Toggle navigation
Patchwork
SELinux Development list
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| 216 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
holtmann
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
cvaroqui
jbrassow
mikulas
dtor
bmarzins
tmlind
jmberg
jmberg
mcgrof
mcgrof
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
bhelgaas
vkoul
vkoul
szlin
davejiang
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
matthias_bgg
dvhart
axboe
axboe
pcmoore
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
dgc
kbingham
derosier
narmstrong
narmstrong
atull
tytso
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
pkshih
patersonc
brauner
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
broonie
broonie
broonie
mricon
mricon
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
perfinion
bbrezillon
bachradsusi
rostedt
rostedt
kholk
nbd
ebiggers
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wens
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
mani_sadhasivam
mlimonci
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
dhowells
tzungbi
conchuod
paulmck
jes
mtkaczyk
colyli
cem
pateldipen1984
iweiny
iweiny
bjorn
mhiramat
JanKiszka
jaegeuk
mraynal
aring
konradybcio
ij
Hailan
jstitt007
denkenz
denkenz
mkorenbl
jjohnson
frank_li
geliang
mdraidci
mdraidci
peluse
Apply
«
1
2
3
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
libsemanage/direct_api: INTEGER_OVERFLOW read_len = read()
libsemanage/direct_api: INTEGER_OVERFLOW read_len = read()
- - -
-
-
-
2024-10-25
Vit Mojzis
New
[2/2] libselinux/matchpathcon: RESOURCE_LEAK: Variable "con"
[1/2] libselinux/setexecfilecon: Remove useless rc check
- - -
-
-
-
2024-10-25
Vit Mojzis
New
[1/2] libselinux/setexecfilecon: Remove useless rc check
[1/2] libselinux/setexecfilecon: Remove useless rc check
- - -
-
-
-
2024-10-25
Vit Mojzis
New
[v3,6/6] libsepol/tests: add cond xperm neverallow tests
[v3,1/6] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-25
Christian Göttsche
New
[v3,5/6] libsepol: indent printed allow rule on assertion failure
[v3,1/6] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-25
Christian Göttsche
New
[v3,4/6] libsepol/cil: add support for xperms in conditional policies
[v3,1/6] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-25
Christian Göttsche
New
[v3,3/6] checkpolicy: add support for xperms in conditional policies
[v3,1/6] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-25
Christian Göttsche
New
[v3,2/6] libsepol: add support for xperms in conditional policies
[v3,1/6] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-25
Christian Göttsche
New
[v3,1/6] libsepol: misc assertion cleanup
[v3,1/6] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-25
Christian Göttsche
New
[3/3] all: coding style fixes
[1/3] check-syntax: update arguments for astyle v3.2 (possibly earlier)
- - -
-
-
-
2024-10-24
Paul Moore
New
[2/3] check-syntax: ignore "bad" astyle versions
[1/3] check-syntax: update arguments for astyle v3.2 (possibly earlier)
- - -
-
-
-
2024-10-24
Paul Moore
New
[1/3] check-syntax: update arguments for astyle v3.2 (possibly earlier)
[1/3] check-syntax: update arguments for astyle v3.2 (possibly earlier)
- - -
-
-
-
2024-10-24
Paul Moore
New
[v2,4/4] libsepol/cil: add support for xperms in conditional policies
[v2,1/4] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-24
Christian Göttsche
New
[v2,3/4] checkpolicy: add support for xperms in conditional policies
[v2,1/4] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-24
Christian Göttsche
New
[v2,2/4] libsepol: add support for xperms in conditional policies
[v2,1/4] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-24
Christian Göttsche
New
[v2,1/4] libsepol: misc assertion cleanup
[v2,1/4] libsepol: misc assertion cleanup
- - -
-
-
-
2024-10-24
Christian Göttsche
New
[2/2] restorecond: Set GLib IO channels to nonblocking
restorecond: GLib IO channel fixes
- - -
-
-
-
2024-10-24
Fabian Vogt
New
[1/2] restorecond: Set GLib IO channels to binary mode
restorecond: GLib IO channel fixes
- - -
-
-
-
2024-10-24
Fabian Vogt
New
[v3,5/5] LSM: secctx provider check on release
[v3,1/5] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-23
Casey Schaufler
New
[v3,4/5] LSM: lsm_context in security_dentry_init_security
[v3,1/5] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-23
Casey Schaufler
New
[v3,3/5] LSM: Use lsm_context in security_inode_getsecctx
[v3,1/5] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-23
Casey Schaufler
New
[v3,2/5] LSM: Replace context+len with lsm_context
[v3,1/5] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-23
Casey Schaufler
New
[v3,1/5] LSM: Ensure the correct LSM context releaser
[v3,1/5] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-23
Casey Schaufler
New
[3/3] libsepol/cil: add support for xperms in conditional policies
[1/3] libsepol: add support for xperms in conditional policies
- - -
-
-
-
2024-10-23
Christian Göttsche
New
[2/3] checkpolicy: add support for xperms in conditional policies
[1/3] libsepol: add support for xperms in conditional policies
- - -
-
-
-
2024-10-23
Christian Göttsche
New
[1/3] libsepol: add support for xperms in conditional policies
[1/3] libsepol: add support for xperms in conditional policies
- - -
-
-
-
2024-10-23
Christian Göttsche
New
[v2] selinux: add support for xperms in conditional policies
[v2] selinux: add support for xperms in conditional policies
- - -
-
-
-
2024-10-23
Christian Göttsche
New
selinux: add support for xperms in conditional policies
selinux: add support for xperms in conditional policies
- - -
-
-
-
2024-10-23
Christian Göttsche
New
[v2,4/4] libsepol: Initialize "strs" on declaration
[v2,1/4] libsepol/cil: Initialize avtab_datum on declaration
- - -
-
-
-
2024-10-23
Vit Mojzis
New
[v2,3/4] libsepol/cil/cil_post: Initialize tmp on declaration
[v2,1/4] libsepol/cil: Initialize avtab_datum on declaration
- - -
-
-
-
2024-10-23
Vit Mojzis
New
[v2,2/4] libsepol/mls: Do not destroy context on memory error
[v2,1/4] libsepol/cil: Initialize avtab_datum on declaration
- - -
-
-
-
2024-10-23
Vit Mojzis
New
[v2,1/4] libsepol/cil: Initialize avtab_datum on declaration
[v2,1/4] libsepol/cil: Initialize avtab_datum on declaration
1 - -
-
-
-
2024-10-23
Vit Mojzis
New
selinux: add netlink nlmsg_type audit message
selinux: add netlink nlmsg_type audit message
- - -
-
-
-
2024-10-22
Thiébaud Weksteen
New
[4/4] libsepol: Initialize "strs" on declaration
[1/4] libsepol/cil: Initialize avtab_datum on declaration
1 - -
-
-
-
2024-10-22
Vit Mojzis
New
[3/4] libsepol/cil/cil_post: Initialize tmp on declaration
[1/4] libsepol/cil: Initialize avtab_datum on declaration
- - -
-
-
-
2024-10-22
Vit Mojzis
New
[2/4] libsepol/mls: Do not destroy context on memory error
[1/4] libsepol/cil: Initialize avtab_datum on declaration
1 - -
-
-
-
2024-10-22
Vit Mojzis
New
[1/4] libsepol/cil: Initialize avtab_datum on declaration
[1/4] libsepol/cil: Initialize avtab_datum on declaration
- - -
-
-
-
2024-10-22
Vit Mojzis
New
libsepol: Support nlmsg xperms in assertions
libsepol: Support nlmsg xperms in assertions
1 - -
-
-
-
2024-10-21
Thiébaud Weksteen
New
[4/4] selinux: set missing errno in failure branch
[1/4] libselinux: avoid errno modification by fclose(3)
- - -
-
-
-
2024-10-18
Christian Göttsche
New
[3/4] libsemanage: check for rewind(3) failure
[1/4] libselinux: avoid errno modification by fclose(3)
- - -
-
-
-
2024-10-18
Christian Göttsche
New
[2/4] selinux: free memory in error branch
[1/4] libselinux: avoid errno modification by fclose(3)
- - -
-
-
-
2024-10-18
Christian Göttsche
New
[1/4] libselinux: avoid errno modification by fclose(3)
[1/4] libselinux: avoid errno modification by fclose(3)
1 - -
-
-
-
2024-10-18
Christian Göttsche
New
checkpolicy/fuzz: fix setjmp condition
checkpolicy/fuzz: fix setjmp condition
1 - -
-
-
-
2024-10-18
Christian Göttsche
New
selinux_set_callback for policy load not triggering
selinux_set_callback for policy load not triggering
- - -
-
-
-
2024-10-17
Matthew Sheets
New
[2/2] libsemanage: fix swig bindings for 4.3.0
[1/2] libselinux: fix swig bindings for 4.3.0
- - -
-
-
-
2024-10-16
Petr Lautrbach
New
[1/2] libselinux: fix swig bindings for 4.3.0
[1/2] libselinux: fix swig bindings for 4.3.0
1 - -
-
-
-
2024-10-16
Petr Lautrbach
New
[v2,6/6] LSM: Use lsm_context in security_inode_notifysecctx
[v2,1/6] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-14
Casey Schaufler
New
[v2,5/6] LSM: secctx provider check on release
[v2,1/6] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-14
Casey Schaufler
New
[v2,4/6] LSM: lsm_context in security_dentry_init_security
[v2,1/6] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-14
Casey Schaufler
New
[v2,3/6] LSM: Use lsm_context in security_inode_getsecctx
[v2,1/6] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-14
Casey Schaufler
New
[v2,2/6] LSM: Replace context+len with lsm_context
[v2,1/6] LSM: Ensure the correct LSM context releaser
- - -
-
-
-
2024-10-14
Casey Schaufler
New
[v2,1/6] LSM: Ensure the correct LSM context releaser
[v2,1/6] LSM: Ensure the correct LSM context releaser
- 1 -
-
-
-
2024-10-14
Casey Schaufler
New
[v4,13/13] LSM: Remove lsm_prop scaffolding
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,12/13] Use lsm_prop for audit data
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,11/13] Audit: Change context data from secid to lsm_prop
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,10/13] LSM: Create new security_cred_getlsmprop LSM hook
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,09/13] Audit: use an lsm_prop in audit_names
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,08/13] LSM: Use lsm_prop in security_inode_getsecid
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,07/13] LSM: Use lsm_prop in security_current_getsecid
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,06/13] Audit: Update shutdown LSM data
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,05/13] LSM: Use lsm_prop in security_ipc_getsecid
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,04/13] Audit: maintain an lsm_prop in audit_context
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,03/13] LSM: Add lsmprop_to_secctx hook
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,02/13] LSM: Use lsm_prop in security_audit_rule_match
[v4,01/13] LSM: Add the lsm_prop data structure.
- - -
-
-
-
2024-10-09
Casey Schaufler
New
[v4,01/13] LSM: Add the lsm_prop data structure.
[v4,01/13] LSM: Add the lsm_prop data structure.
1 - -
-
-
-
2024-10-09
Casey Schaufler
New
[v3,8/8] secilc: include segregate attributes in tests
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,7/8] secilc: run tests against development version of libsepol
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,6/8] libsepol/cil: add support for segregate attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,5/8] libsepol/tests: add test for segregate attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,4/8] checkpolicy: add front-end support for segregate attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,3/8] libsepol: add compile-time constraint for mutual exclusive attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,2/8] libsepol: add ebitmap iterator wrapper with startnode
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[RFC,4/4] checkpolicy: add front-end support for segregate attributes
[RFC,1/4] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-06-16
Christian Göttsche
New
[RFC,3/4] libsepol: add compile-time constraint for mutual exclusive attributes
[RFC,1/4] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-06-16
Christian Göttsche
New
[RFC,2/4] libsepol: add ebitmap iterator wrapper with startnode
[RFC,1/4] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-06-16
Christian Göttsche
New
[1/4] libselinux: add man page redirections
[1/4] libselinux: add man page redirections
1 - -
-
-
-
2022-05-20
Christian Göttsche
New
Makefile: always include and link with DESTDIR
Makefile: always include and link with DESTDIR
- - -
-
-
-
2022-05-20
Christian Göttsche
New
[v2,6/6] Enable missing prototypes
[v2,1/6] libsepol/cil: declare file local functions static
- - -
-
-
-
2022-04-05
Christian Göttsche
New
libselinux: Prevent cached context giving wrong results
libselinux: Prevent cached context giving wrong results
- - -
-
-
-
2022-01-27
Johannes Segitz
New
[libselinux] libselinux: make threadsafe for discover_class_cache
[libselinux] libselinux: make threadsafe for discover_class_cache
- - -
-
-
-
2022-01-20
Purushottam Choudhary
New
[2/2,RFC] libsepol/cil: Add notself and minusself support to CIL
libsepol: Adding support for not-self rules
- - -
-
-
-
2022-01-11
James Carter
New
[1/2,RFC] libsepol: Add not self support for neverallow rules
libsepol: Adding support for not-self rules
- - -
-
-
-
2022-01-11
James Carter
New
[XSERVER,2/2] selinux: log events with appropriate audit type
[XSERVER,1/2] selinux: remap security classes on policyload
- - -
-
-
-
2021-11-25
Christian Göttsche
New
[XSERVER,1/2] selinux: remap security classes on policyload
[XSERVER,1/2] selinux: remap security classes on policyload
- - -
-
-
-
2021-11-25
Christian Göttsche
New
[2/2] dbus: Add filetrans for /tmp/dbus-* session socket
[1/2] selinux: Add map perms
- - -
-
-
-
2021-11-21
Jason Zaman
New
[1/2] selinux: Add map perms
[1/2] selinux: Add map perms
- - -
-
-
-
2021-11-21
Jason Zaman
New
[v2] Support static-only builds
[v2] Support static-only builds
- - -
-
-
-
2021-11-13
Alyssa Ross
New
[v4,21/21] fuse: Allow user namespace mounts
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,20/21] fuse: Restrict allow_other to the superblock's namespace or a descendant
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,19/21] fuse: Support fuse filesystems outside of init_user_ns
- - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,18/21] fuse: Add support for pid namespaces
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,17/21] capabilities: Allow privileged user in s_user_ns to set security.* xattrs
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,16/21] fs: Allow superblock owner to access do_remount_sb()
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,15/21] fs: Don't remove suid for CAP_FSETID in s_user_ns
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,14/21] fs: Allow superblock owner to change ownership of inodes with unmappable ids
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,13/21] fs: Update posix_acl support to handle user namespace mounts
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,12/21] fs: Refuse uid/gid changes which don't map into s_user_ns
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,11/21] cred: Reject inodes with invalid ids in set_create_file_as()
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,10/21] fs: Check for invalid i_uid in may_follow_link()
1 1 -
-
-
-
2016-04-26
Seth Forshee
New
[v4,09/21] Smack: Handle labels consistently in untrusted mounts
1 - -
-
-
-
2016-04-26
Seth Forshee
New
«
1
2
3
»