Show patches with: State = Action Required       |    Archived = No       |   113 patches
« 1 2 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v2] libselinux: set errno to EBADF on O_PATH emulation ENOENT failure [v2] libselinux: set errno to EBADF on O_PATH emulation ENOENT failure - - - --- 2022-07-06 Christian Göttsche New
libselinux: set errno to EBADF on O_PATH emulation failure libselinux: set errno to EBADF on O_PATH emulation failure - - - --- 2022-07-06 Christian Göttsche New
libsepol: do not modify policy during write libsepol: do not modify policy during write 1 - - --- 2022-06-30 Christian Göttsche New
libsepol/utils: improve wording libsepol/utils: improve wording 1 - - --- 2022-06-29 Christian Göttsche New
[userspace,1/1] libsepol: initialize s in constraint_expr_eval_reason [userspace,1/1] libsepol: initialize s in constraint_expr_eval_reason 1 - - --- 2022-06-29 Nicolas Iooss New
[userspace,1/1] CircleCI: do not add Debian-specific parameter when invoking setup.py [userspace,1/1] CircleCI: do not add Debian-specific parameter when invoking setup.py 1 - - --- 2022-06-29 Nicolas Iooss New
[v3,1/4] support Dash as default shell [v3,1/4] support Dash as default shell - - - --- 2022-06-28 Christian Göttsche New
[v37,33/33] AppArmor: Remove the exclusive flag [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 1 - --- 2022-06-28 Casey Schaufler New
[v37,32/33] LSM: Add /proc attr entry for full LSM context [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2022-06-28 Casey Schaufler New
[v37,31/33] LSM: Removed scaffolding function lsmcontext_init [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,30/33] netlabel: Use a struct lsmblob in audit data [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2022-06-28 Casey Schaufler New
[v37,29/33] Audit: Add record for multiple object contexts [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2022-06-28 Casey Schaufler New
[v37,28/33] audit: multiple subject lsm values for netlabel [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2022-06-28 Casey Schaufler New
[v37,27/33] Audit: Add record for multiple task security contexts [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2022-06-28 Casey Schaufler New
[v37,26/33] Audit: Allow multiple records in an audit_buffer [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,25/33] LSM: Add a function to report multiple LSMs [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2022-06-28 Casey Schaufler New
[v37,24/33] Audit: Create audit_stamp structure [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2022-06-28 Casey Schaufler New
[v37,23/33] Audit: Keep multiple LSM data in audit_names [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2022-06-28 Casey Schaufler New
[v37,22/33] LSM: security_secid_to_secctx module selection [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,21/33] binder: Pass LSM identifier for confirmation [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,20/33] NET: Store LSM netlabel data in a lsmblob [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2022-06-28 Casey Schaufler New
[v37,19/33] LSM: security_secid_to_secctx in netlink netfilter [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2022-06-28 Casey Schaufler New
[v37,18/33] LSM: Use lsmcontext in security_dentry_init_security [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,17/33] LSM: Use lsmcontext in security_inode_getsecctx [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2022-06-28 Casey Schaufler New
[v37,16/33] LSM: Use lsmcontext in security_secid_to_secctx [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,15/33] LSM: Ensure the correct LSM context releaser [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2022-06-28 Casey Schaufler New
[v37,14/33] LSM: Specify which LSM to display [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,13/33] LSM: Use lsmblob in security_cred_getsecid [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2022-06-28 Casey Schaufler New
[v37,12/33] LSM: Use lsmblob in security_inode_getsecid [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2022-06-28 Casey Schaufler New
[v37,11/33] LSM: Use lsmblob in security_current_getsecid [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2022-06-28 Casey Schaufler New
[v37,10/33] LSM: Use lsmblob in security_ipc_getsecid [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2022-06-28 Casey Schaufler New
[v37,09/33] LSM: Use lsmblob in security_secid_to_secctx [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2022-06-28 Casey Schaufler New
[v37,08/33] LSM: Use lsmblob in security_secctx_to_secid [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2022-06-28 Casey Schaufler New
[v37,07/33] LSM: Use lsmblob in security_kernel_act_as [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2022-06-28 Casey Schaufler New
[v37,06/33] LSM: Use lsmblob in security_audit_rule_match [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2022-06-28 Casey Schaufler New
[v37,05/33] IMA: avoid label collisions with stacked LSMs [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2022-06-28 Casey Schaufler New
[v37,04/33] LSM: provide lsm name and id slot mappings [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2022-06-28 Casey Schaufler New
[v37,03/33] LSM: Add the lsmblob data structure. [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule - 2 - --- 2022-06-28 Casey Schaufler New
[v37,02/33] LSM: Infrastructure management of the sock security [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2022-06-28 Casey Schaufler New
[v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule [v37,01/33] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2022-06-28 Casey Schaufler New
gettext: handle unsupported languages properly gettext: handle unsupported languages properly 1 1 - --- 2022-06-24 Vit Mojzis New
[RFC,4/4] checkpolicy: add front-end support for segregate attributes [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche New
[RFC,3/4] libsepol: add compile-time constraint for mutual exclusive attributes [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche New
[RFC,2/4] libsepol: add ebitmap iterator wrapper with startnode [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche New
[RFC,1/4] libsepol: refactor ebitmap conversion in link.c [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche New
python: remove IOError in certain cases python: remove IOError in certain cases - - - --- 2022-06-16 Elijah Conners New
[v2,4/4] watchkey: skip if CONFIG_WATCH_QUEUE not set [v2,1/4] support Dash as default shell - - - --- 2022-06-15 Christian Göttsche New
[v2,3/4] filesystem: allow getfilecon(3) to pass test [v2,1/4] support Dash as default shell - - - --- 2022-06-15 Christian Göttsche New
[v2,2/4] support perf_event_paranoid=3 [v2,1/4] support Dash as default shell - - - --- 2022-06-15 Christian Göttsche New
[v2,1/4] support Dash as default shell [v2,1/4] support Dash as default shell - - - --- 2022-06-15 Christian Göttsche New
[4/4] watchkey: skip if CONFIG_WATCH_QUEUE not set [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche New
[3/4] filesystem: allow getfilecon(3) to pass test [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche New
[2/4] support perf_event_paranoid=3 [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche New
[1/4] support Dash as default shell [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche New
libsepol: avoid potential NULL dereference on optional parameter libsepol: avoid potential NULL dereference on optional parameter 1 - - --- 2022-06-10 Christian Göttsche New
[v2] libsepol: fix validation of user declarations in non-base modules [v2] libsepol: fix validation of user declarations in non-base modules - - - --- 2022-06-09 Christian Göttsche New
[userspace,2/2] semodule: rename --rebuild-if-modules-changed to --refresh Refine semantics of libsemanage's check_ext_changes - - - --- 2022-06-08 Ondrej Mosnacek New
[userspace,1/2] libsemanage: always write kernel policy when check_ext_changes is specified Refine semantics of libsemanage's check_ext_changes 1 - - --- 2022-06-08 Ondrej Mosnacek New
[RFC,3/3] checkpolicy: rework initial SID handling [RFC,1/3] libsepol: export initial SIDs - - - --- 2022-06-07 Christian Göttsche New
[RFC,2/3] libsepol: validate initial SIDs [RFC,1/3] libsepol: export initial SIDs - - - --- 2022-06-07 Christian Göttsche New
[RFC,1/3] libsepol: export initial SIDs [RFC,1/3] libsepol: export initial SIDs - - - --- 2022-06-07 Christian Göttsche New
[v2,3/4] libselinux: name parameters in context.h Untitled series #648107 - - - --- 2022-06-07 Christian Göttsche New
[v4,4/4] libselinux: check for truncations Untitled series #648106 - - - --- 2022-06-07 Christian Göttsche New
[v2] libselinux: restorecon: avoid printing NULL pointer [v2] libselinux: restorecon: avoid printing NULL pointer 1 - - --- 2022-06-07 Christian Göttsche New
libsepol: fix validation of user declarations in modules libsepol: fix validation of user declarations in modules 1 - - --- 2022-06-07 Christian Göttsche New
libsepol: Drop unused assignment libsepol: Drop unused assignment 1 - - --- 2022-06-07 Petr Lautrbach New
Revert "libselinux: restorecon: pin file to avoid TOCTOU issues" Revert "libselinux: restorecon: pin file to avoid TOCTOU issues" 1 - - --- 2022-05-31 Petr Lautrbach New
python: Split "semanage import" into two transactions python: Split "semanage import" into two transactions 1 - - --- 2022-05-30 Vit Mojzis New
[1/1] libselinux: do not return the cached prev_current value when using getpidcon() [1/1] libselinux: do not return the cached prev_current value when using getpidcon() 1 - - --- 2022-05-29 Nicolas Iooss New
semodule: avoid toctou on output module semodule: avoid toctou on output module 1 - - --- 2022-05-20 Christian Göttsche New
libselinux: declare return value of context_str(3) const libselinux: declare return value of context_str(3) const 1 - - --- 2022-05-20 Christian Göttsche New
[4/4] libselinux: declare parameter of security_load_policy(3) const [1/4] libselinux: add man page redirections - - - --- 2022-05-20 Christian Göttsche New
[3/4] libselinux: name parameters in context.h [1/4] libselinux: add man page redirections - - - --- 2022-05-20 Christian Göttsche New
[2/4] libselinux: enclose macro definition in parenthesis [1/4] libselinux: add man page redirections - - - --- 2022-05-20 Christian Göttsche New
[1/4] libselinux: add man page redirections [1/4] libselinux: add man page redirections 1 - - --- 2022-05-20 Christian Göttsche New
Makefile: always include and link with DESTDIR Makefile: always include and link with DESTDIR - - - --- 2022-05-20 Christian Göttsche New
python/audit2allow: close file stream on error python/audit2allow: close file stream on error 1 - - --- 2022-05-20 Christian Göttsche New
[v3,4/4] libselinux: check for truncations Untitled series #643600 - - - --- 2022-05-20 Christian Göttsche New
[RFC,v2,4/4] libselinux: check for truncations Untitled series #642403 - - - --- 2022-05-17 Christian Göttsche New
[2/2] libselinux: restorecon: avoid printing NULL pointer [1/2] libselinux: restorecon: add fallback for pre 3.6 Linux - - - --- 2022-05-17 Christian Göttsche New
[1/2] libselinux: restorecon: add fallback for pre 3.6 Linux [1/2] libselinux: restorecon: add fallback for pre 3.6 Linux - - - --- 2022-05-17 Christian Göttsche New
[RFC,3/4] libselinux: introduce strlcpy [RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read - - - --- 2022-05-10 Christian Göttsche New
[RFC,2/4] libselinux: add header guard for internal header [RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read - - - --- 2022-05-10 Christian Göttsche New
[RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read [RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read 1 - - --- 2022-05-10 Christian Göttsche New
libselinux/utils/getsebool: add options to display en-/disabled booleans libselinux/utils/getsebool: add options to display en-/disabled booleans - - - --- 2022-04-28 Christian Göttsche New
[v2,6/6] Enable missing prototypes [v2,1/6] libsepol/cil: declare file local functions static - - - --- 2022-04-05 Christian Göttsche New
libselinux: Prevent cached context giving wrong results libselinux: Prevent cached context giving wrong results - - - --- 2022-01-27 Johannes Segitz New
[libselinux] libselinux: make threadsafe for discover_class_cache [libselinux] libselinux: make threadsafe for discover_class_cache - - - --- 2022-01-20 Purushottam Choudhary New
[2/2,RFC] libsepol/cil: Add notself and minusself support to CIL libsepol: Adding support for not-self rules - - - --- 2022-01-11 James Carter New
[1/2,RFC] libsepol: Add not self support for neverallow rules libsepol: Adding support for not-self rules - - - --- 2022-01-11 James Carter New
[RFC,1/1] selinux-testsuite: Reduce sctp test runtime selinux-testsuite: Reduce sctp test runtime - - - --- 2020-11-04 Richard Haines omos Under Review
[V2,1/1] selinux-testsuite: Add btrfs support for filesystem tests selinux-testsuite: Add btrfs support for filesystem tests - - - --- 2020-11-03 Richard Haines omos Queued
[v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - 1 - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,8/8] net: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,7/8] bpf: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,6/8] kernel: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,5/8] fs: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,4/8] drivers: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - 1 - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,3/8] block: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - 1 - --- 2022-06-15 Christian Göttsche pcmoore New
[v3,2/8] capability: use new capable_any functionality [v3,1/8] capability: add any wrapper to test for multiple caps with exactly one audit message - - - --- 2022-06-15 Christian Göttsche pcmoore New
« 1 2 »