Show patches with: Archived = No       |   9222 patches
« 1 2 ... 16 17 1892 93 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[testsuite,2/3] policy: allow test_ibpkey_access_t to use RDMA netlink sockets Infiniband test fixes/improvements - - - --- 2023-03-03 Ondrej Mosnacek omos Accepted
[testsuite,1/3] policy: make sure test_ibpkey_access_t can lock enough memory Infiniband test fixes/improvements - - - --- 2023-03-03 Ondrej Mosnacek omos Accepted
[2/6] libsepol/cil: Add notself and other support to CIL Untitled series #725826 - - - --- 2023-03-01 James Carter Not Applicable
[testsuite] tests/file: make the SIGIO tests work with CONFIG_LEGACY_TIOCSTI=n [testsuite] tests/file: make the SIGIO tests work with CONFIG_LEGACY_TIOCSTI=n - 1 - --- 2023-03-01 Ondrej Mosnacek omos Accepted
[testsuite,3/3] tests/infiniband*: simplify test activation Infiniband test fixes/improvements - - - --- 2023-02-28 Ondrej Mosnacek omos Superseded
[testsuite,2/3] policy: allow test_ibpkey_access_t to use RDMA netlink sockets Infiniband test fixes/improvements - - - --- 2023-02-28 Ondrej Mosnacek omos Superseded
[testsuite,1/3] policy: make sure test_ibpkey_access_t can lock enough memory Infiniband test fixes/improvements - - - --- 2023-02-28 Ondrej Mosnacek omos Superseded
[UTIL-LINUX] mount: add rootcontext=@target [UTIL-LINUX] mount: add rootcontext=@target - - - --- 2023-02-21 Christian Göttsche Accepted
[v2] kernel/sys.c: fix and improve control flow in __sys_setres[ug]id() [v2] kernel/sys.c: fix and improve control flow in __sys_setres[ug]id() - - - --- 2023-02-17 Ondrej Mosnacek pcmoore Handled Elsewhere
[v2,3/3] libselinux: performance optimization for duplicate detection Improve efficiency of detecting duplicate in libselinux - - - --- 2023-02-17 Huizhao Wang bachradsusi Superseded
[v2,2/3] libselinux: adapting hashtab to libselinux Improve efficiency of detecting duplicate in libselinux - - - --- 2023-02-17 Huizhao Wang bachradsusi Superseded
[v2,1/3] libselinux: migrating hashtab from policycoreutils Improve efficiency of detecting duplicate in libselinux - - - --- 2023-02-17 Huizhao Wang bachradsusi Superseded
selinux: allow to opt-out from skipping kernel sockets in sock_has_perm() selinux: allow to opt-out from skipping kernel sockets in sock_has_perm() - - - --- 2023-02-15 Ondrej Mosnacek pcmoore Rejected
kernel/sys.c: fix and improve control flow in __sys_setres[ug]id() kernel/sys.c: fix and improve control flow in __sys_setres[ug]id() - - - --- 2023-02-15 Ondrej Mosnacek pcmoore Handled Elsewhere
[2/2] libselinux: performance optimization for duplicate detection Improve efficiency of detecting duplicate in libselinux - - - --- 2023-02-09 Huizhao Wang bachradsusi Changes Requested
[1/2] libselinux: migrating hashtab from policycoreutils Improve efficiency of detecting duplicate in libselinux - - - --- 2023-02-09 Huizhao Wang bachradsusi Changes Requested
[v2,2/2] libselinux: getcon.3: add note about PID races libselinux: add getpidprevcon 1 - - --- 2023-02-01 Christian Göttsche bachradsusi Accepted
[v2,1/2] libselinux: add getpidprevcon [v2,1/2] libselinux: add getpidprevcon 1 - - --- 2023-02-01 Christian Göttsche bachradsusi Accepted
[v2] python/sepolicy: Cache conditional rule queries [v2] python/sepolicy: Cache conditional rule queries 1 - - --- 2023-01-30 Vit Mojzis bachradsusi Accepted
Looking at profile data once again - avc lookup Looking at profile data once again - avc lookup - - - --- 2023-01-28 Linus Torvalds pcmoore Superseded
[v2,6/6] mm: export dump_mm() introduce vm_flags modifier functions 2 - - --- 2023-01-25 Suren Baghdasaryan Handled Elsewhere
[v2,5/6] mm: introduce mod_vm_flags_nolock and use it in untrack_pfn introduce vm_flags modifier functions - - - --- 2023-01-25 Suren Baghdasaryan Handled Elsewhere
[v2,4/6] mm: replace vma->vm_flags indirect modification in ksm_madvise introduce vm_flags modifier functions 2 - - --- 2023-01-25 Suren Baghdasaryan Handled Elsewhere
[v2,3/6] mm: replace vma->vm_flags direct modifications with modifier calls introduce vm_flags modifier functions 3 - - --- 2023-01-25 Suren Baghdasaryan Handled Elsewhere
[v2,2/6] mm: replace VM_LOCKED_CLEAR_MASK with VM_LOCKED_MASK introduce vm_flags modifier functions 2 - - --- 2023-01-25 Suren Baghdasaryan Handled Elsewhere
[v2,1/6] mm: introduce vma->vm_flags modifier functions introduce vm_flags modifier functions 2 - - --- 2023-01-25 Suren Baghdasaryan Handled Elsewhere
python/sepolicy: Cache conditional rule queries python/sepolicy: Cache conditional rule queries - - - --- 2023-01-24 Vit Mojzis Superseded
[net-next,v6,2/2] selftests/net: Cover the IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - 1 - --- 2023-01-24 Jakub Sitnicki pcmoore Handled Elsewhere
[net-next,v6,1/2] inet: Add IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - 3 - --- 2023-01-24 Jakub Sitnicki pcmoore Handled Elsewhere
[net-next,v5,2/2] selftests/net: Cover the IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - 1 - --- 2023-01-24 Jakub Sitnicki pcmoore Handled Elsewhere
[net-next,v5,1/2] inet: Add IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - 2 - --- 2023-01-24 Jakub Sitnicki pcmoore Handled Elsewhere
[v2,4/4] security: binder: Add binder object flags to selinux_binder_transfer_file Track exported dma-buffers with memcg - - - --- 2023-01-23 T.J. Mercier pcmoore Changes Requested
[v2,3/4] binder: Add flags to relinquish ownership of fds Track exported dma-buffers with memcg 1 - - --- 2023-01-23 T.J. Mercier pcmoore Changes Requested
[v2,2/4] dmabuf: Add cgroup charge transfer function Track exported dma-buffers with memcg - - - --- 2023-01-23 T.J. Mercier pcmoore Changes Requested
[v2,1/4] memcg: Track exported dma-buffers Track exported dma-buffers with memcg - - - --- 2023-01-23 T.J. Mercier pcmoore Changes Requested
[net-next,v4,2/2] selftests/net: Cover the IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - 1 - --- 2023-01-23 Jakub Sitnicki Handled Elsewhere
[net-next,v4,1/2] inet: Add IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - 2 - --- 2023-01-23 Jakub Sitnicki Handled Elsewhere
[3/3] libselinux: use a static match_data if single threaded improve performance of pcre matches - - - --- 2023-01-23 Carlo Marcelo Arenas Belón Changes Requested
[2/3] libselinux: improve performance with pcre matches improve performance of pcre matches - - - --- 2023-01-23 Carlo Marcelo Arenas Belón Changes Requested
[1/3] scripts: respect an initial LD_LIBRARY_PATH with env_use_destdir improve performance of pcre matches - - - --- 2023-01-23 Carlo Marcelo Arenas Belón Changes Requested
[RFC] libselinux: improve performance with pcre matches [RFC] libselinux: improve performance with pcre matches - - - --- 2023-01-21 Carlo Marcelo Arenas Belón bachradsusi Superseded
[net-next,v3,2/2] selftests/net: Cover the IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - - - --- 2023-01-20 Jakub Sitnicki pcmoore Handled Elsewhere
[net-next,v3,1/2] inet: Add IP_LOCAL_PORT_RANGE socket option Add IP_LOCAL_PORT_RANGE socket option - 1 - --- 2023-01-20 Jakub Sitnicki pcmoore Handled Elsewhere
mcstrans: preserve runtime directory mcstrans: preserve runtime directory 1 - - --- 2023-01-17 Christian Göttsche bachradsusi Accepted
[TESTSUITE,v2] policy: handle files_list_pids() renaming in Refpolicy [TESTSUITE,v2] policy: handle files_list_pids() renaming in Refpolicy - - - --- 2023-01-17 Christian Göttsche omos Accepted
[TESTSUITE] policy: drop usage of files_list_pids() [TESTSUITE] policy: drop usage of files_list_pids() - - - --- 2023-01-16 Christian Göttsche omos Superseded
ci: bump to python 3.11 in GitHub Actions ci: bump to python 3.11 in GitHub Actions 1 - - --- 2023-01-15 Jason Zaman bachradsusi Accepted
[testsuite] tests/filesystem: use native quota support for ext4 [testsuite] tests/filesystem: use native quota support for ext4 - - - --- 2023-01-10 Ondrej Mosnacek omos Accepted
[4/4] security: binder: Add transfer_charge SElinux hook Track exported dma-buffers with memcg - - - --- 2023-01-09 T.J. Mercier pcmoore Changes Requested
[testsuite] tests/keys: remove extraneous zero byte from the DH prime [testsuite] tests/keys: remove extraneous zero byte from the DH prime - - - --- 2023-01-09 Ondrej Mosnacek omos Accepted
libselinux: add getpidprevcon libselinux: add getpidprevcon - - - --- 2023-01-09 Christian Göttsche Changes Requested
[2/2] checkpolicy: add simple round-trip test [1/2] libsepol: do not write empty class definitions - - - --- 2023-01-05 Christian Göttsche Changes Requested
[RESEND,2/2] selinux: provide matching audit timestamp in the AVC trace event Provide matching audit timestamp in the SELinux AVC trace event - - - --- 2022-12-19 Ondrej Mosnacek pcmoore Rejected
[RESEND,1/2] audit: introduce a struct to represent an audit timestamp Provide matching audit timestamp in the SELinux AVC trace event - - - --- 2022-12-19 Ondrej Mosnacek pcmoore Rejected
[1/2] audit: introduce a struct to represent an audit timestamp Provide matching audit timestamp in the SELinux AVC trace event - - - --- 2022-12-19 Ondrej Mosnacek Superseded
[v2,2/2] selinux: Implement mptcp_add_subflow hook lsm: introduce and use security_mptcp_add_subflow() - - - --- 2022-12-19 Paolo Abeni pcmoore Superseded
[v2,1/2] security, lsm: Introduce security_mptcp_add_subflow() lsm: introduce and use security_mptcp_add_subflow() 1 - - --- 2022-12-19 Paolo Abeni pcmoore Superseded
notebook: make use of "allowlist" instead of "whitelist" notebook: make use of "allowlist" instead of "whitelist" - - - --- 2022-12-16 Paul Moore pcmoore Accepted
notebook: fix broken sepgsql.googlecode.com URL notebook: fix broken sepgsql.googlecode.com URL - - - --- 2022-12-16 Paul Moore pcmoore Accepted
[RFC,9/9] secilc/docs: Add deny rule to CIL documentation Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,8/9] secilc/test: Add a deny rule test Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,7/9] secilc/secil2tree: Add option to write CIL AST after post processing Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,6/9] libsepol: Export the cil_write_post_ast function Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,5/9] libsepol/cil: Add cil_write_post_ast function Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,4/9] libsepol/cil: Process deny rules Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,3/9] libsepol/cil: Add cil_tree_remove_node function Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,2/9] libsepol/cil: Add cil_list_is_empty macro Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[RFC,1/9] libsepol/cil: Parse and add deny rule to AST, but do not process Add CIL Deny Rule - - - --- 2022-12-15 James Carter bachradsusi Superseded
[2/2] selinux: Implement mptcp_add_subflow hook lsm: introduce and use security_mptcp_add_subflow() - - - --- 2022-12-14 Paolo Abeni pcmoore Changes Requested
[1/2] security, lsm: Introduce security_mptcp_add_subflow() lsm: introduce and use security_mptcp_add_subflow() - - - --- 2022-12-14 Paolo Abeni pcmoore Changes Requested
[1/1,RFC] SELINUX: Remove obsolete deferred inode security init list. SELINUX: Remove obsolete deferred inode security - - - --- 2022-12-13 Alexander Kozhevnikov pcmoore Accepted
[GIT,PULL] SELinux patches for v6.2 [GIT,PULL] SELinux patches for v6.2 - - - --- 2022-12-13 Paul Moore pcmoore Accepted
sepolicy: Call os.makedirs() with exist_ok=True sepolicy: Call os.makedirs() with exist_ok=True 1 - - --- 2022-12-12 Petr Lautrbach Accepted
[testsuite] policy: allow user_namespace::create where appropriate [testsuite] policy: allow user_namespace::create where appropriate - - - --- 2022-12-09 Ondrej Mosnacek omos Accepted
[2/2] python: Fix detection of sepolicy.glade location [1/2] sepolicy: Switch main selection menu to GtkPopover - - - --- 2022-12-08 Petr Lautrbach Accepted
[1/2] sepolicy: Switch main selection menu to GtkPopover [1/2] sepolicy: Switch main selection menu to GtkPopover 1 - - --- 2022-12-08 Petr Lautrbach Accepted
[testsuite,4/4] ci: bump Fedora versions Bump Fedora versions in CI - - - --- 2022-12-08 Ondrej Mosnacek omos Accepted
[testsuite,3/4] tests/execshare: remove special cases for arcane architectures Bump Fedora versions in CI - - - --- 2022-12-08 Ondrej Mosnacek omos Accepted
[testsuite,2/4] tests: use correct type for context string variables Bump Fedora versions in CI - - - --- 2022-12-08 Ondrej Mosnacek omos Accepted
[testsuite,1/4] tests: adapt style to new perltidy Bump Fedora versions in CI - - - --- 2022-12-08 Ondrej Mosnacek omos Accepted
[mptcp-net] mptcp: fix LSM labeling for passive msk [mptcp-net] mptcp: fix LSM labeling for passive msk 1 - - --- 2022-12-07 Paolo Abeni pcmoore Changes Requested
[security-next] selinux: use sysfs_emit() to instead of scnprintf() [security-next] selinux: use sysfs_emit() to instead of scnprintf() - - - --- 2022-12-05 ye.xingchen@zte.com.cn Rejected
[2/3] libsepol: fix potential memory leak in common_copy_callback [1/3] libselinux: fix potential NULL reference and memory leak in audit2why - - - --- 2022-12-05 Jie Lu Changes Requested
[1/3] libselinux: fix potential NULL reference and memory leak in audit2why [1/3] libselinux: fix potential NULL reference and memory leak in audit2why - - - --- 2022-12-05 Jie Lu Changes Requested
[v7,6/6] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v7,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v7,4/6] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v7,3/6] security: Remove security_old_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v7,2/6] ocfs2: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes 1 1 - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v7,1/6] reiserfs: Switch to security_inode_init_security() evm: Do HMAC of multiple per LSM xattrs for new inodes - 2 - --- 2022-12-01 Roberto Sassu Handled Elsewhere
[v2] Use `pip install` instead of `setup.py install` [v2] Use `pip install` instead of `setup.py install` 1 - - --- 2022-11-29 Petr Lautrbach Accepted
libselinux:add check for malloc libselinux:add check for malloc 1 - - --- 2022-11-29 Jie Lu Accepted
[RFC,v4,5/6] libsepol/tests: add tests for minus self neverallow rules not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi Accepted
[RFC,v4,4/6] libsepol/tests: add tests for not self neverallow rules not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi Accepted
[RFC,v4,3/6] checkpolicy: add not-self neverallow support not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi Accepted
[RFC,v4,1/6] libsepol: Add not self support for neverallow rules not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi Accepted
[2/2] libsemanage: Use more conscious language [1/2] checkpolicy: Improve error message for type bounds - - - --- 2022-11-24 Vit Mojzis Accepted
[1/2] checkpolicy: Improve error message for type bounds [1/2] checkpolicy: Improve error message for type bounds 1 - - --- 2022-11-24 Vit Mojzis Accepted
[v6,6/6] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu Handled Elsewhere
[v6,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2022-11-23 Roberto Sassu Handled Elsewhere
« 1 2 ... 16 17 1892 93 »