Show patches with: State = Action Required       |    Archived = No       |   88 patches
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v24,25/25] AppArmor: Remove the exclusive flag [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,24/25] LSM: Add /proc attr entry for full LSM context [v24,01/25] LSM: Infrastructure management of the sock security - 1 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,23/25] Audit: Add a new record for multiple object LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,22/25] Audit: Add new record for multiple process LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,21/25] audit: add support for non-syscall auxiliary records [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,20/25] LSM: Verify LSM display sanity in binder [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,19/25] NET: Store LSM netlabel data in a lsmblob [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,18/25] LSM: security_secid_to_secctx in netlink netfilter [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,17/25] LSM: Use lsmcontext in security_inode_getsecctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,16/25] LSM: Use lsmcontext in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,15/25] LSM: Ensure the correct LSM context releaser [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,14/25] LSM: Specify which LSM to display [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,13/25] IMA: Change internal interfaces to use lsmblobs [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,12/25] LSM: Use lsmblob in security_cred_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,11/25] LSM: Use lsmblob in security_inode_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,10/25] LSM: Use lsmblob in security_task_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,09/25] LSM: Use lsmblob in security_ipc_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,08/25] LSM: Use lsmblob in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,07/25] LSM: Use lsmblob in security_secctx_to_secid [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,06/25] LSM: Use lsmblob in security_kernel_act_as [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,05/25] LSM: Use lsmblob in security_audit_rule_match [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,04/25] IMA: avoid label collisions with stacked LSMs [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,03/25] LSM: provide lsm name and id slot mappings [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,02/25] LSM: Add the lsmblob data structure. [v24,01/25] LSM: Infrastructure management of the sock security 3 - - --- 2021-01-26 Casey Schaufler pcmoore New
[v24,01/25] LSM: Infrastructure management of the sock security [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler pcmoore New
[v6,39/40] xfs: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,38/40] ext4: support idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,37/40] fat: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,36/40] tests: add mount_setattr() selftests idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,35/40] fs: introduce MOUNT_ATTR_IDMAP idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,34/40] fs: add mount_setattr() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,33/40] fs: add attr_flags_to_mnt_flags helper idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,32/40] fs: split out functions to hold writers idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,31/40] namespace: only take read lock in do_reconfigure_mnt() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,30/40] mount: make {lock,unlock}_mount_hash() static idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,29/40] namespace: take lock_mount_hash() directly when changing flags idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,28/40] overlayfs: do not mount on top of idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,27/40] ecryptfs: do not mount on top of idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,26/39] ima: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,25/40] apparmor: handle idmapped mounts idmapped mounts - - - --- 2021-01-21 Christian Brauner pcmoore New
[v6,23/40] exec: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,22/40] would_dump: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,21/40] ioctl: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,20/40] init: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,19/40] fcntl: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,18/40] utimes: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,17/40] af_unix: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,16/40] open: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,15/40] open: handle idmapped mounts in do_truncate() idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,14/40] namei: prepare for idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,13/40] namei: introduce struct renamedata idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,12/40] namei: handle idmapped mounts in may_*() helpers idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,11/40] stat: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,10/40] commoncap: handle idmapped mounts idmapped mounts 1 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,09/40] xattr: handle idmapped mounts idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,08/40] acl: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,07/40] attr: handle idmapped mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,06/40] inode: make init and permission helpers idmapped mount aware idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,05/39] namei: make permission helpers idmapped mount aware idmapped mounts 1 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,04/40] capability: handle idmapped mounts idmapped mounts 1 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,03/40] fs: add file and path permissions helpers idmapped mounts - 2 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,02/40] fs: add id translation helpers idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[v6,01/40] mount: attach mappings to mounts idmapped mounts - 1 - --- 2021-01-21 Christian Brauner pcmoore New
[RFC,DBUS] selinux: add option to control checking of reply messages [RFC,DBUS] selinux: add option to control checking of reply messages - - - --- 2020-12-28 Christian Göttsche New
[v3] selinux: measure state and policy capabilities [v3] selinux: measure state and policy capabilities - - - --- 2021-02-12 Lakshmi Ramasubramanian pcmoore New
selinux: include a consumer of the new IMA critical data hook selinux: include a consumer of the new IMA critical data hook 1 1 - --- 2021-01-14 Lakshmi Ramasubramanian pcmoore New
libsepol/cil: fix NULL pointer dereference in cil_fill_ipaddr libsepol/cil: fix NULL pointer dereference in cil_fill_ipaddr 1 - - --- 2021-02-25 lutianxiong New
[RESEND,v18,4/4] overlayfs: inode_owner_or_capable called during execv Untitled series #368853 - - - --- 2020-10-22 Mark Salyzyn pcmoore New
[RESEND,v18,3/4] overlayfs: override_creds=off option bypass creator_cred overlayfs override_creds=off & nested get xattr fix - - - --- 2020-10-21 Mark Salyzyn pcmoore New
[RESEND,v18,2/4] overlayfs: handle XATTR_NOSECURITY flag for get xattr method overlayfs override_creds=off & nested get xattr fix - - - --- 2020-10-21 Mark Salyzyn pcmoore New
[RESEND,v18,1/4] Add flags option to get xattr method paired to __vfs_getxattr overlayfs override_creds=off & nested get xattr fix 5 1 - --- 2020-10-21 Mark Salyzyn pcmoore New
[v3,3/3] NFSv4 account for selinux security context when deciding to share superblock [v3,1/3,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia pcmoore New
[v3,2/3,NFS] cleanup: remove unneeded null check in nfs_fill_super() [v3,1/3,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia pcmoore New
[v3,1/3,security] Add new hook to compare new mount to an existing mount [v3,1/3,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia pcmoore New
perf/core: fix unconditional security_locked_down() call perf/core: fix unconditional security_locked_down() call - - - --- 2021-02-24 Ondrej Mosnacek pcmoore New
NFSv4.2: fix return value of _nfs4_get_security_label() NFSv4.2: fix return value of _nfs4_get_security_label() - 2 - --- 2021-01-15 Ondrej Mosnacek pcmoore New
vfs: fix fsconfig(2) LSM mount option handling for btrfs vfs: fix fsconfig(2) LSM mount option handling for btrfs - - 1 --- 2020-11-18 Ondrej Mosnacek pcmoore New
[RFC,4/4] apparmor: differentiate between subjective and objective task credentials Split security_task_getsecid() into subj and obj variants - - - --- 2021-02-19 Paul Moore pcmoore New
[RFC,3/4] smack: differentiate between subjective and objective task credentials Split security_task_getsecid() into subj and obj variants - - - --- 2021-02-19 Paul Moore pcmoore New
[RFC,2/4] selinux: clarify task subjective and objective credentials Split security_task_getsecid() into subj and obj variants - - - --- 2021-02-19 Paul Moore pcmoore New
[RFC,1/4] lsm: separate security_task_getsecid() into subjective and objective variants Split security_task_getsecid() into subj and obj variants 1 - - --- 2021-02-19 Paul Moore pcmoore New
sepolicy: Do not try to load policy on import sepolicy: Do not try to load policy on import - - - --- 2021-02-23 Petr Lautrbach New
RTIC: selinux: ARM64: Move selinux_state to a separate page RTIC: selinux: ARM64: Move selinux_state to a separate page 1 - - --- 2021-02-16 Preeti Nagar New
[RFC,1/1] selinux-testsuite: Reduce sctp test runtime selinux-testsuite: Reduce sctp test runtime - - - --- 2020-11-04 Richard Haines omos Under Review
[V2,1/1] selinux-testsuite: Add btrfs support for filesystem tests selinux-testsuite: Add btrfs support for filesystem tests - - - --- 2020-11-03 Richard Haines omos Queued
[RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU [RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-02-04 Stephen Brennan pcmoore New
[v2,1/1] mm/madvise: replace ptrace attach requirement for process_madvise [v2,1/1] mm/madvise: replace ptrace attach requirement for process_madvise 2 1 - --- 2021-01-11 Suren Baghdasaryan pcmoore New
[v2] selinux: Allow context mounts for unpriviliged overlayfs [v2] selinux: Allow context mounts for unpriviliged overlayfs - - - --- 2021-02-11 Vivek Goyal pcmoore New