Show patches with: Archived = No       |   9046 patches
« 1 2 ... 17 18 1990 91 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[GIT,PULL] LSM fixes for v6.0 (#1) [GIT,PULL] LSM fixes for v6.0 (#1) - - - --- 2022-08-29 Paul Moore Handled Elsewhere
checkpolicy: avoid passing NULL pointer to memset() checkpolicy: avoid passing NULL pointer to memset() 1 - - --- 2022-08-29 Juraj Marcin Accepted
[3/3] secilc/docs: disable pandoc default css for html docs [1/3] secilc/docs: selinuxuser actually takes a string not identifier 1 - - --- 2022-08-28 bauen1 Accepted
[2/3] secilc/docs: fix syntax highlighting [1/3] secilc/docs: selinuxuser actually takes a string not identifier 1 - - --- 2022-08-28 bauen1 Accepted
[testsuite] tests: remove more stray flag/temporary files with 'make clean' [testsuite] tests: remove more stray flag/temporary files with 'make clean' - - - --- 2022-08-26 Ondrej Mosnacek omos Accepted
libsepol: fix missing double quotes in typetransition CIL rule libsepol: fix missing double quotes in typetransition CIL rule - - - --- 2022-08-25 Juraj Marcin Accepted
tests/filesystem/xfs: use a 300M xfs filesystem image tests/filesystem/xfs: use a 300M xfs filesystem image - - - --- 2022-08-24 Paul Moore omos Accepted
[testsuite,2/2] test_userfaultfd.te: adapt to upcoming Fedora policy changes Prepare userfaultfd policy for Fedora policy changes - 1 - --- 2022-08-24 Ondrej Mosnacek omos Accepted
[testsuite,1/2] policy: remove CIL workarounds for missing anon_inode class Prepare userfaultfd policy for Fedora policy changes - - - --- 2022-08-24 Ondrej Mosnacek omos Accepted
[v4] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing [v4] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing - - 1 --- 2022-08-24 David Howells pcmoore Superseded
[3/3] /dev/null: add IORING_OP_URING_CMD support LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[2/3] selinux: implement the security_uring_cmd() LSM hook LSM hooks for IORING_OP_URING_CMD - - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[v1] selinux/ss/services.c: check the return value of audit_log_start() in security_sid_mls_copy() [v1] selinux/ss/services.c: check the return value of audit_log_start() in security_sid_mls_copy() - - - --- 2022-08-20 Li Zhong pcmoore Rejected
[selinux-testsuite] tests/binder: remove stray flag files with 'make clean' [selinux-testsuite] tests/binder: remove stray flag files with 'make clean' - - - --- 2022-08-16 Paul Moore omos Accepted
[v5,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 3 - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 2 - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
tests/sctp: reenable the SCTP ASCONF tests tests/sctp: reenable the SCTP ASCONF tests - - - --- 2022-08-09 Paul Moore omos Under Review
tests/sctp: allow both ENOSPC and EINPROGRESS for CIPSO tag space errors tests/sctp: allow both ENOSPC and EINPROGRESS for CIPSO tag space errors - - - --- 2022-08-09 Paul Moore omos Accepted
selinux: SCTP fixes, including ASCONF selinux: SCTP fixes, including ASCONF - - - --- 2022-08-09 Paul Moore pcmoore Changes Requested
[4/4] Ignore egg-info directories and clean them [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[3/4] scripts: ignore Flake8 tag E275 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/4] scripts/ci: use F36 image instead of F34 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/2] restorecond: use strict function prototype for definition [1/2] checkpolicy: use strict function prototype for definitions - 1 - --- 2022-08-08 Christian Göttsche Accepted
[1/2] checkpolicy: use strict function prototype for definitions [1/2] checkpolicy: use strict function prototype for definitions 1 1 - --- 2022-08-08 Christian Göttsche Accepted
libselinux: avoid newline in avc message libselinux: avoid newline in avc message 1 - - --- 2022-08-08 Christian Göttsche Accepted
selinux: add a new warn_on_audited debug flag to selinuxfs selinux: add a new warn_on_audited debug flag to selinuxfs - - - --- 2022-08-08 Ondrej Mosnacek pcmoore Rejected
[v3] nfs: Fix automount superblock LSM init problem, preventing sb sharing [v3] nfs: Fix automount superblock LSM init problem, preventing sb sharing - 1 1 --- 2022-08-05 David Howells pcmoore Superseded
[v2] nfs: Fix automount superblock LSM init problem, preventing sb sharing [v2] nfs: Fix automount superblock LSM init problem, preventing sb sharing - - - --- 2022-08-04 David Howells Superseded
nfs: Fix automount superblock LSM init problem, preventing sb sharing nfs: Fix automount superblock LSM init problem, preventing sb sharing - - - --- 2022-08-04 David Howells Superseded
[GIT,PULL] SELinux patches for v6.0 [GIT,PULL] SELinux patches for v6.0 - - - --- 2022-08-01 Paul Moore pcmoore Accepted
[v4,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 3 - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 2 - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[2/2] sepolgen: Support named xperms [1/2] sepolgen: Update refparser to handle xperm - - - --- 2022-08-01 chris.lindee@gmail.com Changes Requested
[1/2] sepolgen: Update refparser to handle xperm [1/2] sepolgen: Update refparser to handle xperm - - - --- 2022-08-01 chris.lindee@gmail.com Changes Requested
[testsuite,24/24] ci: add sysadm_t to the test matrix Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,23/24] tests/vsock_socket: use modprobe to check vsock availability Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,22/24] policy: give sysadm_t perms needed to run quotacheck(8) Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,21/24] tests/overlay: don't hard-code SELinux user of the caller Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,20/24] tests/binder: check only the type part of the context Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,19/24] ci: check for unconfined_t AVCs Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,18/24] policy: don't audit testsuite programs searching the caller's keys Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,17/24] test_general.te: generalize the dontaudit rule Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,16/24] policy: remove last hardcoded references to unconfined_t Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,15/24] tests/*filesystem: remove weird uses of unconfined_t Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,14/24] tests/nnp_nosuid: avoid hardcoding unconfined_t in the policy Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,13/24] test_filesystem.te: remove suspicious rules Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,12/24] test_filesystem.te: remove redundant dontaudit rules Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,11/24] test_general.te: move sysadm-related rules into an optional block Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,10/24] policy: substitute userdom_sysadm_entry_spec_domtrans_to() Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,09/24] policy: move miscfiles_domain_entry_test_files() to general policy Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,08/24] policy: move userdom_sysadm_entry_spec_domtrans_to() to general policy Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,07/24] policy: move unconfined_t-related dontaudit rule to where it fits better Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,06/24] test_policy.if: remove weird rule from testsuite_domain_type_minimal() Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,03/24] test_global.te: don't add domains to system_r Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,02/24] test_global.te: remove unused role require Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,01/24] keys: change test_newcon_key_t to be just an object context Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[v3,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v3,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v3,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 1 - - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v3,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 1 - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v2,5/5] libsepol: more strict validation [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,4/5] libsepol: rename parameter name [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,3/5] libsepol: operate on const pointers during validation [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,2/5] libsepol: support const avtab_t pointer in avtab_map() [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,1/5] libsepol: rename validate_policydb to policydb_validate [v2,1/5] libsepol: rename validate_policydb to policydb_validate 1 - - --- 2022-07-21 Christian Göttsche Accepted
[v3,1/8] libsepol: refactor ebitmap conversion in link.c [v3,1/8] libsepol: refactor ebitmap conversion in link.c 1 - - --- 2022-07-21 Christian Göttsche Accepted
[v2,7/7] libsepol: skip superfluous memset calls in ebitmap operations [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,6/7] libsepol: optimize ebitmap_xor [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,5/7] libsepol: optimize ebitmap_and [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,4/7] libsepol: optimize ebitmap_not [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,3/7] libsepol/cil: use ebitmap_init_range [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,2/7] libsepol: add ebitmap_init_range [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,1/7] libsepol/tests: add ebitmap tests [v2,1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-19 Christian Göttsche Accepted
tests/sctp: remove assumptions in the SCTP tests tests/sctp: remove assumptions in the SCTP tests - - - --- 2022-07-18 Paul Moore omos Accepted
[testsuite] tests/module_load: detect the linker to use for module build [testsuite] tests/module_load: detect the linker to use for module build - - - --- 2022-07-18 Ondrej Mosnacek omos Accepted
[5/5] libsepol: more strict validation [1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-13 Christian Göttsche Accepted
[4/5] libsepol: rename parameter name [1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-13 Christian Göttsche Accepted
[2/5] libsepol: support const avtab_t pointer in avtab_map() [1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-13 Christian Göttsche Accepted
[1/5] libsepol: rename validate_policydb to policydb_validate [1/5] libsepol: rename validate_policydb to policydb_validate 1 - - --- 2022-07-13 Christian Göttsche Accepted
[3/3] libsepol: enclose macro parameters and replacement lists in parentheses [1/3] libsepol: break circular include - - - --- 2022-07-13 Christian Göttsche Accepted
[2/3] libsepol: include necessary headers in headers [1/3] libsepol: break circular include - - - --- 2022-07-13 Christian Göttsche Accepted
[1/3] libsepol: break circular include [1/3] libsepol: break circular include 1 - - --- 2022-07-13 Christian Göttsche Accepted
[7/7] libsepol: skip superfluous memset calls in ebitmap operations [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[6/7] libsepol: optimize ebitmap_xor [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[5/7] libsepol: optimize ebitmap_and [1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-12 Christian Göttsche Accepted
[4/7] libsepol: optimize ebitmap_not [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[3/7] libsepol/cil: use ebitmap_init_range [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[2/7] libsepol: add ebitmap_init_range [1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-12 Christian Göttsche Accepted
[1/7] libsepol/tests: add ebitmap tests [1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-12 Christian Göttsche Accepted
[RFC,RESEND] userfaultfd: open userfaultfds with O_RDONLY [RFC,RESEND] userfaultfd: open userfaultfds with O_RDONLY 2 - - --- 2022-07-08 Ondrej Mosnacek pcmoore Handled Elsewhere
[v2,4/4] selinux: Implement create_user_ns hook Introduce security_create_user_ns() - - - --- 2022-07-07 Frederick Lawler pcmoore Superseded
[v2,3/4] selftests/bpf: Add tests verifying bpf lsm create_user_ns hook Introduce security_create_user_ns() - - - --- 2022-07-07 Frederick Lawler pcmoore Superseded
[v2,2/4] bpf-lsm: Make bpf_lsm_create_user_ns() sleepable Introduce security_create_user_ns() - - - --- 2022-07-07 Frederick Lawler pcmoore Superseded
[v2,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - - - --- 2022-07-07 Frederick Lawler pcmoore Superseded
[v2] libselinux: set errno to EBADF on O_PATH emulation ENOENT failure [v2] libselinux: set errno to EBADF on O_PATH emulation ENOENT failure 1 - - --- 2022-07-06 Christian Göttsche Accepted
« 1 2 ... 17 18 1990 91 »