Toggle navigation
Patchwork
SELinux Development list
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| 172 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Mainlined
Queued
Needs ACK
Handled Elsewhere
In Next
Search
Archived
No
Yes
Both
Delegate
------
Nobody
holtmann
holtmann
holtmann
agk
mchehab
mchehab
gregkh
gregkh
mtosatti
lethal
lethal
avi
asi123
andmike
cvaroqui
nomura
jbrassow
dtor
kueda
bmarzins
tmlind
jmberg
jmberg
mcgrof
lenb
lenb
kyle
felipebalbi
varenet
helge
helge
khilman
khilman
khilman
khilman
jwoithe
mlin
Zhang Rui
Zhang Rui
iksaif
cjackiewicz
hmh
jbarnes
jbarnes
jbarnes
willy
snitzer
iwamatsu
dougsland
mjg59
rafael
rafael
rafael
ericvh@gmail.com
ykzhao
venkip
sandeen
pwsan
lucho@ionkov.net
rminnich
anholt
aystarik
roland
shefty
mason
glikely
krh
djbw
djbw
djbw
cmarinas
doyu
jrn
sage
tomba
mmarek
cjb
trondmy
jikos
bcousson
jic23
olof
olof
olof
nsekhar
weiny2
horms
horms
bwidawsk
bwidawsk
shemminger
eulfhan
josef
josef
josef
dianders
jpan9
hal
kdave
bleung
evalenti
jlbec
bhelgaas
vkoul
vkoul
szlin
davejiang
markgross
tagr
tiwai
vireshk
mmind
dledford
geert
geert
herbert
herbert
kvalo
kvalo
kvalo
bentiss
arend
rzwisler
stellarhopper
stellarhopper
jejb
matthias_bgg
dvhart
axboe
axboe
pcmoore
pcmoore
pcmoore
mkp
mkp
stefan_schmidt
leon
lucvoo
jsakkine
jsakkine
jsakkine
bamse
bamse
demarchi
krzk
groeck
groeck
sboyd
sboyd
mturquette
mturquette
0andriy
carlocaione
luca
dgc
kbingham
derosier
narmstrong
narmstrong
atull
tytso
tytso
djwong
bvanassche
omos
jpirko
jpirko
GustavoARSilva
pkshih
patersonc
brauner
shuahkh
shuahkh
shuahkh
palmer
palmer
jgg
Kishon
idosch
labbott
jsimmons
broonie
broonie
broonie
mricon
mricon
mricon
kees
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
lfgitoliteapi
arnd
linusw
perfinion
bbrezillon
bachradsusi
rostedt
rostedt
kholk
nbd
ebiggers
ebiggers
pavelm
sds
m0reeze
ganis
jwcart2
matttbe
andmur01
lorpie01
chanwoochoi
dlezcano
jhedberg
vudentz
robertfoss
bgix
tedd_an
tsbogend
wens
wcrobert
robher
kstewart
kwilczynski
hansg
bpf
netdev
dsa
ethtool
netdrv
martineau
abelloni
trix
pabeni
mani_sadhasivam
liusong6
mjp
tohojo
pmalani
prestwoj
prestwoj
dhowells
tzungbi
conchuod
paulmck
jes
mtkaczyk
colyli
pateldipen1984
iweiny
iweiny
bjorn
mhiramat
JanKiszka
jaegeuk
mraynal
aring
konradybcio
ij
Hailan
jstitt007
denkenz
denkenz
mkorenbl
jjohnson
frank_li
geliang
mdraidci
Apply
«
1
2
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
tests/sctp: reenable the SCTP ASCONF tests
tests/sctp: reenable the SCTP ASCONF tests
- - -
-
-
-
2022-08-09
Paul Moore
omos
Under Review
semanage: list all nodes even if not attributed with node_type
semanage: list all nodes even if not attributed with node_type
- - -
-
-
-
2023-06-04
Topi Miettinen
bachradsusi
New
selinux: Variable type completion
selinux: Variable type completion
- - -
-
-
-
2022-08-16
Xin Gao
pcmoore
New
selinux: use unsigned char for boolean values
selinux: use unsigned char for boolean values
- - -
-
-
-
2022-05-02
Christian Göttsche
pcmoore
New
selinux: pre-allocate the status page
selinux: pre-allocate the status page
- - -
-
-
-
2024-03-28
Christian Göttsche
pcmoore
Under Review
selinux: avoid printk_ratelimit()
selinux: avoid printk_ratelimit()
- - -
-
-
-
2024-04-05
Christian Göttsche
New
RTIC: selinux: ARM64: Move selinux_state to a separate page
RTIC: selinux: ARM64: Move selinux_state to a separate page
1 - -
-
-
-
2021-02-16
Preeti Nagar
pcmoore
New
netlink: Remove the include of files doesn't exist
netlink: Remove the include of files doesn't exist
- - -
-
-
-
2024-04-05
I Hsin Cheng
New
Makefile: always include and link with DESTDIR
Makefile: always include and link with DESTDIR
- - -
-
-
-
2022-05-20
Christian Göttsche
New
libsepoll/src/Makefile: Fix reallocarray detection when cross-compiling
libsepoll/src/Makefile: Fix reallocarray detection when cross-compiling
- - -
-
-
-
2024-02-29
Winfried
bachradsusi
New
libsepol: validate common classes in scope indices
libsepol: validate common classes in scope indices
- - -
-
-
-
2023-12-08
Christian Göttsche
bachradsusi
New
libsepol: validate class permissions
libsepol: validate class permissions
- - -
-
-
-
2024-04-08
Christian Göttsche
New
libsepol: ignore writing invalid polcaps in fuzzer
libsepol: ignore writing invalid polcaps in fuzzer
- - -
-
-
-
2023-11-01
Christian Göttsche
bachradsusi
New
libselinux/utils: introduce getpolicyload
libselinux/utils: introduce getpolicyload
- - -
-
-
-
2023-07-06
Christian Göttsche
bachradsusi
New
libselinux/src/Makefile: fix reallocarray strlcpy detection
libselinux/src/Makefile: fix reallocarray strlcpy detection
- - -
-
-
-
2024-03-01
Jordan Williams
bachradsusi
New
libselinux: Prevent cached context giving wrong results
libselinux: Prevent cached context giving wrong results
- - -
-
-
-
2022-01-27
Johannes Segitz
New
libselinux: Add CPPFLAGS to Makefile
libselinux: Add CPPFLAGS to Makefile
- - -
-
-
-
2023-06-06
ChungSheng Wu
bachradsusi
New
ima: Avoid blocking in RCU read-side critical section
ima: Avoid blocking in RCU read-side critical section
- - -
-
-
-
2024-04-17
Guozihua (Scott)
New
github: bump Python and Ruby versions
github: bump Python and Ruby versions
1 - -
-
-
-
2024-04-08
Christian Göttsche
New
[XSERVER,2/2] selinux: log events with appropriate audit type
[XSERVER,1/2] selinux: remap security classes on policyload
- - -
-
-
-
2021-11-25
Christian Göttsche
New
[XSERVER,1/2] selinux: remap security classes on policyload
[XSERVER,1/2] selinux: remap security classes on policyload
- - -
-
-
-
2021-11-25
Christian Göttsche
New
[v6] semanage, sepolicy: list also ports not attributed with port_type
[v6] semanage, sepolicy: list also ports not attributed with port_type
- - -
-
-
-
2023-07-28
Topi Miettinen
bachradsusi
New
[v6] checkpolicy,libsepol: add prefix/suffix matching to filename type transitions
[v6] checkpolicy,libsepol: add prefix/suffix matching to filename type transitions
1 1 -
-
-
-
2023-12-05
Juraj Marcin
bachradsusi
New
[v5] selinux: add prefix/suffix matching to filename type transitions
[v5] selinux: add prefix/suffix matching to filename type transitions
- 1 -
-
-
-
2024-03-05
Juraj Marcin
pcmoore
Under Review
[v4] checkpolicy,libsepol: add prefix/suffix matching to filename type transitions
[v4] checkpolicy,libsepol: add prefix/suffix matching to filename type transitions
- 1 -
-
-
-
2023-11-21
Juraj Marcin
bachradsusi
New
[v4,21/21] fuse: Allow user namespace mounts
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,20/21] fuse: Restrict allow_other to the superblock's namespace or a descendant
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,19/21] fuse: Support fuse filesystems outside of init_user_ns
- - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,19/21] fuse: Support fuse filesystems outside of init_user_ns
- - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,18/21] fuse: Add support for pid namespaces
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,18/21] fuse: Add support for pid namespaces
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,17/21] capabilities: Allow privileged user in s_user_ns to set security.* xattrs
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,16/21] fs: Allow superblock owner to access do_remount_sb()
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,16/21] fs: Allow superblock owner to access do_remount_sb()
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,15/21] fs: Don't remove suid for CAP_FSETID in s_user_ns
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,14/21] fs: Allow superblock owner to change ownership of inodes with unmappable ids
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,14/21] fs: Allow superblock owner to change ownership of inodes with unmappable ids
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,13/21] fs: Update posix_acl support to handle user namespace mounts
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,13/21] fs: Update posix_acl support to handle user namespace mounts
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,12/21] fs: Refuse uid/gid changes which don't map into s_user_ns
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,11/21] cred: Reject inodes with invalid ids in set_create_file_as()
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,11/21] cred: Reject inodes with invalid ids in set_create_file_as()
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,10/21] fs: Check for invalid i_uid in may_follow_link()
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,10/21] fs: Check for invalid i_uid in may_follow_link()
1 1 -
-
-
-
2016-04-26
Seth Forshee
New
[v4,09/21] Smack: Handle labels consistently in untrusted mounts
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,08/21] userns: Replace in_userns with current_in_userns
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,08/21] userns: Replace in_userns with current_in_userns
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,07/21] selinux: Add support for unprivileged mounts from user namespaces
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,06/21] fs: Treat foreign mounts as nosuid
2 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,05/21] block_dev: Check permissions towards block device inode when mounting
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,04/21] block_dev: Support checking inode permissions in lookup_bdev()
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,04/21] block_dev: Support checking inode permissions in lookup_bdev()
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,03/21] fs: Allow sysfs and cgroupfs to share super blocks between user namespaces
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,02/21] fs: Remove check of s_user_ns for existing mounts in fs_fully_visible()
- - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,02/21] fs: Remove check of s_user_ns for existing mounts in fs_fully_visible()
- - -
-
-
-
2016-04-26
Seth Forshee
New
[v4,01/21] fs: fix a posible leak of allocated superblock
1 - -
-
-
-
2016-04-26
Seth Forshee
New
[v3] selinux: optimize ebitmap_and()
[v3] selinux: optimize ebitmap_and()
- - -
-
-
-
2024-03-15
Christian Göttsche
pcmoore
Under Review
[v3,8/8] secilc: include segregate attributes in tests
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,7/8] secilc: run tests against development version of libsepol
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,6/8] libsepol/cil: add support for segregate attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,5/8] libsepol/tests: add test for segregate attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,4/8] checkpolicy: add front-end support for segregate attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,3/8] libsepol: add compile-time constraint for mutual exclusive attributes
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,2/8] libsepol: add ebitmap iterator wrapper with startnode
[v3,1/8] libsepol: refactor ebitmap conversion in link.c
- - -
-
-
-
2022-07-21
Christian Göttsche
New
[v3,2/7] selinux: use u32 as bit type in ebitmap code
[v3,1/7] selinux: avoid implicit conversions in avtab code
- - -
-
-
-
2023-08-07
Christian Göttsche
pcmoore
New
[v3,1/1] xattr: Allow user.* xattr on symlink and special files
Relax restrictions on user.* xattr
- - -
-
-
-
2021-09-02
Vivek Goyal
pcmoore
New
[v3,1/1] fuse: Send security context of inode on file creation
fuse: Send file/inode security context during creation
- - -
-
-
-
2021-11-10
Vivek Goyal
pcmoore
New
[v2] Support static-only builds
[v2] Support static-only builds
- - -
-
-
-
2021-11-13
Alyssa Ross
New
[v2] selinux: pre-allocate the status page
[v2] selinux: pre-allocate the status page
- - -
-
-
-
2024-04-05
Christian Göttsche
New
[v2] selinux: optimize ebitmap_and()
[v2] selinux: optimize ebitmap_and()
- - -
-
-
-
2023-08-03
Christian Göttsche
pcmoore
New
[v2] libsepol: validate class permissions
[v2] libsepol: validate class permissions
1 - -
-
-
-
2024-04-15
Christian Göttsche
New
[V2,testsuite] tests/inet_socket: Add socket transition tests
[V2,testsuite] tests/inet_socket: Add socket transition tests
- - -
-
-
-
2021-11-25
Richard Haines
omos
New
[v2,6/6] Enable missing prototypes
[v2,1/6] libsepol/cil: declare file local functions static
- - -
-
-
-
2022-04-05
Christian Göttsche
New
[v2,2/2] selinux: fix SECURITY_LSM_NATIVE_LABELS flag handling on double mount
vfs/security/NFS/btrfs: clean up and fix LSM option handling
- - -
-
-
-
2021-05-17
Ondrej Mosnacek
pcmoore
New
[v2,1/2] vfs,LSM: introduce the FS_HANDLES_LSM_OPTS flag
vfs/security/NFS/btrfs: clean up and fix LSM option handling
- - 1
-
-
-
2021-05-17
Ondrej Mosnacek
pcmoore
New
[V2,1/1] selinux-testsuite: Add btrfs support for filesystem tests
selinux-testsuite: Add btrfs support for filesystem tests
- - -
-
-
-
2020-11-03
Richard Haines
omos
Queued
[testsuite] ci: test also on CentOS Stream 9
[testsuite] ci: test also on CentOS Stream 9
- - -
-
-
-
2023-07-25
Ondrej Mosnacek
omos
New
[RFC] userfaultfd: open userfaultfds with O_RDONLY
[RFC] userfaultfd: open userfaultfds with O_RDONLY
- - -
-
-
-
2021-06-24
Ondrej Mosnacek
pcmoore
New
[RFC] selinux: TESTING ONLY, PLEASE IGNORE
[RFC] selinux: TESTING ONLY, PLEASE IGNORE
- - -
-
-
-
2023-05-16
Paul Moore
pcmoore
Under Review
[RFC] selinux: assorted hash table improvements
[RFC] selinux: assorted hash table improvements
- - -
-
-
-
2023-11-14
Paul Moore
pcmoore
New
[RFC] selinux: add unprivileged sandboxing capability
[RFC] selinux: add unprivileged sandboxing capability
- - -
-
-
-
2020-03-13
Stephen Smalley
pcmoore
New
[RFC] selinux: Add netlink xperm support
[RFC] selinux: Add netlink xperm support
- - -
-
-
-
2021-11-10
Bram Bonné
pcmoore
New
[RFC] libsepol: validate permission identifier length
[RFC] libsepol: validate permission identifier length
- - -
-
-
-
2023-12-07
Christian Göttsche
bachradsusi
New
[RFC] libsepol: handle long permission names in sepol_av_to_string()
[RFC] libsepol: handle long permission names in sepol_av_to_string()
- - -
-
-
-
2023-12-11
Christian Göttsche
bachradsusi
New
[RFC] libsepol,secilc,policycoreutils: add unprivileged sandboxing capability
[RFC] libsepol,secilc,policycoreutils: add unprivileged sandboxing capability
- - -
-
-
-
2020-03-13
Stephen Smalley
pcmoore
New
[RFC] libselinux: disable capturing in fcontext matching
[RFC] libselinux: disable capturing in fcontext matching
- - -
-
-
-
2024-01-08
Christian Göttsche
bachradsusi
New
[RFC] audit, security: allow LSMs to selectively enable audit collection
[RFC] audit, security: allow LSMs to selectively enable audit collection
- - -
-
-
-
2019-08-15
Aaron Goidel
pcmoore
New
[RFC,v4,6/6] libsepol: update CIL generation for trivial not-self rules
not-self neverallow support
1 - -
-
-
-
2022-11-25
Christian Göttsche
bachradsusi
New
[RFC,v4,2/6] libsepol/cil: Add notself and minusself support to CIL
not-self neverallow support
- - -
-
-
-
2022-11-25
Christian Göttsche
bachradsusi
New
[RFC,v3] security,capability: pass object information to security_capable
[RFC,v3] security,capability: pass object information to security_capable
- - -
-
-
-
2019-08-15
Aaron Goidel
pcmoore
New
[RFC,v2,9/9] libselinux: support parallel selabel_lookup(3)
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
[RFC,v2,8/9] libselinux: add selabel_file(5) fuzzer
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
[RFC,v2,7/9] libselinux: remove unused hashtab code
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
[RFC,v2,6/9] libselinux: rework selabel_file(5) database
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
[RFC,v2,5/9] libselinux: sidtab updates
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
[RFC,v2,4/9] libselinux: add unique id to sidtab entries
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
[RFC,v2,3/9] libselinux: use more appropriate types in sidtab
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
[RFC,v2,27/27] libselinux: add selabel_file(5) fuzzer
libselinux: rework selabel_file(5) database
- - -
-
-
-
2023-08-14
Christian Göttsche
bachradsusi
New
[RFC,v2,26/27] libselinux: remove unused hashtab code
libselinux: rework selabel_file(5) database
- - -
-
-
-
2023-08-14
Christian Göttsche
bachradsusi
New
[RFC,v2,2/9] libselinux/utils: introduce selabel_compare
libselinux: rework selabel_file(5) database
- - -
-
-
-
2024-01-31
Christian Göttsche
bachradsusi
New
«
1
2
»