Show patches with: none      |   3951 patches
« 1 2 3 439 40 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
selinux: reduce the use of hard-coded hash sizes selinux: reduce the use of hard-coded hash sizes - - - 0 0 0 2020-02-17 Ondrej Mosnacek New
[v7,12/12] doc/admin-guide: update kernel.rst with CAP_PERFMON information Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,11/12] doc/admin-guide: update perf-security.rst with CAP_PERFMON information Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,10/12] drivers/oprofile: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,09/12] drivers/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,08/12] parisc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,07/12] powerpc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,06/12] trace/bpf_trace: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,05/12] drm/i915/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,04/12] perf tool: extend Perf tool with CAP_PERFMON capability support Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,03/12] perf/core: open access to probes for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,02/12] perf/core: open access to the core for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v7,01/12] capabilities: introduce CAP_PERFMON to kernel and user space Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-17 Alexey Budankov New
[v15,23/23] AppArmor: Remove the exclusive flag LSM: Module stacking for AppArmor - 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,22/23] LSM: Add /proc attr entry for full LSM context LSM: Module stacking for AppArmor - - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,21/23] Audit: Include object data for all security modules LSM: Module stacking for AppArmor 1 - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,20/23] Audit: Add subj_LSM fields when necessary LSM: Module stacking for AppArmor 1 - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,19/23] LSM: Verify LSM display sanity in binder LSM: Module stacking for AppArmor 1 - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,18/23] NET: Store LSM netlabel data in a lsmblob LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,17/23] LSM: security_secid_to_secctx in netlink netfilter LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,16/23] LSM: Use lsmcontext in security_inode_getsecctx LSM: Module stacking for AppArmor 1 - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,15/23] LSM: Use lsmcontext in security_secid_to_secctx LSM: Module stacking for AppArmor 1 - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,14/23] LSM: Ensure the correct LSM context releaser LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,13/23] LSM: Specify which LSM to display LSM: Module stacking for AppArmor 1 - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,12/23] IMA: Change internal interfaces to use lsmblobs LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,11/23] LSM: Use lsmblob in security_cred_getsecid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,10/23] LSM: Use lsmblob in security_inode_getsecid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,09/23] LSM: Use lsmblob in security_task_getsecid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,08/23] LSM: Use lsmblob in security_ipc_getsecid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,07/23] LSM: Use lsmblob in security_secid_to_secctx LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,06/23] Use lsmblob in security_secctx_to_secid LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,05/23] net: Prepare UDS for security module stacking LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,04/23] LSM: Use lsmblob in security_kernel_act_as LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,03/23] LSM: Use lsmblob in security_audit_rule_match LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
[v15,02/23] LSM: Create and manage the lsmblob data structure. LSM: Module stacking for AppArmor - - - 0 0 0 2020-02-14 Casey Schaufler New
[v15,01/23] LSM: Infrastructure management of the sock security LSM: Module stacking for AppArmor 1 2 - 0 0 0 2020-02-14 Casey Schaufler New
libselinux: drop error return from is_selinux_enabled documentation libselinux: drop error return from is_selinux_enabled documentation 1 - - 0 0 0 2020-02-14 Christian Göttsche New
[3/3] Wire UFFD up to SELinux [1/3] Add a new LSM-supporting anonymous inode interface - - - 0 0 0 2020-02-14 Daniel Colascione New
[2/3] Teach SELinux about anonymous inodes [1/3] Add a new LSM-supporting anonymous inode interface - - - 0 0 0 2020-02-14 Daniel Colascione New
[1/3] Add a new LSM-supporting anonymous inode interface [1/3] Add a new LSM-supporting anonymous inode interface - - - 0 0 0 2020-02-14 Daniel Colascione New
[RFC] security,anon_inodes,kvm: enable security support for anon inodes [RFC] security,anon_inodes,kvm: enable security support for anon inodes - - - 0 0 0 2020-02-13 Stephen Smalley New
[userspace,v2] libsepol: cache ebitmap cardinality value [userspace,v2] libsepol: cache ebitmap cardinality value 1 - - 0 0 0 2020-02-13 Ondrej Mosnacek New
[userspace] libsepol: cache ebitmap cardinality value [userspace] libsepol: cache ebitmap cardinality value - - - 0 0 0 2020-02-12 Ondrej Mosnacek Superseded
[v2,2/2] selinux: optimize storage of filename transitions Optimize storage of filename transitions 1 - - 0 0 0 2020-02-12 Ondrej Mosnacek New
[v2,1/2] selinux: factor out loop body from filename_trans_read() Optimize storage of filename transitions 1 - - 0 0 0 2020-02-12 Ondrej Mosnacek Accepted
[v2,6/6] Add a new sysctl for limiting userfaultfd to user mode faults Harden userfaultfd - - - 0 0 0 2020-02-11 Daniel Colascione Superseded
[v2,5/6] Let userfaultfd opt out of handling kernel-mode faults Harden userfaultfd - - - 0 0 0 2020-02-11 Daniel Colascione Superseded
[v2,4/6] Wire UFFD up to SELinux Harden userfaultfd - - - 0 0 0 2020-02-11 Daniel Colascione Superseded
[v2,3/6] Teach SELinux about a new userfaultfd class Harden userfaultfd - - - 0 0 0 2020-02-11 Daniel Colascione Superseded
[v2,2/6] Add a concept of a "secure" anonymous file Harden userfaultfd - - - 0 0 0 2020-02-11 Daniel Colascione Superseded
[v2,1/6] Add a new flags-accepting interface for anonymous inodes Harden userfaultfd - - - 0 0 0 2020-02-11 Daniel Colascione Superseded
[2/2] selinux: optimize storage of filename transitions Optimize storage of filename transitions - - - 0 0 0 2020-02-11 Ondrej Mosnacek Superseded
[1/2] selinux: factor out loop body from filename_trans_read() Optimize storage of filename transitions - - - 0 0 0 2020-02-11 Ondrej Mosnacek Superseded
selinux-testsuite: add the quota package to the list of deps in README.md selinux-testsuite: add the quota package to the list of deps in README.md 1 - - 0 0 0 2020-02-11 Paul Moore Accepted
[v5] libselinux: Eliminate use of security_compute_user() [v5] libselinux: Eliminate use of security_compute_user() 1 - - 0 0 0 2020-02-11 Petr Lautrbach New
[GIT,PULL] SELinux fixes for v5.6 (#1) [GIT,PULL] SELinux fixes for v5.6 (#1) - - - 0 0 0 2020-02-10 Paul Moore Accepted
[v4] libselinux: Eliminate use of security_compute_user() [v4] libselinux: Eliminate use of security_compute_user() - - - 0 0 0 2020-02-10 Petr Lautrbach Changes Requested
[v3] libselinux: Eliminate use of security_compute_user() [v3] libselinux: Eliminate use of security_compute_user() - - - 0 0 0 2020-02-08 Petr Lautrbach Superseded
label_file.c: Fix MAC build label_file.c: Fix MAC build 1 - - 0 0 0 2020-02-07 Nick Kralevich Accepted
[v3] security: selinux: allow per-file labeling for bpffs [v3] security: selinux: allow per-file labeling for bpffs 1 - - 0 0 0 2020-02-07 Steven Moreland Accepted
[userspace] libsepol/cil: remove unnecessary hash tables [userspace] libsepol/cil: remove unnecessary hash tables 1 - - 0 0 0 2020-02-07 Ondrej Mosnacek Accepted
libselinux: drop error return from is_selinux_enabled.3 libselinux: drop error return from is_selinux_enabled.3 - - - 0 0 0 2020-02-07 Christian Göttsche Superseded
[v2] security: selinux: allow per-file labeling for bpffs [v2] security: selinux: allow per-file labeling for bpffs - - - 0 0 0 2020-02-06 Steven Moreland Superseded
security: selinux: allow per-file labeling for bpffs security: selinux: allow per-file labeling for bpffs - - - 0 0 0 2020-02-06 Steven Moreland Superseded
[2/2] Travis-CI: test that DEBUG build works userspace: Fix DEBUG=1 build 1 - - 0 0 0 2020-02-06 Ondrej Mosnacek Accepted
[1/2] libsemanage: preserve parent Makefile's flags in debug mode userspace: Fix DEBUG=1 build - - - 0 0 0 2020-02-06 Ondrej Mosnacek Accepted
[RFC,2/2] semodule: support changing policyvers via command line userspace: Allow changing version of kernel policy built by semodule - - - 0 0 0 2020-02-06 Ondrej Mosnacek Rejected
[RFC,1/2] libsemanage: support changing policy version via API userspace: Allow changing version of kernel policy built by semodule - - - 0 0 0 2020-02-06 Ondrej Mosnacek Rejected
[v6,10/10] drivers/oprofile: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,09/10] drivers/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,08/10] parisc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,07/10] powerpc/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,06/10] trace/bpf_trace: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,05/10] drm/i915/perf: open access for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,04/10] perf tool: extend Perf tool with CAP_PERFMON capability support Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,03/10] perf/core: open access to probes for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,02/10] perf/core: open access to the core for CAP_PERFMON privileged process Introduce CAP_PERFMON to secure system performance monitoring and observability - - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v6,01/10] capabilities: introduce CAP_PERFMON to kernel and user space Introduce CAP_PERFMON to secure system performance monitoring and observability 1 - - 0 0 0 2020-02-05 Alexey Budankov Superseded
[v2] libselinux: Eliminate use of security_compute_user() [v2] libselinux: Eliminate use of security_compute_user() - - - 0 0 0 2020-02-04 Petr Lautrbach Changes Requested
[RFC,1/1] selinux-testsuite: Test all mount option context types selinux-testsuite: Test all mount option context types - - - 0 0 0 2020-02-04 Richard Haines Rejected
security/selinux: Add support for new key permissions security/selinux: Add support for new key permissions - - - 0 0 0 2020-02-03 Richard Haines New
[v3,5/5] selinux: generalize evaluate_cond_node() selinux: Assorted simplifications and cleanups - - - 0 0 0 2020-02-03 Ondrej Mosnacek Accepted
[v3,4/5] selinux: convert cond_expr to array selinux: Assorted simplifications and cleanups - 1 - 0 0 0 2020-02-03 Ondrej Mosnacek Accepted
[v3,3/5] selinux: convert cond_av_list to array selinux: Assorted simplifications and cleanups - 1 - 0 0 0 2020-02-03 Ondrej Mosnacek Accepted
[v3,2/5] selinux: convert cond_list to array selinux: Assorted simplifications and cleanups - - - 0 0 0 2020-02-03 Ondrej Mosnacek Accepted
[v3,1/5] selinux: simplify evaluate_cond_node() selinux: Assorted simplifications and cleanups - - - 0 0 0 2020-02-03 Ondrej Mosnacek Not Applicable
selinux: fix sidtab string cache locking selinux: fix sidtab string cache locking 1 - - 0 0 0 2020-02-03 Ondrej Mosnacek Accepted
[RFC] libsepol: Add 'key_perms' policy capability [RFC] libsepol: Add 'key_perms' policy capability - - - 0 0 0 2020-02-02 Richard Haines Changes Requested
[RFC,1/1] selinux-testsuite: Add additional key permission tests selinux-testsuite: Add additional key permission tests - - - 0 0 0 2020-02-02 Richard Haines Changes Requested
selinux: Fix typo in filesystem name selinux: Fix typo in filesystem name 1 - - 0 0 0 2020-02-02 Hridya Valsaraju Accepted
[v2] selinux: sel_avc_get_stat_idx should increase position index [v2] selinux: sel_avc_get_stat_idx should increase position index 1 - - 0 0 0 2020-02-01 Vasily Averin Accepted
selinux-testsuite: Binder goto brexit fix selinux-testsuite: Binder goto brexit fix 1 - - 0 0 0 2020-01-31 Richard Haines Accepted
libsepol/cil: Rewrite verification of map classes and classpermissionsets libsepol/cil: Rewrite verification of map classes and classpermissionsets 1 - - 0 0 0 2020-01-31 jwcart2 Accepted
libsepol: add support for new polcap genfs_seclabel_symlinks libsepol: add support for new polcap genfs_seclabel_symlinks 1 - - 0 0 0 2020-01-31 Christian Göttsche Accepted
[v3,2/2] testsuite: add further nfs tests [v3,1/2] testsuite: provide support for testing labeled NFS - - - 0 0 0 2020-01-30 Stephen Smalley Accepted
[v3,1/2] testsuite: provide support for testing labeled NFS [v3,1/2] testsuite: provide support for testing labeled NFS - - - 0 0 0 2020-01-30 Stephen Smalley Accepted
[v2,2/2] testsuite: add further nfs tests [v2,1/2] testsuite: provide support for testing labeled NFS - - - 0 0 0 2020-01-30 Stephen Smalley Superseded
[v2,1/2] testsuite: provide support for testing labeled NFS [v2,1/2] testsuite: provide support for testing labeled NFS - - - 0 0 0 2020-01-30 Stephen Smalley Superseded
testsuite: add further nfs tests testsuite: add further nfs tests - - - 0 0 0 2020-01-30 Stephen Smalley Superseded
[1/1] selinux-testsuite: Add watch_sb and watch_mount checks selinux-testsuite: Add watch_sb and watch_mount checks 1 - - 0 0 0 2020-01-30 Richard Haines Accepted
« 1 2 3 439 40 »