Show patches with: Submitter = Matthew Garrett       |    State = Action Required       |   347 patches
« 1 2 3 4 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[2/2] kexec: Fix file verification on S390 Minor lockdown fixups - - - --- 2019-09-10 Matthew Garrett New
[1/2] security: constify some arrays in lockdown LSM Minor lockdown fixups - - - --- 2019-09-10 Matthew Garrett New
[V40,29/29] lockdown: Print current->comm in restriction messages Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,27/29] tracefs: Restrict tracefs when the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,26/29] debugfs: Restrict debugfs when the kernel is locked down Add kernel lockdown functionality - - - --- 2019-08-20 Matthew Garrett New
[V40,25/29] kexec: Allow kexec_file() with appropriate IMA policy when locked down Add kernel lockdown functionality 1 - - --- 2019-08-20 Matthew Garrett New
[V40,24/29] lockdown: Lock down perf when in confidentiality mode Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,23/29] bpf: Restrict bpf when kernel lockdown is in confidentiality mode Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,22/29] lockdown: Lock down tracing and perf kprobes when in confidentiality mode Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,21/29] lockdown: Lock down /proc/kcore Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,20/29] x86/mmiotrace: Lock down the testmmiotrace module Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,19/29] lockdown: Lock down module params that specify hardware parameters (eg. ioport) Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,18/29] lockdown: Lock down TIOCSSERIAL Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,17/29] lockdown: Prohibit PCMCIA CIS storage when the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,16/29] acpi: Disable ACPI table override if the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,15/29] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,14/29] ACPI: Limit access to custom_method when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,13/29] x86/msr: Restrict MSR access when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,12/29] x86: Lock down IO port access when the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,11/29] PCI: Lock down BAR access when the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,10/29] hibernate: Disable when the kernel is locked down Add kernel lockdown functionality 2 1 - --- 2019-08-20 Matthew Garrett New
[V40,09/29] kexec_file: Restrict at runtime if the kernel is locked down Add kernel lockdown functionality - - - --- 2019-08-20 Matthew Garrett New
[V40,08/29] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE Add kernel lockdown functionality - - - --- 2019-08-20 Matthew Garrett New
[V40,07/29] lockdown: Copy secure_boot flag in boot params across kexec reboot Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,06/29] kexec_load: Disable at runtime if the kernel is locked down Add kernel lockdown functionality 1 1 - --- 2019-08-20 Matthew Garrett New
[V40,05/29] lockdown: Restrict /dev/{mem,kmem,port} when the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,04/29] lockdown: Enforce module signatures if the kernel is locked down Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,03/29] security: Add a static lockdown policy LSM Add kernel lockdown functionality - 1 - --- 2019-08-20 Matthew Garrett New
[V40,02/29] security: Add a "locked down" LSM hook Add kernel lockdown functionality 2 - - --- 2019-08-20 Matthew Garrett New
[V40,01/29] security: Support early LSMs Add kernel lockdown functionality 2 - - --- 2019-08-20 Matthew Garrett New
[6/6] Document locked_down LSM hook lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[5/6] kexec: s/KEXEC_VERIFY_SIG/KEXEC_SIG/ for consistency lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[4/6] security: fix ptr_ret.cocci warnings lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[3/6] Avoid build warning when !CONFIG_KEXEC_SIG lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[2/6] early_security_init() needs a stub got !CONFIG_SECURITY lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[1/6] tracefs: Fix potential null dereference in default_file_open() lockdown fixups - - - --- 2019-08-13 Matthew Garrett New
[V39] Enforce module signatures if the kernel is locked down [V39] Enforce module signatures if the kernel is locked down - 1 - --- 2019-08-09 Matthew Garrett New
[V39] Lock down module params that specify hardware parameters (eg. ioport) [V39] Lock down module params that specify hardware parameters (eg. ioport) - 1 - --- 2019-08-09 Matthew Garrett New
[V38,29/29] lockdown: Print current->comm in restriction messages security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,27/29] tracefs: Restrict tracefs when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,26/29] debugfs: Restrict debugfs when the kernel is locked down security: Add support for locking down the kernel - - - --- 2019-08-08 Matthew Garrett New
[V38,25/29] kexec: Allow kexec_file() with appropriate IMA policy when locked down security: Add support for locking down the kernel 1 - - --- 2019-08-08 Matthew Garrett New
[V38,24/29] Lock down perf when in confidentiality mode security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,23/29] bpf: Restrict bpf when kernel lockdown is in confidentiality mode security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,22/29] Lock down tracing and perf kprobes when in confidentiality mode security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,21/29] Lock down /proc/kcore security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,20/29] x86/mmiotrace: Lock down the testmmiotrace module security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,19/29] Lock down module params that specify hardware parameters (eg. ioport) security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,18/29] Lock down TIOCSSERIAL security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,17/29] Prohibit PCMCIA CIS storage when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,16/29] acpi: Disable ACPI table override if the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,15/29] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,14/29] ACPI: Limit access to custom_method when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,13/29] x86/msr: Restrict MSR access when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,12/29] x86: Lock down IO port access when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,11/29] PCI: Lock down BAR access when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,10/29] hibernate: Disable when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,09/29] kexec_file: Restrict at runtime if the kernel is locked down security: Add support for locking down the kernel - 2 - --- 2019-08-08 Matthew Garrett New
[V38,08/29] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE security: Add support for locking down the kernel - 2 - --- 2019-08-08 Matthew Garrett New
[V38,07/29] Copy secure_boot flag in boot params across kexec reboot security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,06/29] kexec_load: Disable at runtime if the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-08-08 Matthew Garrett New
[V38,05/29] Restrict /dev/{mem,kmem,port} when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,04/29] Enforce module signatures if the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,03/29] security: Add a static lockdown policy LSM security: Add support for locking down the kernel - 1 - --- 2019-08-08 Matthew Garrett New
[V38,02/29] security: Add a "locked down" LSM hook security: Add support for locking down the kernel 2 - - --- 2019-08-08 Matthew Garrett New
[V38,01/29] security: Support early LSMs security: Add support for locking down the kernel 2 - - --- 2019-08-08 Matthew Garrett New
[V37,29/29] lockdown: Print current->comm in restriction messages security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-07-31 Matthew Garrett New
[V37,27/29] tracefs: Restrict tracefs when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,26/29] debugfs: Restrict debugfs when the kernel is locked down security: Add support for locking down the kernel - - - --- 2019-07-31 Matthew Garrett New
[V37,25/29] kexec: Allow kexec_file() with appropriate IMA policy when locked down security: Add support for locking down the kernel 1 - - --- 2019-07-31 Matthew Garrett New
[V37,24/29] Lock down perf when in confidentiality mode security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,23/29] bpf: Restrict bpf when kernel lockdown is in confidentiality mode security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,22/29] Lock down tracing and perf kprobes when in confidentiality mode security: Add support for locking down the kernel 1 1 - --- 2019-07-31 Matthew Garrett New
[V37,21/29] Lock down /proc/kcore security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,20/29] x86/mmiotrace: Lock down the testmmiotrace module security: Add support for locking down the kernel 1 1 - --- 2019-07-31 Matthew Garrett New
[V37,19/29] Lock down module params that specify hardware parameters (eg. ioport) security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,18/29] Lock down TIOCSSERIAL security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,17/29] Prohibit PCMCIA CIS storage when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,16/29] acpi: Disable ACPI table override if the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,15/29] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,14/29] ACPI: Limit access to custom_method when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,13/29] x86/msr: Restrict MSR access when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-07-31 Matthew Garrett New
[V37,12/29] x86: Lock down IO port access when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,11/29] PCI: Lock down BAR access when the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-07-31 Matthew Garrett New
[V37,10/29] hibernate: Disable when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,09/29] kexec_file: Restrict at runtime if the kernel is locked down security: Add support for locking down the kernel - 2 - --- 2019-07-31 Matthew Garrett New
[V37,08/29] kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCE security: Add support for locking down the kernel - 2 - --- 2019-07-31 Matthew Garrett New
[V37,07/29] Copy secure_boot flag in boot params across kexec reboot security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,06/29] kexec_load: Disable at runtime if the kernel is locked down security: Add support for locking down the kernel 1 1 - --- 2019-07-31 Matthew Garrett New
[V37,05/29] Restrict /dev/{mem,kmem,port} when the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,04/29] Enforce module signatures if the kernel is locked down security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,03/29] security: Add a static lockdown policy LSM security: Add support for locking down the kernel - 1 - --- 2019-07-31 Matthew Garrett New
[V37,02/29] security: Add a "locked down" LSM hook security: Add support for locking down the kernel 2 - - --- 2019-07-31 Matthew Garrett New
[V37,01/29] security: Support early LSMs security: Add support for locking down the kernel 2 - - --- 2019-07-31 Matthew Garrett New
tracefs: Restrict tracefs when the kernel is locked down tracefs: Restrict tracefs when the kernel is locked down - 1 - --- 2019-07-30 Matthew Garrett New
[V36,29/29] lockdown: Print current->comm in restriction messages security: Add kernel lockdown functionality - 1 - --- 2019-07-18 Matthew Garrett New
[V36,28/29] efi: Restrict efivar_ssdt_load when the kernel is locked down security: Add kernel lockdown functionality 1 1 - --- 2019-07-18 Matthew Garrett New
« 1 2 3 4 »