Show patches with: Archived = No       |   3678 patches
« 1 2 ... 7 8 936 37 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v3] selftests/move_mount_set_group:Fix build issue with old libc [v3] selftests/move_mount_set_group:Fix build issue with old libc - 1 - --- 2024-01-11 Hu Yadi Handled Elsewhere
[RFC,9/9] apparmor: Switch unconfined and in tree labels to managed ref mode Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,8/9] apparmor: Switch labels to percpu rcurefcount in unmanaged mode Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,7/9] percpu-rcuref: Add basic infrastructure Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,6/9] apparmor: Initial prototype for optimizing ref switch Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,5/9] apparmor: Switch intree labels to percpu mode Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,4/9] apparmor: Add infrastructure to reclaim percpu labels Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,3/9] apparmor: Switch unconfined namespaces refcount to percpu mode Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,2/9] apparmor: Switch labels to percpu refcount in atomic mode Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[RFC,1/9] doc: Add document for apparmor refcount management Nginx refcount scalability issue with Apparmor enabled and potential solutions - - - --- 2024-01-10 Neeraj Upadhyay Handled Elsewhere
[v2] selftests/move_mount_set_group:Make tests build with old libc [v2] selftests/move_mount_set_group:Make tests build with old libc 1 1 - --- 2024-01-10 Hu Yadi Handled Elsewhere
selftests/landlock:Fix two build issues selftests/landlock:Fix two build issues - 1 - --- 2024-01-10 Hu Yadi Handled Elsewhere
selftests/move_mount_set_group:Make tests build with old libc selftests/move_mount_set_group:Make tests build with old libc - 1 - --- 2024-01-10 Hu Yadi Handled Elsewhere
[3/3] treewide: Update LLVM Bugzilla links Update LLVM Phabricator and Bugzilla links - - - --- 2024-01-09 Nathan Chancellor Handled Elsewhere
[2/3] arch and include: Update LLVM Phabricator links Update LLVM Phabricator and Bugzilla links - 1 - --- 2024-01-09 Nathan Chancellor Handled Elsewhere
[1/3] selftests/bpf: Update LLVM Phabricator links Update LLVM Phabricator and Bugzilla links 1 - - --- 2024-01-09 Nathan Chancellor Handled Elsewhere
[v2] integrity: eliminate unnecessary "Problem loading X.509 certificate" msg [v2] integrity: eliminate unnecessary "Problem loading X.509 certificate" msg - 1 - --- 2024-01-09 Coiby Xu Handled Elsewhere
[GIT,PULL] Landlock updates for v6.8 [GIT,PULL] Landlock updates for v6.8 - - - --- 2024-01-08 Mickaël Salaün Handled Elsewhere
[v4,4/4] arch/x86: Do not include <asm/bootparam.h> in several files arch/x86: Remove unnecessary dependencies on bootparam.h 1 - - --- 2024-01-08 Thomas Zimmermann Handled Elsewhere
[v4,3/4] arch/x86: Implement arch_ima_efi_boot_mode() in source file arch/x86: Remove unnecessary dependencies on bootparam.h - - - --- 2024-01-08 Thomas Zimmermann Handled Elsewhere
[v4,2/4] arch/x86: Move internal setup_data structures into setup_data.h arch/x86: Remove unnecessary dependencies on bootparam.h - - - --- 2024-01-08 Thomas Zimmermann Handled Elsewhere
[v4,1/4] arch/x86: Move UAPI setup structures into setup_data.h arch/x86: Remove unnecessary dependencies on bootparam.h - - - --- 2024-01-08 Thomas Zimmermann Handled Elsewhere
[GIT,PULL] lsm/lsm-pr-20240105 [GIT,PULL] lsm/lsm-pr-20240105 - - - --- 2024-01-05 Paul Moore pcmoore Accepted
[GIT,PULL] selinux/selinux-pr-20240105 [GIT,PULL] selinux/selinux-pr-20240105 - - - --- 2024-01-05 Paul Moore pcmoore Handled Elsewhere
apparmor: Fix memory leak in unpack_profile() apparmor: Fix memory leak in unpack_profile() 1 - - --- 2024-01-05 Gaosheng Cui Handled Elsewhere
[v3,4/4] arch/x86: Do not include <asm/bootparam.h> in several files arch/x86: Remove unnecessary dependencies on bootparam.h 1 - - --- 2024-01-04 Thomas Zimmermann Handled Elsewhere
[v3,3/4] arch/x86: Implement arch_ima_efi_boot_mode() in source file arch/x86: Remove unnecessary dependencies on bootparam.h - - - --- 2024-01-04 Thomas Zimmermann Handled Elsewhere
[v3,2/4] arch/x86: Move internal setup_data structures into setup_data.h arch/x86: Remove unnecessary dependencies on bootparam.h - - - --- 2024-01-04 Thomas Zimmermann Handled Elsewhere
[v3,1/4] arch/x86: Move UAPI setup structures into setup_data.h arch/x86: Remove unnecessary dependencies on bootparam.h - - - --- 2024-01-04 Thomas Zimmermann Handled Elsewhere
[bpf-next,29/29] selftests/bpf: add tests for LIBBPF_BPF_TOKEN_PATH envvar BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,28/29] libbpf: support BPF token path setting through LIBBPF_BPF_TOKEN_PATH envvar BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,27/29] selftests/bpf: add tests for BPF object load with implicit token BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,26/29] selftests/bpf: add BPF object loading tests with explicit token passing BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,25/29] libbpf: wire up BPF token support at BPF object level BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,24/29] libbpf: wire up token_fd into feature probing logic BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,23/29] libbpf: move feature detection code into its own file BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,22/29] libbpf: further decouple feature checking logic from bpf_object BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,21/29] libbpf: split feature detectors definitions from cached results BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,20/29] selftests/bpf: utilize string values for delegate_xxx mount options BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,19/29] bpf: support symbolic BPF FS delegation mount options BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,18/29] bpf: fail BPF_TOKEN_CREATE if no delegation option was set on BPF FS BPF token 2 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,17/29] bpf,selinux: allocate bpf_security_struct per BPF token BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,16/29] selftests/bpf: add BPF token-enabled tests BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,15/29] libbpf: add BPF token support to bpf_prog_load() API BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,14/29] libbpf: add BPF token support to bpf_btf_load() API BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,13/29] libbpf: add BPF token support to bpf_map_create() API BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,12/29] libbpf: add bpf_token_create() API BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,11/29] bpf,lsm: add BPF token LSM hooks BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,10/29] bpf,lsm: refactor bpf_map_alloc/bpf_map_free LSM hooks BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,09/29] bpf,lsm: refactor bpf_prog_alloc/bpf_prog_free LSM hooks BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,08/29] bpf: consistently use BPF token throughout BPF verifier logic BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,07/29] bpf: take into account BPF token when fetching helper protos BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,06/29] bpf: add BPF token support to BPF_PROG_LOAD command BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,05/29] bpf: add BPF token support to BPF_BTF_LOAD command BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,04/29] bpf: add BPF token support to BPF_MAP_CREATE command BPF token - - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,03/29] bpf: introduce BPF token object BPF token 2 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,02/29] bpf: add BPF token delegation mount options to BPF FS BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[bpf-next,01/29] bpf: align CAP_NET_ADMIN checks with bpf_capable() approach BPF token 1 - - --- 2024-01-03 Andrii Nakryiko pcmoore Changes Requested
[GIT,PULL] apparmor: Final fix for v6.7-rc8 [GIT,PULL] apparmor: Final fix for v6.7-rc8 - - - --- 2024-01-03 John Johansen Handled Elsewhere
[v3] selinux: Fix error priority for bind with AF_UNSPEC on PF_INET6 socket [v3] selinux: Fix error priority for bind with AF_UNSPEC on PF_INET6 socket - - 1 --- 2024-01-03 Mickaël Salaün pcmoore Accepted
[v2] selinux: Fix error priority for bind with AF_UNSPEC on AF_INET6 socket [v2] selinux: Fix error priority for bind with AF_UNSPEC on AF_INET6 socket - - - --- 2023-12-29 Mickaël Salaün pcmoore Changes Requested
apparmor: avoid crash when parsed profile name is empty apparmor: avoid crash when parsed profile name is empty 1 - - --- 2023-12-28 Fedor Pchelkin Handled Elsewhere
selinux: Fix error priority for bind with AF_UNSPEC on AF_INET6 socket selinux: Fix error priority for bind with AF_UNSPEC on AF_INET6 socket - - - --- 2023-12-28 Mickaël Salaün pcmoore Changes Requested
kernel: capability: Remove unnecessary ‘0’ values from ret kernel: capability: Remove unnecessary ‘0’ values from ret - - - --- 2023-12-28 Li zeming Rejected
integrity: don't throw an error immediately when failed to add a cert to the .machine keyring integrity: don't throw an error immediately when failed to add a cert to the .machine keyring - 1 - --- 2023-12-27 Coiby Xu Handled Elsewhere
kernel: Introduce a write lock/unlock wrapper for tasklist_lock kernel: Introduce a write lock/unlock wrapper for tasklist_lock - - - --- 2023-12-25 Aiqun Yu (Maria) pcmoore Handled Elsewhere
[v2] lsm: Add a __counted_by() annotation to lsm_ctx.ctx [v2] lsm: Add a __counted_by() annotation to lsm_ctx.ctx - - - --- 2023-12-22 Mark Brown pcmoore Accepted
lsm: Add a __counted_by() annotation to lsm_ctx.ctx lsm: Add a __counted_by() annotation to lsm_ctx.ctx - - - --- 2023-12-21 Mark Brown pcmoore Changes Requested
security: new security_file_ioctl_compat() hook security: new security_file_ioctl_compat() hook - 2 - --- 2023-12-19 Alfred Piccioni pcmoore Accepted
[v39,42/42] Smack: Remove LSM_FLAG_EXCLUSIVE LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,41/42] LSM: restrict security_cred_getsecid() to a single LSM LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,40/42] LSM: Allow reservation of netlabel LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,39/42] LSM: Remove lsmblob scaffolding LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,38/42] LSM: Correct handling of ENOSYS in inode_setxattr LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,37/42] LSM: Infrastructure management of the mnt_opts security blob LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,36/42] LSM: Infrastructure management of the key security blob LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,35/42] LSM: allocate mnt_opts blobs instead of module specific data LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,34/42] LSM: Add mount opts blob size tracking LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,33/42] AppArmor: Remove the exclusive flag LSM: General module stacking 2 1 - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,32/42] LSM: Identify which LSM handles the context string LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,31/42] LSM: Exclusive secmark usage LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,30/42] LSM: Single calls in socket_getpeersec hooks LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,29/42] LSM: secctx provider check on release LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,28/42] LSM: Improve logic in security_getprocattr LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,27/42] LSM: Remove unused lsmcontext_init() LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,26/42] Audit: Add record for multiple object contexts LSM: General module stacking 1 - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,25/42] audit: multiple subject lsm values for netlabel LSM: General module stacking 1 - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,24/42] Audit: Add record for multiple task security contexts LSM: General module stacking 1 - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,23/42] Audit: Allow multiple records in an audit_buffer LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,22/42] Audit: Create audit_stamp structure LSM: General module stacking 1 - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,21/42] LSM: security_lsmblob_to_secctx module selection LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,20/42] LSM: Use lsmcontext in security_dentry_init_security LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,19/42] LSM: Use lsmcontext in security_inode_getsecctx LSM: General module stacking 3 2 - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,18/42] LSM: Use lsmcontext in security_lsmblob_to_secctx LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,17/42] LSM: Use lsmcontext in security_secid_to_secctx LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,16/42] LSM: Ensure the correct LSM context releaser LSM: General module stacking 3 2 - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,15/42] Netlabel: Use lsmblob for audit data LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,14/42] Audit: Change context data from secid to lsmblob LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,13/42] LSM: Create new security_cred_getlsmblob LSM hook LSM: General module stacking 2 2 - --- 2023-12-15 Casey Schaufler pcmoore New
[v39,12/42] Audit: use an lsmblob in audit_names LSM: General module stacking - - - --- 2023-12-15 Casey Schaufler pcmoore New
« 1 2 ... 7 8 936 37 »