Show patches with: State = Action Required       |    Archived = No       |   85 patches
Patch Series A/R/T S/W/F Date Submitter Delegate State
[testsuite] test_userfaultfd.te: grant test_uffd_domain CAP_SYS_PTRACE [testsuite] test_userfaultfd.te: grant test_uffd_domain CAP_SYS_PTRACE - - - --- 2021-01-25 Ondrej Mosnacek New
[v5] proc: Allow pid_revalidate() during LOOKUP_RCU [v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-01-22 Stephen Brennan New
[v2] python/sepolgen: allow any policy statement in if(n)def [v2] python/sepolgen: allow any policy statement in if(n)def 1 - - --- 2021-01-22 Vit Mojzis New
[v6,39/40] xfs: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,38/40] ext4: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,37/40] fat: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,36/40] tests: add mount_setattr() selftests idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,35/40] fs: introduce MOUNT_ATTR_IDMAP idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,34/40] fs: add mount_setattr() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,33/40] fs: add attr_flags_to_mnt_flags helper idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,32/40] fs: split out functions to hold writers idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,31/40] namespace: only take read lock in do_reconfigure_mnt() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,30/40] mount: make {lock,unlock}_mount_hash() static idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,29/40] namespace: take lock_mount_hash() directly when changing flags idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,28/40] overlayfs: do not mount on top of idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,27/40] ecryptfs: do not mount on top of idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,26/39] ima: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,25/40] apparmor: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,23/40] exec: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,22/40] would_dump: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,21/40] ioctl: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,20/40] init: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,19/40] fcntl: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,18/40] utimes: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,17/40] af_unix: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,16/40] open: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,15/40] open: handle idmapped mounts in do_truncate() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,14/40] namei: prepare for idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,13/40] namei: introduce struct renamedata idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,12/40] namei: handle idmapped mounts in may_*() helpers idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,11/40] stat: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,10/40] commoncap: handle idmapped mounts idmapped mounts 1 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,09/40] xattr: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,08/40] acl: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,07/40] attr: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,06/40] inode: make init and permission helpers idmapped mount aware idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,05/39] namei: make permission helpers idmapped mount aware idmapped mounts 1 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,04/40] capability: handle idmapped mounts idmapped mounts 1 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,03/40] fs: add file and path permissions helpers idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,02/40] fs: add id translation helpers idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,01/40] mount: attach mappings to mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v2,1/1] libsepol: do not decode out-of-bound rolebounds [v2,1/1] libsepol: do not decode out-of-bound rolebounds - - - --- 2021-01-20 Nicolas Iooss New
[RFC,1/1] selinux-notebook: Add new section for Embedded Systems selinux-notebook: Add new section for Embedded Systems - - - --- 2021-01-19 Richard Haines pcmoore New
NFSv4.2: fix return value of _nfs4_get_security_label() NFSv4.2: fix return value of _nfs4_get_security_label() - 2 - --- 2021-01-15 Ondrej Mosnacek pcmoore New
selinux: include a consumer of the new IMA critical data hook selinux: include a consumer of the new IMA critical data hook 1 1 - --- 2021-01-14 Lakshmi Ramasubramanian pcmoore New
[v2,2/2] setfiles: drop ABORT_ON_ERRORS and related code [v2,1/2] setfiles: Do not abort on labeling error - - - --- 2021-01-13 Petr Lautrbach New
[v2,1/2] setfiles: Do not abort on labeling error [v2,1/2] setfiles: Do not abort on labeling error - - - --- 2021-01-13 Petr Lautrbach New
[v2,1/1] mm/madvise: replace ptrace attach requirement for process_madvise [v2,1/1] mm/madvise: replace ptrace attach requirement for process_madvise 2 1 - --- 2021-01-11 Suren Baghdasaryan pcmoore New
[2/2] libsepol/cil: Fix heap-use-after-free in __class_reset_perm_values() [1/2] libsepol/cil: Update symtab nprim field when adding or removing datums - - - --- 2021-01-06 James Carter New
[1/2] libsepol/cil: Update symtab nprim field when adding or removing datums [1/2] libsepol/cil: Update symtab nprim field when adding or removing datums - - - --- 2021-01-06 James Carter New
newrole: preserve environment variable XDG_RUNTIME_DIR newrole: preserve environment variable XDG_RUNTIME_DIR - - - --- 2021-01-06 Christian Göttsche New
[v4] proc: Allow pid_revalidate() during LOOKUP_RCU [v4] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-01-04 Stephen Brennan pcmoore New
[RFC,DBUS] selinux: add option to control checking of reply messages [RFC,DBUS] selinux: add option to control checking of reply messages - - - --- 2020-12-28 Christian Göttsche New
[v23,23/23] AppArmor: Remove the exclusive flag [v23,01/23] LSM: Infrastructure management of the sock security 2 1 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,22/23] LSM: Add /proc attr entry for full LSM context [v23,01/23] LSM: Infrastructure management of the sock security - 1 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,21/23] Audit: Add a new record for multiple object LSM attributes [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,20/23] Audit: Add new record for multiple process LSM attributes [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,19/23] audit: add support for non-syscall auxiliary records [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,18/23] LSM: Verify LSM display sanity in binder [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,17/23] NET: Store LSM netlabel data in a lsmblob [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,16/23] LSM: security_secid_to_secctx in netlink netfilter [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,15/23] LSM: Use lsmcontext in security_inode_getsecctx [v23,01/23] LSM: Infrastructure management of the sock security 2 1 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,14/23] LSM: Use lsmcontext in security_secid_to_secctx [v23,01/23] LSM: Infrastructure management of the sock security 2 1 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,13/23] LSM: Ensure the correct LSM context releaser [v23,01/23] LSM: Infrastructure management of the sock security 1 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,12/23] LSM: Specify which LSM to display [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,11/23] IMA: Change internal interfaces to use lsmblobs [v23,01/23] LSM: Infrastructure management of the sock security 1 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,10/23] LSM: Use lsmblob in security_cred_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,09/23] LSM: Use lsmblob in security_inode_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,08/23] LSM: Use lsmblob in security_task_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,07/23] LSM: Use lsmblob in security_ipc_getsecid [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,06/23] LSM: Use lsmblob in security_secid_to_secctx [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,05/23] LSM: Use lsmblob in security_secctx_to_secid [v23,01/23] LSM: Infrastructure management of the sock security - - - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,04/23] LSM: Use lsmblob in security_kernel_act_as [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,03/23] LSM: Use lsmblob in security_audit_rule_match [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,02/23] LSM: Create and manage the lsmblob data structure. [v23,01/23] LSM: Infrastructure management of the sock security 3 - - --- 2020-11-20 Casey Schaufler pcmoore New
[v23,01/23] LSM: Infrastructure management of the sock security [v23,01/23] LSM: Infrastructure management of the sock security 2 2 - --- 2020-11-20 Casey Schaufler pcmoore New
vfs: fix fsconfig(2) LSM mount option handling for btrfs vfs: fix fsconfig(2) LSM mount option handling for btrfs - - 1 --- 2020-11-18 Ondrej Mosnacek pcmoore New
[RESEND,v18,4/4] overlayfs: inode_owner_or_capable called during execv Untitled series #368853 - - - --- 2020-10-22 Mark Salyzyn pcmoore New
[RESEND,v18,3/4] overlayfs: override_creds=off option bypass creator_cred overlayfs override_creds=off & nested get xattr fix - - - --- 2020-10-21 Mark Salyzyn pcmoore New
[RESEND,v18,2/4] overlayfs: handle XATTR_NOSECURITY flag for get xattr method overlayfs override_creds=off & nested get xattr fix - - - --- 2020-10-21 Mark Salyzyn pcmoore New
[RESEND,v18,1/4] Add flags option to get xattr method paired to __vfs_getxattr overlayfs override_creds=off & nested get xattr fix 5 1 - --- 2020-10-21 Mark Salyzyn pcmoore New
[RFC,V2,2/2] selinux-testsuite: Run SCTP tests using remote server selinux-testsuite: Run tests using remote server - - - --- 2020-08-26 Richard Haines omos New
[RFC,V2,1/2] selinux-testsuite: Run tests using remote server selinux-testsuite: Run tests using remote server - - - --- 2020-08-26 Richard Haines omos New
[RFC,1/1] selinux-testsuite: Reduce sctp test runtime selinux-testsuite: Reduce sctp test runtime - - - --- 2020-11-04 Richard Haines omos Under Review
[V2,1/1] selinux-testsuite: Add btrfs support for filesystem tests selinux-testsuite: Add btrfs support for filesystem tests - - - --- 2020-11-03 Richard Haines omos Queued