Show patches with: Archived = No       |   9200 patches
« 1 2 ... 18 19 2091 92 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v38,21/39] LSM: Ensure the correct LSM context releaser [v38,01/39] LSM: Identify modules by more than name 3 2 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,20/39] LSM: Specify which LSM to display [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,19/39] LSM: Use lsmblob in security_cred_getsecid [v38,01/39] LSM: Identify modules by more than name 2 2 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,18/39] LSM: Use lsmblob in security_inode_getsecid [v38,01/39] LSM: Identify modules by more than name 2 2 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,17/39] LSM: Use lsmblob in security_current_getsecid [v38,01/39] LSM: Identify modules by more than name 2 2 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,16/39] LSM: Use lsmblob in security_ipc_getsecid [v38,01/39] LSM: Identify modules by more than name 2 2 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,15/39] LSM: Use lsmblob in security_secid_to_secctx [v38,01/39] LSM: Identify modules by more than name 1 1 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,14/39] LSM: Use lsmblob in security_secctx_to_secid [v38,01/39] LSM: Identify modules by more than name 1 1 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,13/39] LSM: Use lsmblob in security_kernel_act_as [v38,01/39] LSM: Identify modules by more than name 2 2 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,12/39] LSM: Use lsmblob in security_audit_rule_match [v38,01/39] LSM: Identify modules by more than name 1 1 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,11/39] IMA: avoid label collisions with stacked LSMs [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,10/39] LSM: provide lsm name and id slot mappings [v38,01/39] LSM: Identify modules by more than name 1 1 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,09/39] LSM: Add the lsmblob data structure. [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,08/39] LSM: Infrastructure management of the sock security [v38,01/39] LSM: Identify modules by more than name 2 2 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,07/39] integrity: disassociate ima_filter_rule from security_audit_rule [v38,01/39] LSM: Identify modules by more than name 1 1 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,06/39] LSM: lsm_self_attr syscall for LSM self attributes [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,05/39] proc: Use lsmids instead of lsm names for attrs [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,04/39] LSM: Maintain a table of LSM attribute data [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,03/39] LSM: Identify the process attributes for each module [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,02/39] LSM: Add an LSM identifier for external use [v38,01/39] LSM: Identify modules by more than name - 1 - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v38,01/39] LSM: Identify modules by more than name [v38,01/39] LSM: Identify modules by more than name - - - --- 2022-09-27 Casey Schaufler pcmoore Handled Elsewhere
[v2,11/30] selinux: implement set acl hook Untitled series #680558 1 - - --- 2022-09-26 Christian Brauner pcmoore Superseded
[RFC] selinux: increase the deprecation sleep for checkreqprot and runtime disable [RFC] selinux: increase the deprecation sleep for checkreqprot and runtime disable 1 - - --- 2022-09-23 Paul Moore pcmoore Accepted
docs: add Paul Moore's GPG fingerprint docs: add Paul Moore's GPG fingerprint 1 - - --- 2022-09-22 Paul Moore Accepted
libsemanage: Allow user to set SYSCONFDIR libsemanage: Allow user to set SYSCONFDIR 1 1 - --- 2022-09-22 Matthew Sheets Accepted
[10/29] selinux: implement set acl hook Untitled series #679495 - - - --- 2022-09-22 Christian Brauner pcmoore Superseded
[1/1] Add CONFIG_SECURITY_SELINUX_PERMISSIVE_DONTAUDIT Add CONFIG_SECURITY_SELINUX_PERMISSIVE_DONTAUDIT - - 2 --- 2022-09-21 Jeff Xu pcmoore Rejected
selinux: remove runtime disable message in the install_policy.sh script selinux: remove runtime disable message in the install_policy.sh script - - - --- 2022-09-20 Paul Moore pcmoore Accepted
scripts/selinux: use "grep -E" instead of "egrep" scripts/selinux: use "grep -E" instead of "egrep" - - - --- 2022-09-20 Greg KH pcmoore Accepted
[v2,RFC] LSM: lsm_self_attr syscall for LSM self attributes [v2,RFC] LSM: lsm_self_attr syscall for LSM self attributes - - - --- 2022-09-19 Casey Schaufler pcmoore Handled Elsewhere
secilc/doc: classmap is also allowed in permissionx secilc/doc: classmap is also allowed in permissionx 1 - - --- 2022-09-19 Dominick Grift Accepted
[userspace] fixfiles: do not cross mounts when traversing directories [userspace] fixfiles: do not cross mounts when traversing directories - - - --- 2022-09-19 Ondrej Mosnacek Rejected
[v3] fixfiles: Unmount temporary bind mounts on SIGINT [v3] fixfiles: Unmount temporary bind mounts on SIGINT - - - --- 2022-09-16 Petr Lautrbach Superseded
[v2] fixfiles: Unmount temporary bind mounts on SIGINT [v2] fixfiles: Unmount temporary bind mounts on SIGINT - - - --- 2022-09-15 Petr Lautrbach Superseded
fixfiles: Unmount temporary bind mounts on SIGINT fixfiles: Unmount temporary bind mounts on SIGINT - - - --- 2022-09-15 Petr Lautrbach Superseded
python: Hide error message when modifying non-local fcontext python: Hide error message when modifying non-local fcontext - - - --- 2022-09-14 Vit Mojzis Rejected
[RFC] LSM: Specify which LSM to display [RFC] LSM: Specify which LSM to display - - - --- 2022-09-14 Casey Schaufler pcmoore Handled Elsewhere
[linux-next] selinux/hooks: remove the unneeded result variable [linux-next] selinux/hooks: remove the unneeded result variable - - - --- 2022-09-12 CGEL pcmoore Accepted
python/chcat: Don't fail on missing translation files python/chcat: Don't fail on missing translation files - - - --- 2022-09-12 Johannes Segitz Rejected
[RFC] LSM: lsm_self_attr system call to get security module attributes [RFC] LSM: lsm_self_attr system call to get security module attributes - - - --- 2022-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v5.19.y,3/3] Smack: Provide read control for io_uring_cmd Backport the io_uring/LSM CMD passthrough controls 1 - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[v5.19.y,2/3] selinux: implement the security_uring_cmd() LSM hook Backport the io_uring/LSM CMD passthrough controls - - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[v5.19.y,1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op Backport the io_uring/LSM CMD passthrough controls - - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[testsuite] tests/Makefile: add missing condition for userfaultfd test [testsuite] tests/Makefile: add missing condition for userfaultfd test - - - --- 2022-09-02 Ondrej Mosnacek omos Accepted
[2/2] fs: don't call capable() prematurely in simple_xattr_list() fs: fix capable() call in simple_xattr_list() - - - --- 2022-09-01 Ondrej Mosnacek pcmoore Handled Elsewhere
[1/2] fs: convert simple_xattrs to RCU list fs: fix capable() call in simple_xattr_list() - - - --- 2022-09-01 Ondrej Mosnacek pcmoore Handled Elsewhere
[v5] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing [v5] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing 2 1 1 --- 2022-09-01 David Howells pcmoore Superseded
[v2] tests/secretmem: add test [v2] tests/secretmem: add test - - - --- 2022-08-31 Christian Göttsche omos Superseded
tests/secretmem: add test tests/secretmem: add test - - - --- 2022-08-31 Christian Göttsche Superseded
libselinux: support objname in compute_create libselinux: support objname in compute_create 1 - - --- 2022-08-30 Christian Göttsche Accepted
selinux: declare read-only parameters const selinux: declare read-only parameters const - - - --- 2022-08-30 Christian Göttsche pcmoore Accepted
selinux: use int arrays for boolean values selinux: use int arrays for boolean values - - - --- 2022-08-30 Christian Göttsche pcmoore Accepted
[linux-next] selinux: remove redundant variables rc [linux-next] selinux: remove redundant variables rc - - - --- 2022-08-30 CGEL In Next
[linux-next] selinux: Remove the unneeded result variable [linux-next] selinux: Remove the unneeded result variable - - - --- 2022-08-30 CGEL Accepted
[GIT,PULL] LSM fixes for v6.0 (#1) [GIT,PULL] LSM fixes for v6.0 (#1) - - - --- 2022-08-29 Paul Moore Handled Elsewhere
checkpolicy: avoid passing NULL pointer to memset() checkpolicy: avoid passing NULL pointer to memset() 1 - - --- 2022-08-29 Juraj Marcin Accepted
[3/3] secilc/docs: disable pandoc default css for html docs [1/3] secilc/docs: selinuxuser actually takes a string not identifier 1 - - --- 2022-08-28 bauen1 Accepted
[2/3] secilc/docs: fix syntax highlighting [1/3] secilc/docs: selinuxuser actually takes a string not identifier 1 - - --- 2022-08-28 bauen1 Accepted
[testsuite] tests: remove more stray flag/temporary files with 'make clean' [testsuite] tests: remove more stray flag/temporary files with 'make clean' - - - --- 2022-08-26 Ondrej Mosnacek omos Accepted
libsepol: fix missing double quotes in typetransition CIL rule libsepol: fix missing double quotes in typetransition CIL rule - - - --- 2022-08-25 Juraj Marcin Accepted
tests/filesystem/xfs: use a 300M xfs filesystem image tests/filesystem/xfs: use a 300M xfs filesystem image - - - --- 2022-08-24 Paul Moore omos Accepted
[testsuite,2/2] test_userfaultfd.te: adapt to upcoming Fedora policy changes Prepare userfaultfd policy for Fedora policy changes - 1 - --- 2022-08-24 Ondrej Mosnacek omos Accepted
[testsuite,1/2] policy: remove CIL workarounds for missing anon_inode class Prepare userfaultfd policy for Fedora policy changes - - - --- 2022-08-24 Ondrej Mosnacek omos Accepted
[v4] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing [v4] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing - - 1 --- 2022-08-24 David Howells pcmoore Superseded
[3/3] /dev/null: add IORING_OP_URING_CMD support LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[2/3] selinux: implement the security_uring_cmd() LSM hook LSM hooks for IORING_OP_URING_CMD - - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[v1] selinux/ss/services.c: check the return value of audit_log_start() in security_sid_mls_copy() [v1] selinux/ss/services.c: check the return value of audit_log_start() in security_sid_mls_copy() - - - --- 2022-08-20 Li Zhong pcmoore Rejected
[selinux-testsuite] tests/binder: remove stray flag files with 'make clean' [selinux-testsuite] tests/binder: remove stray flag files with 'make clean' - - - --- 2022-08-16 Paul Moore omos Accepted
[v5,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 3 - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 2 - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
tests/sctp: reenable the SCTP ASCONF tests tests/sctp: reenable the SCTP ASCONF tests - - - --- 2022-08-09 Paul Moore omos Under Review
tests/sctp: allow both ENOSPC and EINPROGRESS for CIPSO tag space errors tests/sctp: allow both ENOSPC and EINPROGRESS for CIPSO tag space errors - - - --- 2022-08-09 Paul Moore omos Accepted
selinux: SCTP fixes, including ASCONF selinux: SCTP fixes, including ASCONF - - - --- 2022-08-09 Paul Moore pcmoore Changes Requested
[4/4] Ignore egg-info directories and clean them [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[3/4] scripts: ignore Flake8 tag E275 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/4] scripts/ci: use F36 image instead of F34 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/2] restorecond: use strict function prototype for definition [1/2] checkpolicy: use strict function prototype for definitions - 1 - --- 2022-08-08 Christian Göttsche Accepted
[1/2] checkpolicy: use strict function prototype for definitions [1/2] checkpolicy: use strict function prototype for definitions 1 1 - --- 2022-08-08 Christian Göttsche Accepted
libselinux: avoid newline in avc message libselinux: avoid newline in avc message 1 - - --- 2022-08-08 Christian Göttsche Accepted
selinux: add a new warn_on_audited debug flag to selinuxfs selinux: add a new warn_on_audited debug flag to selinuxfs - - - --- 2022-08-08 Ondrej Mosnacek pcmoore Rejected
[v3] nfs: Fix automount superblock LSM init problem, preventing sb sharing [v3] nfs: Fix automount superblock LSM init problem, preventing sb sharing - 1 1 --- 2022-08-05 David Howells pcmoore Superseded
[v2] nfs: Fix automount superblock LSM init problem, preventing sb sharing [v2] nfs: Fix automount superblock LSM init problem, preventing sb sharing - - - --- 2022-08-04 David Howells Superseded
nfs: Fix automount superblock LSM init problem, preventing sb sharing nfs: Fix automount superblock LSM init problem, preventing sb sharing - - - --- 2022-08-04 David Howells Superseded
[GIT,PULL] SELinux patches for v6.0 [GIT,PULL] SELinux patches for v6.0 - - - --- 2022-08-01 Paul Moore pcmoore Accepted
[v4,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 3 - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 2 - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[2/2] sepolgen: Support named xperms [1/2] sepolgen: Update refparser to handle xperm - - - --- 2022-08-01 chris.lindee@gmail.com Changes Requested
[1/2] sepolgen: Update refparser to handle xperm [1/2] sepolgen: Update refparser to handle xperm - - - --- 2022-08-01 chris.lindee@gmail.com Changes Requested
[testsuite,24/24] ci: add sysadm_t to the test matrix Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,23/24] tests/vsock_socket: use modprobe to check vsock availability Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,22/24] policy: give sysadm_t perms needed to run quotacheck(8) Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,21/24] tests/overlay: don't hard-code SELinux user of the caller Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,20/24] tests/binder: check only the type part of the context Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,19/24] ci: check for unconfined_t AVCs Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,18/24] policy: don't audit testsuite programs searching the caller's keys Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
« 1 2 ... 18 19 2091 92 »