Toggle navigation
Patchwork
SELinux Development list
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| Archived =
No
| 68 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
asi123
andmike
cvaroqui
nomura
jbrassow
dtor
kueda
bmarzins
tmlind
jmberg
jmberg
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
linville
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
davidb
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
bhelgaas
galak
vkoul
vkoul
szlin
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
agross
dvhart
axboe
axboe
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
sameo
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
luca
dgc
kbingham
derosier
narmstrong
atull
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
patersonc
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
broonie
broonie
broonie
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
bbrezillon
bachradsusi
rostedt
nbd
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
ggreenman
dhowells
tzungbi
paulmck
Apply
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[userspace,v4,2/2] libsepol,checkpolicy: add support for self keyword in type transitions
Support the 'self' keyword in type transitions
- - -
-
-
-
2022-05-13
Ondrej Mosnacek
New
[userspace,v4,1/2] libsepol/cil: add support for self keyword in type transitions
Support the 'self' keyword in type transitions
- - -
-
-
-
2022-05-13
Ondrej Mosnacek
New
[RFC,4/4] libselinux: restorecon: pin file to avoid TOCTOU issues
[RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon
1 - -
-
-
-
2022-05-11
Christian Göttsche
New
[RFC,3/4] libselinux: restorecon: forward error if not ENOENT
[RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon
1 - -
-
-
-
2022-05-11
Christian Göttsche
New
[RFC,2/4] libselinux: restorecon: misc tweaks
[RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon
1 - -
-
-
-
2022-05-11
Christian Göttsche
New
libselinux: preserve errno in selinux_log()
libselinux: preserve errno in selinux_log()
1 - -
-
-
-
2022-05-11
Christian Göttsche
New
[RFC,4/4] libselinux: check for truncations
[RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read
- - -
-
-
-
2022-05-10
Christian Göttsche
New
[RFC,3/4] libselinux: introduce strlcpy
[RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read
- - -
-
-
-
2022-05-10
Christian Göttsche
New
[RFC,2/4] libselinux: add header guard for internal header
[RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read
- - -
-
-
-
2022-05-10
Christian Göttsche
New
[RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read
[RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read
- - -
-
-
-
2022-05-10
Christian Göttsche
New
libselinux: free memory in error branch
libselinux: free memory in error branch
1 - -
-
-
-
2022-05-10
Christian Göttsche
New
[userspace,v3,2/2] libsepol,checkpolicy: add support for self keyword in type transitions
Support the 'self' keyword in type transitions
- - -
-
-
-
2022-05-10
Ondrej Mosnacek
New
[userspace,v3,1/2] libsepol/cil: add support for self keyword in type transitions
Support the 'self' keyword in type transitions
- - -
-
-
-
2022-05-10
Ondrej Mosnacek
New
gettext: set _ on module level instead of builtins namespace
gettext: set _ on module level instead of builtins namespace
1 - -
-
-
-
2022-05-06
Vit Mojzis
New
[RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon
[RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon
1 - -
-
-
-
2022-05-05
Christian Göttsche
New
libselinux/utils: print errno on failure
libselinux/utils: print errno on failure
1 - -
-
-
-
2022-05-05
Christian Göttsche
New
libselinux: update man page of setfilecon(3) family about context parameter
libselinux: update man page of setfilecon(3) family about context parameter
- - -
-
-
-
2022-05-05
Christian Göttsche
New
[v2,5/5] setfiles: introduce the -C option for distinguishing file tree walk errors
selinux_restorecon(3), setfiles(8): skip relabeling errors
- - -
-
-
-
2022-05-03
Laszlo Ersek
New
[v2,4/5] selinux_restorecon: introduce SELINUX_RESTORECON_COUNT_ERRORS
selinux_restorecon(3), setfiles(8): skip relabeling errors
- - -
-
-
-
2022-05-03
Laszlo Ersek
New
[v2,3/5] setfiles: remove useless "iamrestorecon" checks in option parsing
selinux_restorecon(3), setfiles(8): skip relabeling errors
- 1 -
-
-
-
2022-05-03
Laszlo Ersek
New
[v2,2/5] setfiles: remove useless assignment and comment (after RHBZ#1926386)
selinux_restorecon(3), setfiles(8): skip relabeling errors
- - -
-
-
-
2022-05-03
Laszlo Ersek
New
[v2,1/5] setfiles: fix up inconsistent indentation
selinux_restorecon(3), setfiles(8): skip relabeling errors
- - -
-
-
-
2022-05-03
Laszlo Ersek
New
libselinux/utils/getsebool: add options to display en-/disabled booleans
libselinux/utils/getsebool: add options to display en-/disabled booleans
- - -
-
-
-
2022-04-28
Christian Göttsche
New
checkpolicy: mention class name on invalid permission
checkpolicy: mention class name on invalid permission
1 - -
-
-
-
2022-04-26
Christian Göttsche
New
[userspace,v2,2/2] libsepol,checkpolicy: add support for self keyword in type transitions
Support the 'self' keyword in type transitions
- - -
-
-
-
2022-04-26
Ondrej Mosnacek
New
[userspace,v2,1/2] libsepol/cil: add support for self keyword in type transitions
Support the 'self' keyword in type transitions
- - -
-
-
-
2022-04-26
Ondrej Mosnacek
New
[v2,6/6] Enable missing prototypes
[v2,1/6] libsepol/cil: declare file local functions static
- - -
-
-
-
2022-04-05
Christian Göttsche
New
docs: selinux: add '=' signs to kernel boot options
docs: selinux: add '=' signs to kernel boot options
1 - -
-
-
-
2022-03-01
Randy Dunlap
New
[RESEND] xfs: don't generate selinux audit messages for capability testing
[RESEND] xfs: don't generate selinux audit messages for capability testing
1 2 -
-
-
-
2022-03-01
Darrick J. Wong
New
[RFC,1/1] selinuxns: Replace state pointer with namespace id
[RFC,1/1] selinuxns: Replace state pointer with namespace id
- - -
-
-
-
2022-02-16
Igor Baranov
New
libselinux: Prevent cached context giving wrong results
libselinux: Prevent cached context giving wrong results
- - -
-
-
-
2022-01-27
Johannes Segitz
New
[libselinux] libselinux: make threadsafe for discover_class_cache
[libselinux] libselinux: make threadsafe for discover_class_cache
- - -
-
-
-
2022-01-20
Purushottam Choudhary
New
[2/2,RFC] libsepol/cil: Add notself and minusself support to CIL
libsepol: Adding support for not-self rules
- - -
-
-
-
2022-01-11
James Carter
New
[1/2,RFC] libsepol: Add not self support for neverallow rules
libsepol: Adding support for not-self rules
- - -
-
-
-
2022-01-11
James Carter
New
[RFC,v3,5/5] libsepol: pass avtab to report function
[RFC,v3,1/5] libsepol: introduce ebitmap_relative_complement()
- - -
-
-
-
2021-12-04
Christian Göttsche
New
[RFC,v3,4/5] libsepol: free ebitmap on end of function
[RFC,v3,1/5] libsepol: introduce ebitmap_relative_complement()
- - -
-
-
-
2021-12-04
Christian Göttsche
New
[RFC,v3,3/5] checkpolicy: add not-self neverallow support
[RFC,v3,1/5] libsepol: introduce ebitmap_relative_complement()
- - -
-
-
-
2021-12-04
Christian Göttsche
New
[RFC,v3,2/5] libsepol: add not-self neverallow support
[RFC,v3,1/5] libsepol: introduce ebitmap_relative_complement()
- - -
-
-
-
2021-12-04
Christian Göttsche
New
[RFC,v3,1/5] libsepol: introduce ebitmap_relative_complement()
[RFC,v3,1/5] libsepol: introduce ebitmap_relative_complement()
- - -
-
-
-
2021-12-04
Christian Göttsche
New
[XSERVER,2/2] selinux: log events with appropriate audit type
[XSERVER,1/2] selinux: remap security classes on policyload
- - -
-
-
-
2021-11-25
Christian Göttsche
New
[XSERVER,1/2] selinux: remap security classes on policyload
[XSERVER,1/2] selinux: remap security classes on policyload
- - -
-
-
-
2021-11-25
Christian Göttsche
New
[2/2] dbus: Add filetrans for /tmp/dbus-* session socket
[1/2] selinux: Add map perms
- - -
-
-
-
2021-11-21
Jason Zaman
New
[1/2] selinux: Add map perms
[1/2] selinux: Add map perms
- - -
-
-
-
2021-11-21
Jason Zaman
New
[V2,testsuite] tests/inet_socket: Add socket transition tests
[V2,testsuite] tests/inet_socket: Add socket transition tests
- - -
-
-
-
2021-11-25
Richard Haines
omos
New
[RFC,1/1] selinux-testsuite: Reduce sctp test runtime
selinux-testsuite: Reduce sctp test runtime
- - -
-
-
-
2020-11-04
Richard Haines
omos
Under Review
[V2,1/1] selinux-testsuite: Add btrfs support for filesystem tests
selinux-testsuite: Add btrfs support for filesystem tests
- - -
-
-
-
2020-11-03
Richard Haines
omos
Queued
[28/32] selinux: Use mem_to_flex_dup() with xfrm and sidtab
Introduce flexible array struct memcpy() helpers
- - -
-
-
-
2022-05-04
Kees Cook
pcmoore
New
fsnotify: add generic perm check for unlink/rmdir
fsnotify: add generic perm check for unlink/rmdir
- - -
-
-
-
2022-05-03
Guowei Du
pcmoore
New
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,8/8] net: use new capable_or functionality
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
- 1 -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,7/8] kernel/bpf: use new capable_or functionality
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,6/8] kernel: use new capable_or functionality
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,5/8] fs: use new capable_or functionality
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,4/8] drivers: use new capable_or functionality
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
1 1 -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,3/8] block: use new capable_or functionality
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,2/8] capability: use new capable_or functionality
[v2,1/8] capability: add capable_or to test for multiple caps with exactly one audit message
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[v2,RFC] sched: only perform capability check on privileged operation
[v2,RFC] sched: only perform capability check on privileged operation
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
selinux: use unsigned char for boolean values
selinux: use unsigned char for boolean values
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
[RFC,7/7] SELINUXNS: Fixing concurrency issues
[RFC,1/7] LSM: Infrastructure management of the superblock
- - -
-
-
-
2022-04-18
Alexander Kozhevnikov
pcmoore
New
[RFC,6/7] SELINUXNS: Fixing superblock security structure memory leakage
[RFC,1/7] LSM: Infrastructure management of the superblock
- - -
-
-
-
2022-04-18
Alexander Kozhevnikov
pcmoore
New
[RFC,5/7] SELINUXNS: Migrate all open files and all vma to new namespace
[RFC,1/7] LSM: Infrastructure management of the superblock
- - -
-
-
-
2022-04-18
Alexander Kozhevnikov
pcmoore
New
[RFC,4/7] SELINUXNS: Namespacing for xattrs
[RFC,1/7] LSM: Infrastructure management of the superblock
- - -
-
-
-
2022-04-18
Alexander Kozhevnikov
pcmoore
New
[RFC,3/7] SELINUXNS: Fix initilization of the superblock security under spinlock
[RFC,1/7] LSM: Infrastructure management of the superblock
- - -
-
-
-
2022-04-18
Alexander Kozhevnikov
pcmoore
New
[RFC,2/7] selinux: support per-namespace superblock security structures
[RFC,1/7] LSM: Infrastructure management of the superblock
- - -
-
-
-
2022-04-18
Alexander Kozhevnikov
pcmoore
New
[RFC,1/7] LSM: Infrastructure management of the superblock
[RFC,1/7] LSM: Infrastructure management of the superblock
1 2 -
-
-
-
2022-04-18
Alexander Kozhevnikov
pcmoore
New
[5/5] selinux: drop unnecessary NULL check
[1/5] selinux: drop return statement at end of void functions
- - -
-
-
-
2022-02-17
Christian Göttsche
pcmoore
New
[RFC] mm: create security context for memfd_secret inodes
[RFC] mm: create security context for memfd_secret inodes
- - -
-
-
-
2022-01-25
Christian Göttsche
pcmoore
New
[RFC,2/2] security, nfs: Provide a hook for fs_context security initialisation
[RFC,1/2] security: Remove security_add_mnt_opt() as it's unused
- - -
-
-
-
2021-12-08
David Howells
pcmoore
New