Show patches with: none      |   15510 patches
« 1 2 ... 90 91 92155 156 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v2] KEYS: trusted: correctly initialize digests and fix locking issue [v2] KEYS: trusted: correctly initialize digests and fix locking issue - - - --- 2019-09-04 Roberto Sassu New
KEYS: trusted: correctly initialize digests and fix locking issue KEYS: trusted: correctly initialize digests and fix locking issue - - - --- 2019-09-04 Roberto Sassu New
selinux: fix residual uses of current_security() for the SELinux blob selinux: fix residual uses of current_security() for the SELinux blob 1 1 - --- 2019-09-04 Stephen Smalley New
Smack: Move request_buffer from stack to smack_audit_data Smack: Move request_buffer from stack to smack_audit_data - - - --- 2019-09-03 Denis Efremov New
[v22,13/24] x86/sgx: Add provisioning Untitled series #168955 - - - --- 2019-09-03 Jarkko Sakkinen New
keys: Fix missing null pointer check in request_key_auth_describe() keys: Fix missing null pointer check in request_key_auth_describe() - - 1 --- 2019-09-02 David Howells New
[3/3] ima: update the file measurement on writes [1/3] ima: keep the integrity state of open files up to date - - - --- 2019-09-02 Janne Karhunen New
[2/3] ima: update the file measurement on truncate [1/3] ima: keep the integrity state of open files up to date - - - --- 2019-09-02 Janne Karhunen New
[1/3] ima: keep the integrity state of open files up to date [1/3] ima: keep the integrity state of open files up to date - - - --- 2019-09-02 Janne Karhunen New
netlabel: remove redundant assignment to pointer iter netlabel: remove redundant assignment to pointer iter 1 - - --- 2019-09-01 Colin King New
keys: ensure that ->match_free() is called in request_key_and_link() keys: ensure that ->match_free() is called in request_key_and_link() - - - --- 2019-08-30 David Howells New
[2/2] mtd: phram,slram: Disable when the kernel is locked down [1/2] staging: comedi: Restrict COMEDI_DEVCONFIG when the kernel is locked down 1 1 - --- 2019-08-30 Ben Hutchings New
[1/2] staging: comedi: Restrict COMEDI_DEVCONFIG when the kernel is locked down [1/2] staging: comedi: Restrict COMEDI_DEVCONFIG when the kernel is locked down - - - --- 2019-08-30 Ben Hutchings New
[11/11] smack: Implement the watch_key and post_notification hooks [untested] [ver #7] Keyrings, Block and USB notifications [ver #7] - - - --- 2019-08-30 David Howells New
[10/11] selinux: Implement the watch_key security hook [ver #7] Keyrings, Block and USB notifications [ver #7] 1 - - --- 2019-08-30 David Howells New
[09/11] Add sample notification program [ver #7] Keyrings, Block and USB notifications [ver #7] - - - --- 2019-08-30 David Howells New
[08/11] usb: Add USB subsystem notifications [ver #7] Keyrings, Block and USB notifications [ver #7] - 1 - --- 2019-08-30 David Howells New
[07/11] block: Add block layer notifications [ver #7] Keyrings, Block and USB notifications [ver #7] - - - --- 2019-08-30 David Howells New
[06/11] Add a general, global device notification watch list [ver #7] Keyrings, Block and USB notifications [ver #7] - - - --- 2019-08-30 David Howells New
[05/11] keys: Add a notification facility [ver #7] Keyrings, Block and USB notifications [ver #7] - - - --- 2019-08-30 David Howells New
[04/11] General notification queue with user mmap()'able ring buffer [ver #7] Keyrings, Block and USB notifications [ver #7] - 1 - --- 2019-08-30 David Howells New
[03/11] security: Add a hook for the point of notification insertion [ver #7] Keyrings, Block and USB notifications [ver #7] - - - --- 2019-08-30 David Howells New
[02/11] security: Add hooks to rule on setting a watch [ver #7] Keyrings, Block and USB notifications [ver #7] - - - --- 2019-08-30 David Howells New
[01/11] uapi: General notification ring definitions [ver #7] Keyrings, Block and USB notifications [ver #7] - 1 - --- 2019-08-30 David Howells New
tpm_tis_core: Set TPM_CHIP_FLAG_IRQ before probing for interrupts tpm_tis_core: Set TPM_CHIP_FLAG_IRQ before probing for interrupts - - - --- 2019-08-30 Stefan Berger New
[v8,28/28] AppArmor: Remove the exclusive flag LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,27/28] LSM: Add /proc attr entry for full LSM context LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,26/28] NET: Add SO_PEERCONTEXT for multiple LSMs LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,25/28] LSM: Provide an user space interface for the default display LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,24/28] Audit: Include object data for all security modules LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,23/28] Audit: Add subj_LSM fields when necessary LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,22/28] SELinux: Verify LSM display sanity in binder LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,21/28] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,20/28] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,19/28] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,18/28] LSM: Use lsmcontext in security_dentry_init_security LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,17/28] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,16/28] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,15/28] LSM: Specify which LSM to display LSM: Module stacking for AppArmor - - - --- 2019-08-29 Casey Schaufler New
[v8,14/28] IMA: Change internal interfaces to use lsmblobs LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,13/28] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,12/28] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,11/28] LSM: Use lsmblob in security_task_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,10/28] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,09/28] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,08/28] LSM: Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,07/28] net: Prepare UDS for security module stacking LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,06/28] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,05/28] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,04/28] LSM: Create and manage the lsmblob data structure. LSM: Module stacking for AppArmor - 2 - --- 2019-08-29 Casey Schaufler New
[v8,03/28] LSM: Infrastructure management of the key blob LSM: Module stacking for AppArmor - 3 - --- 2019-08-29 Casey Schaufler New
[v8,02/28] LSM: Infrastructure management of the sock security LSM: Module stacking for AppArmor - 3 - --- 2019-08-29 Casey Schaufler New
[v8,01/28] LSM: Infrastructure management of the superblock LSM: Module stacking for AppArmor - 3 - --- 2019-08-29 Casey Schaufler New
[11/11] smack: Implement the watch_key and post_notification hooks [untested] [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
[10/11] selinux: Implement the watch_key security hook [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
[09/11] Add sample notification program [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
[08/11] usb: Add USB subsystem notifications [ver #6] Keyrings, Block and USB notifications [ver #6] - 1 - --- 2019-08-29 David Howells New
[07/11] block: Add block layer notifications [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
[06/11] Add a general, global device notification watch list [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
[05/11] keys: Add a notification facility [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
[04/11] General notification queue with user mmap()'able ring buffer [ver #6] Keyrings, Block and USB notifications [ver #6] - 1 - --- 2019-08-29 David Howells New
[03/11] security: Add a hook for the point of notification insertion [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
overlayfs: filter of trusted xattr results in audit. overlayfs: filter of trusted xattr results in audit. - - - --- 2019-08-29 Mark Salyzyn New
[02/11] security: Add hooks to rule on setting a watch [ver #6] Keyrings, Block and USB notifications [ver #6] - - - --- 2019-08-29 David Howells New
[01/11] uapi: General notification ring definitions [ver #6] Keyrings, Block and USB notifications [ver #6] - 1 - --- 2019-08-29 David Howells New
ima: ima_api: Use struct_size() in kzalloc() ima: ima_api: Use struct_size() in kzalloc() - - - --- 2019-08-29 Gustavo A. R. Silva New
[keys-next] keys: Fix permissions assigned to anonymous session keyrings [keys-next] keys: Fix permissions assigned to anonymous session keyrings - - - --- 2019-08-27 Eric Biggers New
smack: use GFP_NOFS while holding inode_smack::smk_lock smack: use GFP_NOFS while holding inode_smack::smk_lock - - - --- 2019-08-22 Eric Biggers New
[RFC] fix d_absolute_path() interplay with fsmount() [RFC] fix d_absolute_path() interplay with fsmount() - - - --- 2019-08-22 Al Viro New
[2/2] selinux: use netlink_receive hook [1/2] rtnetlink: gate MAC address with an LSM hook - - - --- 2019-08-21 Jeffrey Vander Stoep New
[1/2] rtnetlink: gate MAC address with an LSM hook [1/2] rtnetlink: gate MAC address with an LSM hook - - - --- 2019-08-21 Jeffrey Vander Stoep New
[v5,4/4] KEYS: trusted: move tpm2 trusted keys code Create and consolidate trusted keys subsystem - 1 - --- 2019-08-21 Sumit Garg New
[v5,3/4] KEYS: trusted: create trusted keys subsystem Create and consolidate trusted keys subsystem - 1 - --- 2019-08-21 Sumit Garg New
[v5,2/4] KEYS: trusted: use common tpm_buf for TPM1.x code Create and consolidate trusted keys subsystem - 1 - --- 2019-08-21 Sumit Garg New
[v5,1/4] tpm: move tpm_buf code to include/linux/ Create and consolidate trusted keys subsystem - 1 - --- 2019-08-21 Sumit Garg New
tpm_tis: Fix interrupt probing tpm_tis: Fix interrupt probing - 3 - --- 2019-08-20 Stefan Berger New
[V40,29/29] lockdown: Print current->comm in restriction messages Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,27/29] tracefs: Restrict tracefs when the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,26/29] debugfs: Restrict debugfs when the kernel is locked down Add kernel lockdown functionality - - - --- 2019-08-20 Matthew Garrett New
[V40,25/29] kexec: Allow kexec_file() with appropriate IMA policy when locked down Add kernel lockdown functionality 1 - - --- 2019-08-20 Matthew Garrett New
[V40,24/29] lockdown: Lock down perf when in confidentiality mode Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,23/29] bpf: Restrict bpf when kernel lockdown is in confidentiality mode Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,22/29] lockdown: Lock down tracing and perf kprobes when in confidentiality mode Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,21/29] lockdown: Lock down /proc/kcore Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,20/29] x86/mmiotrace: Lock down the testmmiotrace module Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,19/29] lockdown: Lock down module params that specify hardware parameters (eg. ioport) Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,18/29] lockdown: Lock down TIOCSSERIAL Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,17/29] lockdown: Prohibit PCMCIA CIS storage when the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,16/29] acpi: Disable ACPI table override if the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,15/29] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,14/29] ACPI: Limit access to custom_method when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,13/29] x86/msr: Restrict MSR access when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,12/29] x86: Lock down IO port access when the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,11/29] PCI: Lock down BAR access when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,10/29] hibernate: Disable when the kernel is locked down Add kernel lockdown functionality 2 1 - --- 2019-08-20 Matthew Garrett New
[V40,09/29] kexec_file: Restrict at runtime if the kernel is locked down Add kernel lockdown functionality - - - --- 2019-08-20 Matthew Garrett New
[V40,08/29] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE Add kernel lockdown functionality - - - --- 2019-08-20 Matthew Garrett New
[V40,07/29] lockdown: Copy secure_boot flag in boot params across kexec reboot Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,06/29] kexec_load: Disable at runtime if the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
« 1 2 ... 90 91 92155 156 »