere
[v2,1/1] audit: Fix some kernel-doc warnings [v2,1/1] audit: Fix some kernel-doc warnings - - - --- 2022-10-26 Bo Liu Superseded
security: commoncap: fix potential memleak on error path from vfs_getxattr_alloc security: commoncap: fix potential memleak on error path from vfs_getxattr_alloc - - - --- 2022-10-25 Gaosheng Cui Changes Requested
ima: fix a possible null pointer dereference ima: fix a possible null pointer dereference - - - --- 2022-10-25 Gaosheng Cui Handled Elsewhere
[-next] apparmor: fix a memleak in free_ruleset() [-next] apparmor: fix a memleak in free_ruleset() 1 - - --- 2022-10-25 Gaosheng Cui Handled Elsewhere
[5.10,053/390] hardening: Clarify Kconfig text for auto-var-init Untitled series #688216 1 - - --- 2022-10-24 Greg Kroah-Hartman Handled Elsewhere
[v8,12/12] landlock: Document Landlock's network support Network support for Landlock - - - --- 2022-10-21 Konstantin Meskhidze (A) Handled Elsewhere
[v8,11/12] samples/landlock: Add network demo Network support for Landlock - - - --- 2022-10-21 Konstantin Meskhidze (A) Handled Elsewhere
« 1 2 3 411 12 »