Show patches with: Archived = No       |   8791 patches
« 1 2 3 487 88 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[RFC,v5,12/12] cleanup: uapi/linux/audit.h Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,11/12] documentation: add ipe documentation Integrity Policy Enforcement LSM (IPE) 1 - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,11/11] cleanup: uapi/linux/audit.h Untitled series #325717 - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,10/12] ipe: add property for dmverity roothash Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,10/11] documentation: add ipe documentation Untitled series #325713 1 - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,09/11] dm-verity: add bdev_setsecurity hook for root-hash Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,08/11] ipe: add property for signed dmverity volumes Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,07/11] dm-verity: add bdev_setsecurity hook for dm-verity signature Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,06/11] dm-verity: move signature check after tree validation Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,05/11] fs: add security blob and hooks for block_device Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,04/11] ipe: add property for trust of boot volume Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,03/11] security: add ipe lsm policy parser and policy loading Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,02/11] security: add ipe lsm evaluation loop and audit system Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[RFC,v5,01/11] scripts: add ipe tooling to generate boot policy Integrity Policy Enforcement LSM (IPE) - - - 0 0 0 2020-07-28 Deven Bowers New
[v1,4/4,RFC] arm/trampfd: Provide support for the trampoline file descriptor Implement Trampoline File Descriptor - - - 0 0 0 2020-07-28 Madhavan T. Venkataraman New
[v1,3/4,RFC] arm64/trampfd: Provide support for the trampoline file descriptor Implement Trampoline File Descriptor - - - 0 0 0 2020-07-28 Madhavan T. Venkataraman New
[v1,2/4,RFC] x86/trampfd: Provide support for the trampoline file descriptor Implement Trampoline File Descriptor - - - 0 0 0 2020-07-28 Madhavan T. Venkataraman New
[v1,1/4,RFC] fs/trampfd: Implement the trampoline file descriptor API Implement Trampoline File Descriptor - - - 0 0 0 2020-07-28 Madhavan T. Venkataraman New
[V3fix,ghak120] audit: initialize context values in case of mandatory events [V3fix,ghak120] audit: initialize context values in case of mandatory events - - - 0 0 0 2020-07-27 Richard Guy Briggs New
[v2,2/2] LSM: SafeSetID: Add GID security policy handling Untitled series #324795 - 1 - 0 0 0 2020-07-27 Micah Morton New
[2/2] ima: Fail rule parsing when asymmetric key measurement isn't supportable ima: Fix keyrings race condition and other key related bugs - 1 - 0 0 0 2020-07-27 Tyler Hicks New
[1/2] ima: Pre-parse the list of keyrings in a KEY_CHECK rule ima: Fix keyrings race condition and other key related bugs - 1 - 0 0 0 2020-07-27 Tyler Hicks New
[v2] netfilter: Replace HTTP links with HTTPS ones [v2] netfilter: Replace HTTP links with HTTPS ones - - - 0 0 0 2020-07-25 Alexander A. Klimov New
smack: fix slab-out-of-bounds by checking for overflow smack: fix slab-out-of-bounds by checking for overflow - - - 0 0 0 2020-07-25 B K Karthik New
[RFC,bpf-next] bpf: POC on local_storage charge and uncharge map_ops [RFC,bpf-next] bpf: POC on local_storage charge and uncharge map_ops - - - 0 0 0 2020-07-25 Martin KaFai Lau New
watch_queue: Limit the number of watches a user can hold watch_queue: Limit the number of watches a user can hold - 1 - 0 0 0 2020-07-24 David Howells New
[v3,19/19] test_firmware: Test partial read support Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,18/19] firmware: Add request_partial_firmware_into_buf() Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,17/19] firmware: Store opt_flags in fw_priv Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,16/19] fs/kernel_file_read: Add "offset" arg for partial reads Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,15/19] IMA: Add support for file reads without contents Introduce partial kernel_read_file() support - 1 - 0 0 0 2020-07-24 Kees Cook New
[v3,14/19] LSM: Add "contents" flag to kernel_read_file hook Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,13/19] module: Call security_kernel_post_load_data() Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,12/19] firmware_loader: Use security_post_load_data() Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,11/19] LSM: Introduce kernel_post_load_data() hook Introduce partial kernel_read_file() support - - - 0 0 0 2020-07-24 Kees Cook New
[v3,10/19] fs/kernel_read_file: Add file_size output argument Introduce partial kernel_read_file() support 1 1 - 0 0 0 2020-07-24 Kees Cook New
[v3,09/19] fs/kernel_read_file: Switch buffer size arg to size_t Introduce partial kernel_read_file() support 1 1 - 0 0 0 2020-07-24 Kees Cook New
[v3,08/19] fs/kernel_read_file: Remove redundant size argument Introduce partial kernel_read_file() support 1 1 - 0 0 0 2020-07-24 Kees Cook New
[v3,07/19] fs/kernel_read_file: Split into separate source file Introduce partial kernel_read_file() support 1 1 - 0 0 0 2020-07-24 Kees Cook New
[v3,06/19] fs/kernel_read_file: Split into separate include file Introduce partial kernel_read_file() support 1 2 - 0 0 0 2020-07-24 Kees Cook New
[v3,05/19] fs/kernel_read_file: Remove FIRMWARE_EFI_EMBEDDED enum Introduce partial kernel_read_file() support 1 - - 0 0 0 2020-07-24 Kees Cook New
[v3,04/19] fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum Introduce partial kernel_read_file() support 1 1 - 0 0 0 2020-07-24 Kees Cook New
[v3,03/19] firmware_loader: EFI firmware loader must handle pre-allocated buffer Introduce partial kernel_read_file() support 1 - - 0 0 0 2020-07-24 Kees Cook New
[v3,02/19] selftest/firmware: Add selftest timeout in settings Introduce partial kernel_read_file() support 1 1 - 0 0 0 2020-07-24 Kees Cook New
[v3,01/19] test_firmware: Test platform fw loading on non-EFI systems Introduce partial kernel_read_file() support 1 - - 0 0 0 2020-07-24 Kees Cook New
[v19,23/23] AppArmor: Remove the exclusive flag LSM: Module stacking for AppArmor 2 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,22/23] LSM: Add /proc attr entry for full LSM context LSM: Module stacking for AppArmor - 1 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,21/23] Audit: Add a new record for multiple object LSM attributes LSM: Module stacking for AppArmor - - - 0 0 0 2020-07-24 Casey Schaufler New
[v19,20/23] Audit: Add new record for multiple process LSM attributes LSM: Module stacking for AppArmor - - - 0 0 0 2020-07-24 Casey Schaufler New
[v19,19/23] LSM: Verify LSM display sanity in binder LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,18/23] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,17/23] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,16/23] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor 1 1 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,15/23] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor 2 1 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,14/23] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,13/23] LSM: Specify which LSM to display LSM: Module stacking for AppArmor 2 1 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,12/23] IMA: Change internal interfaces to use lsmblobs LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,11/23] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor 2 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,10/23] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,09/23] LSM: Use lsmblob in security_task_getsecid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,08/23] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,07/23] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,06/23] LSM: Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor - 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,05/23] net: Prepare UDS for security module stacking LSM: Module stacking for AppArmor - 1 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,04/23] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,03/23] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-07-24 Casey Schaufler New
[v19,02/23] LSM: Create and manage the lsmblob data structure. LSM: Module stacking for AppArmor 3 - - 0 0 0 2020-07-24 Casey Schaufler New
[v19,01/23] LSM: Infrastructure management of the sock security LSM: Module stacking for AppArmor 2 2 - 0 0 0 2020-07-24 Casey Schaufler New
[17/17] samples: add error state information to test-fsinfo.c [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[16/17] vfs: allow fsinfo to fetch the current state of s_wb_err [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[15/17] errseq: add a new errseq_scrape function [ver #20] VFS: Filesystem information [ver #20] - 2 - 0 0 0 2020-07-24 David Howells New
[14/17] fsinfo: Add an attribute that lists all the visible mounts in a namespace [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[13/17] fsinfo: Add support to ext4 [ver #20] VFS: Filesystem information [ver #20] - 1 - 0 0 0 2020-07-24 David Howells New
[12/17] fsinfo: Add support for AFS [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[11/17] fsinfo: Add API documentation [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[10/17] fsinfo: sample: Mount listing program [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[09/17] fsinfo: Provide notification overrun handling support [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[08/17] fsinfo: Allow mount topology and propagation info to be retrieved [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[07/17] fsinfo: Allow mount information to be queried [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[06/17] fsinfo: Add a uniquifier ID to struct mount [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[05/17] fsinfo: Allow fsinfo() to look up a mount object by ID [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[04/17] fsinfo: Allow retrieval of superblock devname, options and stats [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[03/17] fsinfo: Provide a bitmap of the features a filesystem supports [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[02/17] fsinfo: Add fsinfo() syscall to query filesystem information [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[01/17] fsinfo: Introduce a non-repeating system-unique superblock ID [ver #20] VFS: Filesystem information [ver #20] - - - 0 0 0 2020-07-24 David Howells New
[4/4] watch_queue: sample: Display mount tree change notifications Mount notifications - - - 0 0 0 2020-07-24 David Howells New
[3/4] watch_queue: Implement mount topology and attribute change notifications Mount notifications - - - 0 0 0 2020-07-24 David Howells New
[2/4] watch_queue: Add security hooks to rule on setting mount watches Mount notifications - - - 0 0 0 2020-07-24 David Howells New
[1/4] watch_queue: Make watch_sizeof() check record size Mount notifications - - - 0 0 0 2020-07-24 David Howells New
[v7,7/7] ima: add policy support for the new file open MAY_OPENEXEC flag Add support for O_MAYEXEC - 2 - 0 0 0 2020-07-23 Mickaël Salaün New
[v7,6/7] selftest/openat2: Add tests for O_MAYEXEC enforcing Add support for O_MAYEXEC - 2 - 0 0 0 2020-07-23 Mickaël Salaün New
[v7,5/7] fs,doc: Enable to enforce noexec mounts or file exec through O_MAYEXEC Add support for O_MAYEXEC 1 1 - 0 0 0 2020-07-23 Mickaël Salaün New
[v7,4/7] fs: Introduce O_MAYEXEC flag for openat2(2) Add support for O_MAYEXEC 1 - - 0 0 0 2020-07-23 Mickaël Salaün New
[v7,3/7] exec: Move path_noexec() check earlier Add support for O_MAYEXEC - - - 0 0 0 2020-07-23 Mickaël Salaün New
[v7,2/7] exec: Move S_ISREG() check earlier Add support for O_MAYEXEC - - - 0 0 0 2020-07-23 Mickaël Salaün New
[v7,1/7] exec: Change uselib(2) IS_SREG() failure to EACCES Add support for O_MAYEXEC 1 - - 0 0 0 2020-07-23 Mickaël Salaün New
[2/2] Smack: prevent underflow in smk_set_cipso() [1/2] Smack: fix another vsscanf out of bounds - - - 0 0 0 2020-07-23 Dan Carpenter New
[1/2] Smack: fix another vsscanf out of bounds [1/2] Smack: fix another vsscanf out of bounds - - - 0 0 0 2020-07-23 Dan Carpenter New
[bpf-next,v6,7/7] bpf: Add selftests for local_storage Generalizing bpf_local_storage 1 - - 0 0 0 2020-07-23 KP Singh New
[bpf-next,v6,6/7] bpf: Allow local storage to be used from LSM programs Generalizing bpf_local_storage - - - 0 0 0 2020-07-23 KP Singh New
« 1 2 3 487 88 »