Show patches with: none      |   15508 patches
« 1 2 ... 91 92 93155 156 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[V40,03/29] security: Add a static lockdown policy LSM Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,02/29] security: Add a "locked down" LSM hook Add kernel lockdown functionality 2 - - --- 2019-08-20 Matthew Garrett New
[V40,01/29] security: Support early LSMs Add kernel lockdown functionality 2 - - --- 2019-08-20 Matthew Garrett New
keys: Fix description size keys: Fix description size - - - --- 2019-08-19 David Howells New
[WIP,RFC,3/3] security: add infoflow LSM Introduce Infoflow LSM - - - --- 2019-08-18 Roberto Sassu New
[WIP,RFC,2/3] lsm notifier: distinguish between state change and policy change Introduce Infoflow LSM - - - --- 2019-08-18 Roberto Sassu New
[WIP,RFC,1/3] security: introduce call_int_hook_and() macro Introduce Infoflow LSM - - - --- 2019-08-18 Roberto Sassu New
[RFC,v3] security,capability: pass object information to security_capable [RFC,v3] security,capability: pass object information to security_capable - - - --- 2019-08-15 Aaron Goidel New
[RFC] audit, security: allow LSMs to selectively enable audit collection [RFC] audit, security: allow LSMs to selectively enable audit collection - - - --- 2019-08-15 Aaron Goidel New
tracefs: Fix NULL pointer dereference when no lockdown is used tracefs: Fix NULL pointer dereference when no lockdown is used - - - --- 2019-08-14 Marek Szyprowski New
[6/6] Document locked_down LSM hook lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[5/6] kexec: s/KEXEC_VERIFY_SIG/KEXEC_SIG/ for consistency lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[4/6] security: fix ptr_ret.cocci warnings lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[3/6] Avoid build warning when !CONFIG_KEXEC_SIG lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[2/6] early_security_init() needs a stub got !CONFIG_SECURITY lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[1/6] tracefs: Fix potential null dereference in default_file_open() lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[RFC/RFT,v4,5/5] KEYS: trusted: Add generic trusted keys framework Add generic trusted keys framework/subsystem - - - --- 2019-08-13 Sumit Garg New
[RFC/RFT,v4,4/5] KEYS: trusted: move tpm2 trusted keys code Add generic trusted keys framework/subsystem - - - --- 2019-08-13 Sumit Garg New
[RFC/RFT,v4,3/5] KEYS: trusted: create trusted keys subsystem Add generic trusted keys framework/subsystem - - - --- 2019-08-13 Sumit Garg New
[RFC/RFT,v4,2/5] KEYS: trusted: use common tpm_buf for TPM1.x code Add generic trusted keys framework/subsystem - 1 - --- 2019-08-13 Sumit Garg New
[RFC/RFT,v4,1/5] tpm: move tpm_buf code to include/linux/ Add generic trusted keys framework/subsystem - - - --- 2019-08-13 Sumit Garg New
[v3] fanotify, inotify, dnotify, security: add security hook for fs notifications [v3] fanotify, inotify, dnotify, security: add security hook for fs notifications 2 - - --- 2019-08-12 Aaron Goidel New
tracefs: Fix potential null dereference in default_file_open() tracefs: Fix potential null dereference in default_file_open() - - - --- 2019-08-12 Ben Hutchings New
[next] ima: ima_modsig: Fix use-after-free bug in ima_read_modsig [next] ima: ima_modsig: Fix use-after-free bug in ima_read_modsig - 1 - --- 2019-08-11 Gustavo A. R. Silva New
[V39] Enforce module signatures if the kernel is locked down [V39] Enforce module signatures if the kernel is locked down - 1 - --- 2019-08-09 Matthew Garrett New
[V39] Lock down module params that specify hardware parameters (eg. ioport) [V39] Lock down module params that specify hardware parameters (eg. ioport) - 1 - --- 2019-08-09 Matthew Garrett New
[v2] fanotify, inotify, dnotify, security: add security hook for fs notifications [v2] fanotify, inotify, dnotify, security: add security hook for fs notifications 2 - - --- 2019-08-09 Aaron Goidel New
[v2] tomoyo: Don't check open/getattr permission on sockets. [v2] tomoyo: Don't check open/getattr permission on sockets. - - - --- 2019-08-09 Tetsuo Handa New
LSM: Disable move_mount() syscall when TOMOYO or AppArmor is enabled. LSM: Disable move_mount() syscall when TOMOYO or AppArmor is enabled. 1 - - --- 2019-08-09 Tetsuo Handa New
ima: Fix a use after free in ima_read_modsig() ima: Fix a use after free in ima_read_modsig() - - - --- 2019-08-08 Dan Carpenter New
[V38,29/29] lockdown: Print current->comm in restriction messages security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,27/29] tracefs: Restrict tracefs when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,26/29] debugfs: Restrict debugfs when the kernel is locked down security: Add support for locking down the kernel - - - --- 2019-08-08 Matthew Garrett New
[V38,25/29] kexec: Allow kexec_file() with appropriate IMA policy when locked down security: Add support for locking down the kernel 1 - - --- 2019-08-08 Matthew Garrett New
[V38,24/29] Lock down perf when in confidentiality mode security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,23/29] bpf: Restrict bpf when kernel lockdown is in confidentiality mode security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,22/29] Lock down tracing and perf kprobes when in confidentiality mode security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,21/29] Lock down /proc/kcore security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,20/29] x86/mmiotrace: Lock down the testmmiotrace module security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,19/29] Lock down module params that specify hardware parameters (eg. ioport) security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,18/29] Lock down TIOCSSERIAL security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,17/29] Prohibit PCMCIA CIS storage when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,16/29] acpi: Disable ACPI table override if the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,15/29] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,14/29] ACPI: Limit access to custom_method when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,13/29] x86/msr: Restrict MSR access when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,12/29] x86: Lock down IO port access when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,11/29] PCI: Lock down BAR access when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,10/29] hibernate: Disable when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,09/29] kexec_file: Restrict at runtime if the kernel is locked down security: Add support for locking down the kernel - 2 - --- 2019-08-08 Matthew Garrett New
[V38,08/29] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE security: Add support for locking down the kernel - 2 - --- 2019-08-08 Matthew Garrett New
[V38,07/29] Copy secure_boot flag in boot params across kexec reboot security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,06/29] kexec_load: Disable at runtime if the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,05/29] Restrict /dev/{mem,kmem,port} when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,04/29] Enforce module signatures if the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,03/29] security: Add a static lockdown policy LSM security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,02/29] security: Add a "locked down" LSM hook security: Add support for locking down the kernel 2 - - --- 2019-08-08 Matthew Garrett New
[V38,01/29] security: Support early LSMs security: Add support for locking down the kernel 2 - - --- 2019-08-08 Matthew Garrett New
[v7,16/16] Smack: Remove the exclusive flag LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,15/16] LSM: Avoid network conflicts in SELinux and Smack LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,14/16] LSM: Hook for netlabel reconciliation LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,13/16] LSM: Remember the NLTYPE of netlabel sockets LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,12/16] Netlabel: Provide labeling type to security modules LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,11/16] Netlabel: Add a secattr comparison API function LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,10/16] LSM: Change error detection for UDP peer security LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,09/16] LSM: Fix for security_init_inode_security LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,08/16] LSM: Infrastructure security blobs for mount options LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,07/16] LSM: Correct handling of ENOSYS in inode_setxattr LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,06/16] LSM: Make multiple MAC modules safe in nfs and kernfs LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,05/16] LSM: Multiple modules using security_ismaclabel LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,04/16] LSM: List multiple security attributes in security_inode_listsecurity LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,03/16] LSM: Support multiple LSMs using inode_init_security LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,02/16] Smack: Detect if secmarks can be safely used LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,01/16] LSM: Single hook called in secmark refcounting LSM: Full module stacking - - - --- 2019-08-07 Casey Schaufler New
[v7,28/28] AppArmor: Remove the exclusive flag LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,27/28] LSM: Add /proc attr entry for full LSM context LSM: Module stacking for AppArmor - - - --- 2019-08-07 Casey Schaufler New
[v7,26/28] NET: Add SO_PEERCONTEXT for multiple LSMs LSM: Module stacking for AppArmor - 1 - --- 2019-08-07 Casey Schaufler New
[v7,25/28] LSM: Provide an user space interface for the default display LSM: Module stacking for AppArmor - - - --- 2019-08-07 Casey Schaufler New
[v7,24/28] Audit: Include object data for all security modules LSM: Module stacking for AppArmor - - - --- 2019-08-07 Casey Schaufler New
[v7,23/28] Audit: Add subj_LSM fields when necessary LSM: Module stacking for AppArmor - - - --- 2019-08-07 Casey Schaufler New
[v7,22/28] SELinux: Verify LSM display sanity in binder LSM: Module stacking for AppArmor - - - --- 2019-08-07 Casey Schaufler New
[v7,21/28] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,20/28] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,19/28] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor - - - --- 2019-08-07 Casey Schaufler New
[v7,18/28] LSM: Use lsmcontext in security_dentry_init_security LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,17/28] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor - - - --- 2019-08-07 Casey Schaufler New
[v7,16/28] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,15/28] LSM: Specify which LSM to display LSM: Module stacking for AppArmor - 1 - --- 2019-08-07 Casey Schaufler New
[v7,14/28] IMA: Change internal interfaces to use lsmblobs LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,13/28] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,12/28] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,11/28] LSM: Use lsmblob in security_task_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,10/28] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,09/28] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,08/28] LSM: Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,07/28] net: Prepare UDS for security module stacking LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,06/28] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,05/28] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
[v7,04/28] LSM: Create and manage the lsmblob data structure. LSM: Module stacking for AppArmor - 2 - --- 2019-08-07 Casey Schaufler New
« 1 2 ... 91 92 93155 156 »