Show patches with: Submitter = Kees Cook       |    Archived = No       |   27 patches
Patch Series A/R/T S/W/F Date Submitter Delegate State
exec: Check __FMODE_EXEC instead of in_execve for LSMs exec: Check __FMODE_EXEC instead of in_execve for LSMs - - 1 --- 2024-01-24 Kees Cook pcmoore Handled Elsewhere
LoadPin: Annotate struct dm_verity_loadpin_trusted_root_digest with __counted_by LoadPin: Annotate struct dm_verity_loadpin_trusted_root_digest with __counted_by - - - --- 2023-08-17 Kees Cook Handled Elsewhere
integrity: Annotate struct ima_rule_opt_list with __counted_by integrity: Annotate struct ima_rule_opt_list with __counted_by 2 1 - --- 2023-08-17 Kees Cook Handled Elsewhere
landlock: Annotate struct landlock_rule with __counted_by landlock: Annotate struct landlock_rule with __counted_by - 2 - --- 2023-08-17 Kees Cook Handled Elsewhere
apparmor: aa_buffer: Convert 1-element array to flexible array apparmor: aa_buffer: Convert 1-element array to flexible array 1 - - --- 2023-05-11 Kees Cook Handled Elsewhere
[GIT,PULL] kernel hardening fixes for v6.2-rc1 [GIT,PULL] kernel hardening fixes for v6.2-rc1 - - - --- 2022-12-23 Kees Cook Handled Elsewhere
[GIT,PULL] kernel hardening fixes for v6.1-rc1 [GIT,PULL] kernel hardening fixes for v6.1-rc1 - - - --- 2022-12-23 Kees Cook Handled Elsewhere
[4/4] LoadPin: Allow filesystem switch when not enforcing LoadPin: Allow filesystem switch when not enforcing - - - --- 2022-12-09 Kees Cook Handled Elsewhere
[3/4] LoadPin: Move pin reporting cleanly out of locking LoadPin: Allow filesystem switch when not enforcing - - - --- 2022-12-09 Kees Cook Handled Elsewhere
[2/4] LoadPin: Refactor sysctl initialization LoadPin: Allow filesystem switch when not enforcing - - - --- 2022-12-09 Kees Cook Handled Elsewhere
[1/4] LoadPin: Refactor read-only check into a helper LoadPin: Allow filesystem switch when not enforcing - - - --- 2022-12-09 Kees Cook Handled Elsewhere
LoadPin: Ignore the "contents" argument of the LSM hooks LoadPin: Ignore the "contents" argument of the LSM hooks 1 - - --- 2022-12-09 Kees Cook pcmoore Handled Elsewhere
[v2] LSM: Better reporting of actual LSMs at boot [v2] LSM: Better reporting of actual LSMs at boot 2 - - --- 2022-11-02 Kees Cook pcmoore Accepted
LSM: Better reporting of actual LSMs at boot LSM: Better reporting of actual LSMs at boot - - - --- 2022-10-18 Kees Cook pcmoore Changes Requested
[9/9] integrity: Move integrity_inode_get() out of global header integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[8/9] integrity: Move trivial hooks into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[7/9] ima: Move ima_file_check() into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[6/9] fs: Introduce file_to_perms() helper integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[5/9] LSM: Introduce inode_post_setattr hook integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[4/9] ima: Move ima_file_free() into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[3/9] ima: Move xattr hooks into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[2/9] security: Move trivial IMA hooks into LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[1/9] integrity: Prepare for having "ima" and "evm" available in "integrity" LSM integrity: Move hooks into LSM - - - --- 2022-10-13 Kees Cook pcmoore Superseded
[2/2] exec: Remove LSM_UNSAFE_SHARE [1/2] fs/exec: Explicitly unshare fs_struct on exec - - - --- 2022-10-06 Kees Cook Handled Elsewhere
[1/2] fs/exec: Explicitly unshare fs_struct on exec [1/2] fs/exec: Explicitly unshare fs_struct on exec - - - --- 2022-10-06 Kees Cook Handled Elsewhere
[0/2] fs/exec: Explicitly unshare fs_struct on exec - - - --- 2022-10-06 Kees Cook Handled Elsewhere
[GIT,PULL] hardening fixes for v6.0-rc2 [GIT,PULL] hardening fixes for v6.0-rc2 - - - --- 2022-08-19 Kees Cook Handled Elsewhere