Show patches with: Archived = No       |   1082 patches
« 1 2 3 410 11 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[-next,1/4] ima: Use DECLARE_FLEX_ARRAY() helper in ima_modsig Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[-next,1/5] landlock: expand access_mask_t to u32 type landlock: add chmod and chown support - - - --- 2022-08-22 xiujianfeng Handled Elsewhere
[-next,2/4] ima: Use DECLARE_FLEX_ARRAY() helper in ima_template_entry Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[-next,2/5] landlock: add chmod and chown support landlock: add chmod and chown support - - - --- 2022-08-22 xiujianfeng Handled Elsewhere
[-next,3/4] ima: Use DECLARE_FLEX_ARRAY() helper in ima_policy Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[-next,3/5] landlock/selftests: add selftests for chmod and chown landlock: add chmod and chown support - - - --- 2022-08-22 xiujianfeng Handled Elsewhere
[-next,4/4] integrity: Use DECLARE_FLEX_ARRAY() helper in integrity.h Use DECLARE_FLEX_ARRAY() helper for ima - - - --- 2022-09-05 Gaosheng Cui Handled Elsewhere
[-next,4/5] landlock/samples: add chmod and chown support landlock: add chmod and chown support - - - --- 2022-08-22 xiujianfeng Handled Elsewhere
[-next,5/5] landlock: update chmod and chown support in document landlock: add chmod and chown support - - - --- 2022-08-22 xiujianfeng Handled Elsewhere
[-next,v2,1/6] landlock: expand access_mask_t to u32 type landlock: add chmod and chown support - - - --- 2022-08-27 xiujianfeng Handled Elsewhere
[-next,v2,2/6] landlock: abstract walk_to_visible_parent() helper landlock: add chmod and chown support - - - --- 2022-08-27 xiujianfeng Handled Elsewhere
[-next,v2,3/6] landlock: add chmod and chown support landlock: add chmod and chown support - - - --- 2022-08-27 xiujianfeng Handled Elsewhere
[-next,v2,4/6] landlock/selftests: add selftests for chmod and chown landlock: add chmod and chown support - - - --- 2022-08-27 xiujianfeng Handled Elsewhere
[-next,v2,5/6] landlock/samples: add chmod and chown support landlock: add chmod and chown support - - - --- 2022-08-27 xiujianfeng Handled Elsewhere
[-next,v2,6/6] landlock: update chmod and chown support in document landlock: add chmod and chown support - - - --- 2022-08-27 xiujianfeng Handled Elsewhere
[-next] apparmor: fix a memleak in free_ruleset() [-next] apparmor: fix a memleak in free_ruleset() 1 - - --- 2022-10-25 Gaosheng Cui Handled Elsewhere
[-next] apparmor: Fix memleak in aa_simple_write_to_buffer() [-next] apparmor: Fix memleak in aa_simple_write_to_buffer() 1 - - --- 2022-06-14 xiujianfeng Handled Elsewhere
[-next] apparmor: Fix some kernel-doc comments [-next] apparmor: Fix some kernel-doc comments 1 - - --- 2022-07-18 Yang Li Handled Elsewhere
[-next] apparmor: Fix spelling of function name in comment block [-next] apparmor: Fix spelling of function name in comment block 1 - - --- 2022-10-14 Yang Li Handled Elsewhere
[-next] evm: Use IS_ENABLED to initialize .enabled [-next] evm: Use IS_ENABLED to initialize .enabled - 1 - --- 2022-06-06 xiujianfeng Handled Elsewhere
[-next] ima: Use if/else statement in init_ima() [-next] ima: Use if/else statement in init_ima() - - - --- 2022-06-09 xiujianfeng Handled Elsewhere
[-next] lsm_audit: Clean up redundant NULL pointer check [-next] lsm_audit: Clean up redundant NULL pointer check - 1 - --- 2022-06-14 xiujianfeng pcmoore Superseded
[-next] Revert "evm: Fix memleak in init_desc" [-next] Revert "evm: Fix memleak in init_desc" - - - --- 2022-05-27 xiujianfeng Handled Elsewhere
[-next] security: Fix some kernel-doc comments [-next] security: Fix some kernel-doc comments - - - --- 2022-09-05 Yang Li Handled Elsewhere
[-next] selftests/landlock: Fix selftest ptrace_test run fail [-next] selftests/landlock: Fix selftest ptrace_test run fail - - - --- 2022-11-28 limin New
[-next] smack: cleanup obsolete mount option flags [-next] smack: cleanup obsolete mount option flags - - - --- 2022-09-08 xiujianfeng Handled Elsewhere
[-next] smack: Remove the redundant lsm_inode_alloc [-next] smack: Remove the redundant lsm_inode_alloc - - - --- 2022-06-10 xiujianfeng Handled Elsewhere
[(urgent)] vfs: fix uninitialized uid/gid in chown_common() [(urgent)] vfs: fix uninitialized uid/gid in chown_common() - - - --- 2022-09-19 Tetsuo Handa Handled Elsewhere
[0/2] fs/exec: Explicitly unshare fs_struct on exec - - - --- 2022-10-06 Kees Cook Handled Elsewhere
[01/10] security: Export security_hook_heads [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[01/11] S.A.R.A. Documentation - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[02/10] mm: Export copy_to_kernel_nofault() [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[02/11] S.A.R.A. framework creation - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[03/10] fs,kernel: Export d_absolute_path()/find_task_by_pid_ns()/find_task_by_vpid() [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[03/11] Creation of "usb_device_auth" LSM hook - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[04/10] CaitSith: Add header file. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[04/11] S.A.R.A. USB Filtering - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[05/10] CaitSith: Add LSM interface management file. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[05/11] Creation of "check_vmflags" LSM hook - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[06/11] S.A.R.A. cred blob management - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[07/10] CaitSith: Add permission checking functions. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[07/11] S.A.R.A. WX Protection - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[08/10] CaitSith: Add pathname calculation functions. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[08/11] Creation of "pagefault_handler_x86" LSM hook - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[09/10] CaitSith: Add garbage collector functions. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[09/11] Trampoline emulation - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[09/29] security: add set acl hook acl: add vfs posix acl api - - - --- 2022-09-22 Christian Brauner pcmoore Superseded
[1/1] Add CONFIG_SECURITY_SELINUX_PERMISSIVE_DONTAUDIT Add CONFIG_SECURITY_SELINUX_PERMISSIVE_DONTAUDIT - - 2 --- 2022-09-21 Jeff Xu Handled Elsewhere
[1/1] efi: Correct Macmini capitalisation in uefi cert quirk [1/1] efi: Correct Macmini capitalisation in uefi cert quirk - - 1 --- 2022-08-06 Orlando Chamberlain Handled Elsewhere
[1/1] keys/keyrings: Fix typo in string [1/1] keys/keyrings: Fix typo in string - - - --- 2022-07-15 XU pengfei Handled Elsewhere
[1/1] keys/request_key_auth.c: Use strscpy instead of strlcpy [1/1] keys/request_key_auth.c: Use strscpy instead of strlcpy - 1 - --- 2022-09-05 Petr Vorel Handled Elsewhere
[1/1] security: avoid a leak in securityfs_remove() [1/1] security: avoid a leak in securityfs_remove() - - - --- 2022-06-02 Yuanjun Gong pcmoore Rejected
[1/1] smack_lsm: remove unnecessary type casting [1/1] smack_lsm: remove unnecessary type casting - - - --- 2022-10-26 XU pengfei Handled Elsewhere
[1/2] fs: convert simple_xattrs to RCU list fs: fix capable() call in simple_xattr_list() - - - --- 2022-09-01 Ondrej Mosnacek pcmoore Handled Elsewhere
[1/2] fs/exec: Explicitly unshare fs_struct on exec [1/2] fs/exec: Explicitly unshare fs_struct on exec - - - --- 2022-10-06 Kees Cook Handled Elsewhere
[1/2] landlock: Support truncate(2). landlock: truncate(2) support - - - --- 2022-07-07 Günther Noack Handled Elsewhere
[1/2] powerpc/pseries: block untrusted device tree changes when locked down powerpc/pseries: restrict error injection and DT changes when locked down - - - --- 2022-09-22 Nathan Lynch pcmoore Superseded
[1/2] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - - - --- 2022-06-21 Frederick Lawler Handled Elsewhere
[1/2] security: Add LSM hook to setgroups() syscall [1/2] security: Add LSM hook to setgroups() syscall - - - --- 2022-06-13 Micah Morton Superseded
[1/2] security/keys/secure_key: Adds the secure key support based on CAAM. - 1 - --- 2018-07-20 Udit Agarwal Superseded
[1/3] AppArmor: Fix kernel-doc [1/3] AppArmor: Fix kernel-doc 1 - - --- 2022-10-08 Jiapeng Chong Handled Elsewhere
[1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Accepted
[1/3] LSM: SafeSetID: fix userns bug in selftest [1/3] LSM: SafeSetID: fix userns bug in selftest - - - --- 2022-06-15 Micah Morton Handled Elsewhere
[1/3] security: Add LSM hook to setgroups() syscall [1/3] security: Add LSM hook to setgroups() syscall 1 1 - --- 2022-06-16 Micah Morton Handled Elsewhere
[1/4] powerpc/pseries: Add new functions to PLPKS driver powerpc/pseries: expose firmware security variables via filesystem - - - --- 2022-11-06 Nayna Jain pcmoore Rejected
[1/9] integrity: Prepare for having "ima" and "evm" available in "integrity" LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[10/10] CaitSith: Add Kconfig and Makefile files. [01/10] security: Export security_hook_heads - - - --- 2022-11-02 Tetsuo Handa pcmoore Rejected
[10/11] Allowing for stacking procattr support in S.A.R.A. - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[11/11] S.A.R.A. WX Protection procattr interface - - - --- 2017-06-12 Salvatore Mesoraca Superseded
[11/29] smack: implement set acl hook acl: add vfs posix acl api - - - --- 2022-09-22 Christian Brauner pcmoore Superseded
[2/2] bpf-lsm: Make bpf_lsm_create_user_ns() sleepable Introduce security_create_user_ns() - - - --- 2022-06-21 Frederick Lawler Handled Elsewhere
[2/2] encrypted_keys: Adds support for secure key-type as master key. - 1 - --- 2018-07-20 Udit Agarwal Superseded
[2/2] exec: Remove LSM_UNSAFE_SHARE [1/2] fs/exec: Explicitly unshare fs_struct on exec - - - --- 2022-10-06 Kees Cook Handled Elsewhere
[2/2] fs: don't call capable() prematurely in simple_xattr_list() fs: fix capable() call in simple_xattr_list() - - - --- 2022-09-01 Ondrej Mosnacek pcmoore Handled Elsewhere
[2/2] landlock: Selftests for truncate(2) support. landlock: truncate(2) support - - - --- 2022-07-07 Günther Noack Handled Elsewhere
[2/2] LSM: SafeSetID: Add setgroups() security policy handling [1/2] security: Add LSM hook to setgroups() syscall - - - --- 2022-06-13 Micah Morton Handled Elsewhere
[2/2] powerpc/rtas: block error injection when locked down powerpc/pseries: restrict error injection and DT changes when locked down - - - --- 2022-09-22 Nathan Lynch pcmoore Superseded
[2/2] tomoyo: struct path it might get from LSM callers won't have NULL dentry or mnt Untitled series #669482 1 - - --- 2022-08-20 Al Viro pcmoore Handled Elsewhere
[2/3] LSM: Fix kernel-doc [1/3] AppArmor: Fix kernel-doc 1 - - --- 2022-10-08 Jiapeng Chong Handled Elsewhere
[2/3] LSM: SafeSetID: Add setgroups() security policy handling [1/3] security: Add LSM hook to setgroups() syscall - - - --- 2022-06-16 Micah Morton Handled Elsewhere
[2/3] LSM: SafeSetID: selftest cleanup and prepare for GIDs [1/3] LSM: SafeSetID: fix userns bug in selftest - - - --- 2022-06-15 Micah Morton Handled Elsewhere
[2/3] selinux: implement the security_uring_cmd() LSM hook LSM hooks for IORING_OP_URING_CMD - - - --- 2022-08-22 Paul Moore pcmoore Accepted
[2/4] fs: define a firmware security filesystem named fwsecurityfs powerpc/pseries: expose firmware security variables via filesystem - - - --- 2022-11-06 Nayna Jain pcmoore Rejected
[2/9] security: Move trivial IMA hooks into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[3/3] /dev/null: add IORING_OP_URING_CMD support LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Accepted
[3/3] AppArmor: Fix kernel-doc [1/3] AppArmor: Fix kernel-doc 1 - - --- 2022-10-08 Jiapeng Chong Handled Elsewhere
[3/3] LSM: SafeSetID: add GID testing to selftest [1/3] LSM: SafeSetID: fix userns bug in selftest - - - --- 2022-06-15 Micah Morton Handled Elsewhere
[3/3] LSM: SafeSetID: add setgroups() testing to selftest [1/3] security: Add LSM hook to setgroups() syscall - - - --- 2022-06-16 Micah Morton Handled Elsewhere
[3/4] powerpc/pseries: initialize fwsecurityfs with plpks arch-specific structure powerpc/pseries: expose firmware security variables via filesystem - - - --- 2022-11-06 Nayna Jain pcmoore Rejected
[3/8] caps: use type safe idmapping helpers Untitled series #688152 - - - --- 2022-10-24 Christian Brauner pcmoore Handled Elsewhere
[3/9] ima: Move xattr hooks into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[4/4] powerpc/pseries: expose authenticated variables stored in LPAR PKS powerpc/pseries: expose firmware security variables via filesystem - - - --- 2022-11-06 Nayna Jain pcmoore Rejected
[4/9] ima: Move ima_file_free() into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[5.10,053/390] hardening: Clarify Kconfig text for auto-var-init Untitled series #688216 1 - - --- 2022-10-24 Greg KH Handled Elsewhere
[5.10,489/545] kexec, KEYS, s390: Make use of built-in and secondary keyring for signature verifica… Untitled series #669268 2 1 - --- 2022-08-19 Greg KH Handled Elsewhere
[5.15,02/45] arm64: kexec_file: use more system keyrings to verify kernel image signature Untitled series #679094 2 - - --- 2022-09-21 Greg KH Handled Elsewhere
[5.15,13/14] kexec, KEYS: make the code in bzImage64_verify_sig generic Untitled series #669257 - 1 - --- 2022-08-19 Greg KH Handled Elsewhere
[5.15,14/14] arm64: kexec_file: use more system keyrings to verify kernel image signature Untitled series #669257 2 - - --- 2022-08-19 Greg KH Handled Elsewhere
[5.15,5/6] kexec, KEYS: make the code in bzImage64_verify_sig generic arm64: kexec_file: use more system keyrings to verify kernel image signature + dependencies - 1 - --- 2022-09-23 Michal Suchánek Handled Elsewhere
[5.15,6/6] arm64: kexec_file: use more system keyrings to verify kernel image signature arm64: kexec_file: use more system keyrings to verify kernel image signature + dependencies 2 - - --- 2022-09-23 Michal Suchánek Handled Elsewhere
« 1 2 3 410 11 »