Show patches with: none      |   7837 patches
« 1 2 3 478 79 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
libsemanage: fix memory leak in semanage_user_roles libsemanage: fix memory leak in semanage_user_roles - - - --- 2023-04-01 Christian Göttsche New
make avc audit line only have one space make avc audit line only have one space - - - --- 2023-04-01 Steven Moreland New
[3/3] checkpolicy/dismod: misc improvements [1/3] checkpolicy: add option to skip checking neverallow rules - - - --- 2023-03-31 Christian Göttsche New
[2/3] checkpolicy/dispol: add output functions [1/3] checkpolicy: add option to skip checking neverallow rules - - - --- 2023-03-31 Christian Göttsche New
[1/3] checkpolicy: add option to skip checking neverallow rules [1/3] checkpolicy: add option to skip checking neverallow rules - - - --- 2023-03-31 Christian Göttsche New
[v10,4/4] evm: Support multiple LSMs providing an xattr evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-03-31 Roberto Sassu New
[v10,3/4] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-03-31 Roberto Sassu New
[v10,2/4] security: Allow all LSMs to provide xattrs for inode_init_security hook evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-03-31 Roberto Sassu New
[v10,1/4] reiserfs: Add security prefix to xattr name in reiserfs_security_write() evm: Do HMAC of multiple per LSM xattrs for new inodes - - - --- 2023-03-31 Roberto Sassu New
[RFC,v2] selinux: cache access vector decisions in the inode security blob [RFC,v2] selinux: cache access vector decisions in the inode security blob - - - --- 2023-03-14 Stephen Smalley pcmoore New
[RFC,9/9,v2] secilc/docs: Add deny rule to CIL documentation Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,8/9,v2] secilc/test: Add deny rule tests Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,7/9,v2] secilc/secil2tree: Add option to write CIL AST after post processing Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,6/9,v2] libsepol: Export the cil_write_post_ast function Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,5/9,v2] libsepol/cil: Add cil_write_post_ast function Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,4/9,v2] libsepol/cil: Process deny rules Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,3/9,v2] libsepol/cil: Add cil_tree_node_remove function Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,2/9,v2] libsepol/cil: Add cil_list_is_empty macro Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[RFC,1/9,v2] libsepol/cil: Parse and add deny rule to AST, but do not process Add CIL Deny Rule - - - --- 2023-03-09 James Carter bachradsusi New
[v3,3/3] libselinux: performance optimization for duplicate detection Improve efficiency of detecting duplicate in libselinux - - - --- 2023-03-08 wanghuizhao bachradsusi New
[v3,2/3] libselinux: adapting hashtab to libselinux Improve efficiency of detecting duplicate in libselinux - - - --- 2023-03-08 wanghuizhao bachradsusi New
[v3,1/3] libselinux: migrating hashtab from policycoreutils Improve efficiency of detecting duplicate in libselinux - - - --- 2023-03-08 wanghuizhao bachradsusi New
[UTIL-LINUX] mount: add rootcontext=@target [UTIL-LINUX] mount: add rootcontext=@target - - - --- 2023-02-21 Christian Göttsche New
[3/3] libselinux: use a static match_data if single threaded improve performance of pcre matches - - - --- 2023-01-23 Carlo Arenas bachradsusi New
[2/3] libselinux: improve performance with pcre matches improve performance of pcre matches - - - --- 2023-01-23 Carlo Arenas bachradsusi New
[1/3] scripts: respect an initial LD_LIBRARY_PATH with env_use_destdir improve performance of pcre matches - - - --- 2023-01-23 Carlo Arenas bachradsusi New
[v2,2/2] selinux: Implement mptcp_add_subflow hook lsm: introduce and use security_mptcp_add_subflow() - - - --- 2022-12-19 Paolo Abeni pcmoore New
[v2,1/2] security, lsm: Introduce security_mptcp_add_subflow() lsm: introduce and use security_mptcp_add_subflow() 1 - - --- 2022-12-19 Paolo Abeni pcmoore New
[RFC,v4,6/6] libsepol: update CIL generation for trivial not-self rules not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi New
[RFC,v4,5/6] libsepol/tests: add tests for minus self neverallow rules not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi New
[RFC,v4,4/6] libsepol/tests: add tests for not self neverallow rules not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi New
[RFC,v4,3/6] checkpolicy: add not-self neverallow support not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi New
[RFC,v4,2/6] libsepol/cil: Add notself and minusself support to CIL not-self neverallow support - - - --- 2022-11-25 Christian Göttsche bachradsusi New
[RFC,v4,1/6] libsepol: Add not self support for neverallow rules not-self neverallow support 1 - - --- 2022-11-25 Christian Göttsche bachradsusi New
[RFC,6/6] libsemanage/tests: rename bool identifiers [RFC,1/6] libsepol: rename struct member - - - --- 2022-11-14 Christian Göttsche bachradsusi New
[RFC,5/6] libsepol: rename bool identifiers [RFC,1/6] libsepol: rename struct member - - - --- 2022-11-14 Christian Göttsche bachradsusi New
[RFC,4/6] checkpolicy: rename bool identifiers [RFC,1/6] libsepol: rename struct member - - - --- 2022-11-14 Christian Göttsche bachradsusi New
[RFC,3/6] libsepol/tests: rename bool indentifiers [RFC,1/6] libsepol: rename struct member - - - --- 2022-11-14 Christian Göttsche bachradsusi New
[RFC,2/6] checkpolicy: update cond_expr_t struct member name [RFC,1/6] libsepol: rename struct member - - - --- 2022-11-14 Christian Göttsche bachradsusi New
[RFC,1/6] libsepol: rename struct member [RFC,1/6] libsepol: rename struct member - - - --- 2022-11-14 Christian Göttsche bachradsusi New
[RFC,1/2] fs/xattr: add *at family syscalls [RFC,1/2] fs/xattr: add *at family syscalls - - - --- 2022-08-30 Christian Göttsche pcmoore New
[RFC,2/2] fs/xattr: wire up syscalls [RFC,1/2] fs/xattr: add *at family syscalls - - - --- 2022-08-30 Christian Göttsche pcmoore New
[1/3] secilc/docs: selinuxuser actually takes a string not identifier [1/3] secilc/docs: selinuxuser actually takes a string not identifier - - - --- 2022-08-28 bauen1 bachradsusi New
selinux: Variable type completion selinux: Variable type completion - - - --- 2022-08-16 Xin Gao pcmoore New
[v3,8/8] secilc: include segregate attributes in tests [v3,1/8] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-07-21 Christian Göttsche New
[v3,7/8] secilc: run tests against development version of libsepol [v3,1/8] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-07-21 Christian Göttsche New
[v3,6/8] libsepol/cil: add support for segregate attributes [v3,1/8] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-07-21 Christian Göttsche New
[v3,5/8] libsepol/tests: add test for segregate attributes [v3,1/8] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-07-21 Christian Göttsche New
[v3,4/8] checkpolicy: add front-end support for segregate attributes [v3,1/8] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-07-21 Christian Göttsche New
[v3,3/8] libsepol: add compile-time constraint for mutual exclusive attributes [v3,1/8] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-07-21 Christian Göttsche New
[v3,2/8] libsepol: add ebitmap iterator wrapper with startnode [v3,1/8] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-07-21 Christian Göttsche New
[RFC,4/4] checkpolicy: add front-end support for segregate attributes [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche New
[RFC,3/4] libsepol: add compile-time constraint for mutual exclusive attributes [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche New
[RFC,2/4] libsepol: add ebitmap iterator wrapper with startnode [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche New
[1/4] libselinux: add man page redirections [1/4] libselinux: add man page redirections 1 - - --- 2022-05-20 Christian Göttsche New
Makefile: always include and link with DESTDIR Makefile: always include and link with DESTDIR - - - --- 2022-05-20 Christian Göttsche New
[28/32] selinux: Use mem_to_flex_dup() with xfrm and sidtab Introduce flexible array struct memcpy() helpers - - - --- 2022-05-04 Kees Cook pcmoore New
selinux: use unsigned char for boolean values selinux: use unsigned char for boolean values - - - --- 2022-05-02 Christian Göttsche pcmoore New
[RFC,7/7] SELINUXNS: Fixing concurrency issues [RFC,1/7] LSM: Infrastructure management of the superblock - - - --- 2022-04-18 Alexander Kozhevnikov pcmoore New
[RFC,6/7] SELINUXNS: Fixing superblock security structure memory leakage [RFC,1/7] LSM: Infrastructure management of the superblock - - - --- 2022-04-18 Alexander Kozhevnikov pcmoore New
[RFC,5/7] SELINUXNS: Migrate all open files and all vma to new namespace [RFC,1/7] LSM: Infrastructure management of the superblock - - - --- 2022-04-18 Alexander Kozhevnikov pcmoore New
[RFC,4/7] SELINUXNS: Namespacing for xattrs [RFC,1/7] LSM: Infrastructure management of the superblock - - - --- 2022-04-18 Alexander Kozhevnikov pcmoore New
[RFC,3/7] SELINUXNS: Fix initilization of the superblock security under spinlock [RFC,1/7] LSM: Infrastructure management of the superblock - - - --- 2022-04-18 Alexander Kozhevnikov pcmoore New
[RFC,2/7] selinux: support per-namespace superblock security structures [RFC,1/7] LSM: Infrastructure management of the superblock - - - --- 2022-04-18 Alexander Kozhevnikov pcmoore New
[RFC,1/7] LSM: Infrastructure management of the superblock [RFC,1/7] LSM: Infrastructure management of the superblock 1 2 - --- 2022-04-18 Alexander Kozhevnikov pcmoore New
[v2,6/6] Enable missing prototypes [v2,1/6] libsepol/cil: declare file local functions static - - - --- 2022-04-05 Christian Göttsche New
[RFC,1/1] selinuxns: Replace state pointer with namespace id [RFC,1/1] selinuxns: Replace state pointer with namespace id - - - --- 2022-02-16 Igor Baranov pcmoore New
libselinux: Prevent cached context giving wrong results libselinux: Prevent cached context giving wrong results - - - --- 2022-01-27 Johannes Segitz New
[libselinux] libselinux: make threadsafe for discover_class_cache [libselinux] libselinux: make threadsafe for discover_class_cache - - - --- 2022-01-20 Purushottam Choudhary New
[2/2,RFC] libsepol/cil: Add notself and minusself support to CIL libsepol: Adding support for not-self rules - - - --- 2022-01-11 James Carter New
[1/2,RFC] libsepol: Add not self support for neverallow rules libsepol: Adding support for not-self rules - - - --- 2022-01-11 James Carter New
[RFC,2/2] security, nfs: Provide a hook for fs_context security initialisation [RFC,1/2] security: Remove security_add_mnt_opt() as it's unused - - - --- 2021-12-08 David Howells pcmoore New
[XSERVER,2/2] selinux: log events with appropriate audit type [XSERVER,1/2] selinux: remap security classes on policyload - - - --- 2021-11-25 Christian Göttsche New
[XSERVER,1/2] selinux: remap security classes on policyload [XSERVER,1/2] selinux: remap security classes on policyload - - - --- 2021-11-25 Christian Göttsche New
[V2,testsuite] tests/inet_socket: Add socket transition tests [V2,testsuite] tests/inet_socket: Add socket transition tests - - - --- 2021-11-25 Richard Haines omos New
[2/2] dbus: Add filetrans for /tmp/dbus-* session socket [1/2] selinux: Add map perms - - - --- 2021-11-21 Jason Zaman New
[1/2] selinux: Add map perms [1/2] selinux: Add map perms - - - --- 2021-11-21 Jason Zaman New
[v2] Support static-only builds [v2] Support static-only builds - - - --- 2021-11-13 Alyssa Ross New
[v3,1/1] fuse: Send security context of inode on file creation fuse: Send file/inode security context during creation - - - --- 2021-11-10 Vivek Goyal pcmoore New
[RFC] selinux: Add netlink xperm support [RFC] selinux: Add netlink xperm support - - - --- 2021-11-10 Bram Bonné pcmoore New
[v3,1/1] xattr: Allow user.* xattr on symlink and special files Relax restrictions on user.* xattr - - - --- 2021-09-02 Vivek Goyal pcmoore New
[RFC,9/9] sk_buff: access secmark via getter/setter [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,8/9] sk_buff: move vlan field after tail. [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,7/9] sk_buff: move inner header fields after tail [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,6/9] veth: use skb_prepare_for_gro() [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,5/9] skbuff: introduce has_sk state bit. [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,4/9] net: optimize GRO for the common case. [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,3/9] sk_buff: move the active_extensions into the state bitfield [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,2/9] sk_buff: track dst status in skb->_state [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC,1/9] sk_buff: track nfct status in newly added skb->_state [RFC,1/9] sk_buff: track nfct status in newly added skb->_state - - - --- 2021-07-21 Paolo Abeni pcmoore New
[RFC] userfaultfd: open userfaultfds with O_RDONLY [RFC] userfaultfd: open userfaultfds with O_RDONLY - - - --- 2021-06-24 Ondrej Mosnacek pcmoore New
[v2,2/2] selinux: fix SECURITY_LSM_NATIVE_LABELS flag handling on double mount vfs/security/NFS/btrfs: clean up and fix LSM option handling - - - --- 2021-05-17 Ondrej Mosnacek pcmoore New
[v2,1/2] vfs,LSM: introduce the FS_HANDLES_LSM_OPTS flag vfs/security/NFS/btrfs: clean up and fix LSM option handling - - 1 --- 2021-05-17 Ondrej Mosnacek pcmoore New
[RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU [RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-04-16 Stephen Brennan pcmoore New
[09/11] pragma once: convert scripts/selinux/genheaders/genheaders.c Untitled series #439529 - - - --- 2021-02-28 Alexey Dobriyan pcmoore New
RTIC: selinux: ARM64: Move selinux_state to a separate page RTIC: selinux: ARM64: Move selinux_state to a separate page 1 - - --- 2021-02-16 Preeti Nagar pcmoore New
[RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU [RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-02-04 Stephen Brennan pcmoore New
[RESEND,v18,4/4] overlayfs: inode_owner_or_capable called during execv Untitled series #368853 - - - --- 2020-10-22 Mark Salyzyn pcmoore New
[RESEND,v18,3/4] overlayfs: override_creds=off option bypass creator_cred overlayfs override_creds=off & nested get xattr fix - - - --- 2020-10-21 Mark Salyzyn pcmoore New
[RESEND,v18,2/4] overlayfs: handle XATTR_NOSECURITY flag for get xattr method overlayfs override_creds=off & nested get xattr fix - - - --- 2020-10-21 Mark Salyzyn pcmoore New
« 1 2 3 478 79 »