Show patches with: none      |   8367 patches
« 1 2 3 483 84 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[08/12] ima: Shallow copy the args_p member of ima_rule_entry.lsm elements ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - 0 0 0 2020-06-23 Tyler Hicks New
[07/12] ima: Fail rule parsing when the KEY_CHECK hook is combined with an invalid cond ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - 0 0 0 2020-06-23 Tyler Hicks New
[06/12] ima: Fail rule parsing when the KEXEC_CMDLINE hook is combined with an invalid cond ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - 1 - 0 0 0 2020-06-23 Tyler Hicks New
[05/12] ima: Fail rule parsing when buffer hook functions have an invalid action ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - 0 0 0 2020-06-23 Tyler Hicks New
[04/12] ima: Free the entire rule if it fails to parse ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - 0 0 0 2020-06-23 Tyler Hicks New
[03/12] ima: Free the entire rule when deleting a list of rules ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - 0 0 0 2020-06-23 Tyler Hicks New
[02/12] ima: Create a function to free a rule entry ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - - - 0 0 0 2020-06-23 Tyler Hicks New
[01/12] ima: Have the LSM free its audit rule ima: Fix rule parsing bugs and extend KEXEC_CMDLINE rule support - 1 - 0 0 0 2020-06-23 Tyler Hicks New
ima: extend boot_aggregate with kernel measurements ima: extend boot_aggregate with kernel measurements - - - 0 0 0 2020-06-22 Maurizio Drocco New
security: Fix hook iteration and default value for inode_copy_up_xattr security: Fix hook iteration and default value for inode_copy_up_xattr - - - 0 0 0 2020-06-21 KP Singh New
[GIT,PULL] SELinux fixes for v5.8 (#1) [GIT,PULL] SELinux fixes for v5.8 (#1) - - - 0 0 0 2020-06-21 Paul Moore New
ima_evm_utils: extended calc_bootaggr to PCRs 8 - 9 ima_evm_utils: extended calc_bootaggr to PCRs 8 - 9 - - - 0 0 0 2020-06-18 Maurizio Drocco New
extend IMA boot_aggregate with kernel measurements extend IMA boot_aggregate with kernel measurements - - - 0 0 0 2020-06-18 Maurizio Drocco New
[11/11] ima: Remove semicolon at the end of ima_get_binary_runtime_size() [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[10/11] ima: Don't ignore errors from crypto_shash_update() [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[09/11] ima: Don't remove security.ima if file must not be appraised [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[08/11] ima: Allow imasig requirement to be satisfied by EVM portable signatures [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[07/11] evm: Set IMA_CHANGE_XATTR/ATTR bit if EVM_ALLOW_METADATA_WRITES is set [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[06/11] evm: Allow setxattr() and setattr() if metadata digest won't change [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[05/11] evm: Allow xattr/attr operations for portable signatures if check fails [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[04/11] evm: Check size of security.evm before using it [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[03/11] evm: Refuse EVM_ALLOW_METADATA_WRITES only if the HMAC key is loaded [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[02/11] evm: Load EVM key in ima_load_x509() to avoid appraisal [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded [01/11] evm: Execute evm_inode_init_security() only when the HMAC key is loaded - - - 0 0 0 2020-06-18 Roberto Sassu New
[v3,3/3] prctl: Allow ptrace capable processes to change exe_fd capabilities: Introduce CAP_CHECKPOINT_RESTORE - - - 0 0 0 2020-06-18 Adrian Reber New
[v3,2/3] selftests: add clone3() CAP_CHECKPOINT_RESTORE test capabilities: Introduce CAP_CHECKPOINT_RESTORE - - - 0 0 0 2020-06-18 Adrian Reber New
[v3,1/3] capabilities: Introduce CAP_CHECKPOINT_RESTORE capabilities: Introduce CAP_CHECKPOINT_RESTORE - - - 0 0 0 2020-06-18 Adrian Reber New
[V2,3/3] Add support for arm64 to carry over IMA measurement logs Adding support for carrying IMA measurement logs - - - 0 0 0 2020-06-18 Prakhar Srivastava New
[V2,2/3] dt-bindings: chosen: Document ima-kexec-buffer Adding support for carrying IMA measurement logs - - - 0 0 0 2020-06-18 Prakhar Srivastava New
[V2,1/3] Refactoring powerpc code for carrying over IMA measurement logs, to move non architectur... Adding support for carrying IMA measurement logs - - - 0 0 0 2020-06-18 Prakhar Srivastava New
[RFC] security: Add a config option to disable security mitigations [RFC] security: Add a config option to disable security mitigations - - - 0 0 0 2020-06-18 Pranith Kumar New
[v33,12/21] x86/sgx: Allow a limited use of ATTRIBUTE.PROVISIONKEY for attestation Untitled series #304643 1 - - 0 0 0 2020-06-17 Jarkko Sakkinen New
[v33,11/21] x86/sgx: Linux Enclave Driver Untitled series #304643 1 - 6 0 0 0 2020-06-17 Jarkko Sakkinen New
[bpf-next,v2,4/4] bpf: Add selftests for local_storage Generalizing bpf_local_storage 1 - - 0 0 0 2020-06-17 KP Singh New
[bpf-next,v2,3/4] bpf: Allow local storage to be used from LSM programs Generalizing bpf_local_storage - - - 0 0 0 2020-06-17 KP Singh New
[bpf-next,v2,2/4] bpf: Implement bpf_local_storage for inodes Generalizing bpf_local_storage - - - 0 0 0 2020-06-17 KP Singh New
[bpf-next,v2,1/4] bpf: Generalize bpf_sk_storage Generalizing bpf_local_storage - - - 0 0 0 2020-06-17 KP Singh New
[v3,1/1] fs: move kernel_read_file* to its own include file [v3,1/1] fs: move kernel_read_file* to its own include file 1 1 - 0 0 0 2020-06-17 Scott Branden New
[v2,1/1] fs: move kernel_read_file* to its own include file [v2,1/1] fs: move kernel_read_file* to its own include file - - - 0 0 0 2020-06-17 Scott Branden New
fs: move kernel_read_file* to its own include file fs: move kernel_read_file* to its own include file - - - 0 0 0 2020-06-17 Scott Branden New
[v5,2/2] mm, treewide: Rename kzfree() to kfree_sensitive() mm, treewide: Rename kzfree() to kfree_sensitive() 3 - - 0 0 0 2020-06-16 Waiman Long New
[v5,1/2] mm/slab: Use memzero_explicit() in kzfree() mm, treewide: Rename kzfree() to kfree_sensitive() 1 - - 0 0 0 2020-06-16 Waiman Long New
[v2,RFC] security: allow using Clang's zero initialization for stack variables [v2,RFC] security: allow using Clang's zero initialization for stack variables - 1 - 0 0 0 2020-06-16 Alexander Potapenko New
[8/8,DEBUG] seccomp: Report bitmap coverage ranges seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[7/8] x86: Enable seccomp constant action bitmaps seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[6/8] x86: Provide API for local kernel TLB flushing seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[5/8] selftests/seccomp: Compare bitmap vs filter overhead seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[4/8] seccomp: Implement constant action bitmaps seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[3/8] seccomp: Introduce SECCOMP_PIN_ARCHITECTURE seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[2/8] seccomp: Use pr_fmt seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[1/8] selftests/seccomp: Improve calibration loop seccomp: Implement constant action bitmaps - - - 0 0 0 2020-06-16 Kees Cook New
[v4,3/3] btrfs: Use kfree() in btrfs_ioctl_get_subvol_info() mm, treewide: Rename kzfree() to kfree_sensitive() - - - 0 0 0 2020-06-16 Waiman Long New
[v4,2/3] mm, treewide: Rename kzfree() to kfree_sensitive() mm, treewide: Rename kzfree() to kfree_sensitive() 3 - - 0 0 0 2020-06-16 Waiman Long New
[v4,1/3] mm/slab: Use memzero_explicit() in kzfree() mm, treewide: Rename kzfree() to kfree_sensitive() 1 - - 0 0 0 2020-06-16 Waiman Long New
[v9,8/8] ima: add FIRMWARE_PARTIAL_READ support firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-15 Scott Branden New
[v9,7/8] MAINTAINERS: bcm-vk: add maintainer for Broadcom VK Driver firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-15 Scott Branden New
[v9,5/8] bcm-vk: add bcm_vk UAPI firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-15 Scott Branden New
[v9,4/8] firmware: test partial file reads of request_partial_firmware_into_buf firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-15 Scott Branden New
[v9,3/8] test_firmware: add partial read support for request_firmware_into_buf firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-15 Scott Branden New
[v9,2/8] firmware: add request_partial_firmware_into_buf firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-15 Scott Branden New
[v9,1/8] fs: introduce kernel_pread_file* support firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-15 Scott Branden New
[13/13] fs: don't change the address limit for ->read_iter in __kernel_read [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[12/13] fs: remove __vfs_read [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[11/13] fs: implement kernel_read using __kernel_read [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[10/13] integrity/ima: switch to using __kernel_read [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[09/13] fs: add a __kernel_read helper [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[08/13] fs: don't change the address limit for ->write_iter in __kernel_write [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[07/13] fs: remove __vfs_write [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[06/13] fs: implement kernel_write using __kernel_write [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[05/13] fs: check FMODE_WRITE in __kernel_write [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[04/13] fs: unexport __kernel_write [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[03/13] bpfilter: switch to kernel_write [01/13] cachefiles: switch to kernel_write - - - 0 0 0 2020-06-15 Christoph Hellwig New
[02/13] autofs: switch to kernel_write [01/13] cachefiles: switch to kernel_write 1 - - 0 0 0 2020-06-15 Christoph Hellwig New
[01/13] cachefiles: switch to kernel_write [01/13] cachefiles: switch to kernel_write - 1 - 0 0 0 2020-06-15 Christoph Hellwig New
[RFC] security: allow using Clang's zero initialization for stack variables [RFC] security: allow using Clang's zero initialization for stack variables - - - 0 0 0 2020-06-14 Alexander Potapenko New
[5/5] LSM: Define workqueue for measuring security module state LSM: Measure security module state - - - 0 0 0 2020-06-13 Lakshmi Ramasubramanian New
[4/5] LSM: Define SELinux function to measure security state LSM: Measure security module state - - - 0 0 0 2020-06-13 Lakshmi Ramasubramanian New
[3/5] LSM: Add security_state function pointer in lsm_info struct LSM: Measure security module state - - - 0 0 0 2020-06-13 Lakshmi Ramasubramanian New
[2/5] IMA: Define an IMA hook to measure LSM data LSM: Measure security module state - - - 0 0 0 2020-06-13 Lakshmi Ramasubramanian New
[1/5] IMA: Add LSM_STATE func to measure LSM data LSM: Measure security module state - - - 0 0 0 2020-06-13 Lakshmi Ramasubramanian New
dh key: Missing a blank line after declarations dh key: Missing a blank line after declarations - - - 0 0 0 2020-06-12 Frank Werner-Krippendorf New
extend IMA boot_aggregate with kernel measurements extend IMA boot_aggregate with kernel measurements - - - 0 0 0 2020-06-12 Maurizio Drocco New
extend IMA boot_aggregate with kernel measurements extend IMA boot_aggregate with kernel measurements - - - 0 0 0 2020-06-11 Maurizio Drocco New
[5/5] selftests: simplify kmod failure value kmod/umh: a few fixes - - - 0 0 0 2020-06-10 Luis Chamberlain New
[4/5] umh: fix processed error when UMH_WAIT_PROC is used kmod/umh: a few fixes - - - 0 0 0 2020-06-10 Luis Chamberlain New
[3/5] test_kmod: Avoid potential double free in trigger_config_run_type() kmod/umh: a few fixes 1 - - 0 0 0 2020-06-10 Luis Chamberlain New
[2/5] kmod: Remove redundant "be an" in the comment kmod/umh: a few fixes 1 - - 0 0 0 2020-06-10 Luis Chamberlain New
[1/5] selftests: kmod: Use variable NAME in kmod_test_0001() kmod/umh: a few fixes 1 - - 0 0 0 2020-06-10 Luis Chamberlain New
[4/4] cap_get_proc.3: change "current process" to "calling process" [1/4] cap_get_proc.3: Typo fixes - - - 0 0 0 2020-06-10 Michael Kerrisk (man-pages) New
[3/4] getpcaps.8: Note that pid==0 displays capabilities of getpcaps itself [1/4] cap_get_proc.3: Typo fixes - - - 0 0 0 2020-06-10 Michael Kerrisk (man-pages) New
[2/4] cap_get_proc.3: for cap_get_pid(), pid==0 means "the calling process" [1/4] cap_get_proc.3: Typo fixes - - - 0 0 0 2020-06-10 Michael Kerrisk (man-pages) New
[1/4] cap_get_proc.3: Typo fixes [1/4] cap_get_proc.3: Typo fixes - - - 0 0 0 2020-06-10 Michael Kerrisk (man-pages) New
[v8,8/8] ima: add FIRMWARE_PARTIAL_READ support firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-09 Scott Branden New
[v8,7/8] MAINTAINERS: bcm-vk: add maintainer for Broadcom VK Driver firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-09 Scott Branden New
[v8,5/8] bcm-vk: add bcm_vk UAPI firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-09 Scott Branden New
[v8,4/8] firmware: test partial file reads of request_firmware_into_buf firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-09 Scott Branden New
[v8,3/8] test_firmware: add partial read support for request_firmware_into_buf firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-09 Scott Branden New
[v8,2/8] firmware: add offset to request_firmware_into_buf firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-09 Scott Branden New
[v8,1/8] fs: introduce kernel_pread_file* support firmware: add request_partial_firmware_into_buf - - - 0 0 0 2020-06-09 Scott Branden New
[GIT,PULL] SafeSetID LSM changes for v5.8 [GIT,PULL] SafeSetID LSM changes for v5.8 - - - 0 0 0 2020-06-09 Micah Morton New
« 1 2 3 483 84 »