Show patches with: Archived = No       |   6129 patches
« 1 2 ... 3 4 561 62 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[2] testsuite: fix cap_userns for kernels >= v5.12 [2] testsuite: fix cap_userns for kernels >= v5.12 - - - --- 2021-04-27 Paul Moore omos Accepted
[v3,6/6] evm: Support multiple LSMs providing an xattr evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-27 Roberto Sassu pcmoore Not Applicable
[v3,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-27 Roberto Sassu pcmoore Not Applicable
[v3,4/6] security: Support multiple LSMs implementing the inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-27 Roberto Sassu pcmoore Not Applicable
[v3,3/6] security: Pass xattrs allocated by LSMs to the inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-27 Roberto Sassu pcmoore Not Applicable
[v3,2/6] security: Rewrite security_old_inode_init_security() evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-27 Roberto Sassu pcmoore Not Applicable
[v3,1/6] reiserfs: Add missing calls to reiserfs_security_free() evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-27 Roberto Sassu pcmoore Not Applicable
[GIT,PULL] SELinux patches for v5.13 [GIT,PULL] SELinux patches for v5.13 - - - --- 2021-04-26 Paul Moore Accepted
testsuite: fix cap_userns for kernels >= v5.12 testsuite: fix cap_userns for kernels >= v5.12 - - - --- 2021-04-26 Paul Moore omos Changes Requested
[v2] selinux: Corrected comment to match kernel-doc comment [v2] selinux: Corrected comment to match kernel-doc comment 1 - - --- 2021-04-25 Souptick Joarder pcmoore Accepted
selinux: Corrected comment to match kernel-doc comment selinux: Corrected comment to match kernel-doc comment - - - --- 2021-04-24 Souptick Joarder Superseded
libselinux android: Add keystore2_key label module. libselinux android: Add keystore2_key label module. - - - --- 2021-04-23 Jeffrey Vander Stoep Accepted
libsepol: use checked arithmetic builtin to perform safe addition libsepol: use checked arithmetic builtin to perform safe addition 1 - - --- 2021-04-22 Nicolas Iooss Accepted
libselinux: do not duplicate make target when going into subdirectory libselinux: do not duplicate make target when going into subdirectory 1 - - --- 2021-04-22 Nicolas Iooss Accepted
selinux: add proper NULL termination to the secclass_map permissions selinux: add proper NULL termination to the secclass_map permissions - - - --- 2021-04-22 Paul Moore pcmoore Accepted
[3/3,v3] secilc: Create the new program called secil2tree to write out CIL AST Create secil2tree to write CIL AST - - - --- 2021-04-21 James Carter Accepted
[2/3,v3] libsepol/cil: Add functions to make use of cil_write_ast() Create secil2tree to write CIL AST - - - --- 2021-04-21 James Carter Accepted
[1/3,v3] libsepol/cil: Create functions to write the CIL AST Create secil2tree to write CIL AST - - - --- 2021-04-21 James Carter Accepted
[RFC,testsuite] Add extended_anon_inode_class policy capability support [RFC,testsuite] Add extended_anon_inode_class policy capability support - - - --- 2021-04-21 Ondrej Mosnacek omos Rejected
[RFC,2/2] selinux: add capability to map anon inode types to separate classes selinux,anon_inodes: Use a separate SELinux class for each type of anon inode - - - --- 2021-04-21 Ondrej Mosnacek pcmoore Rejected
[RFC,1/2] LSM,anon_inodes: explicitly distinguish anon inode types selinux,anon_inodes: Use a separate SELinux class for each type of anon inode - - - --- 2021-04-21 Ondrej Mosnacek pcmoore Rejected
[v2,6/6] evm: Support multiple LSMs providing an xattr evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-21 Roberto Sassu pcmoore Superseded
[v2,5/6] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-21 Roberto Sassu pcmoore Superseded
[v2,4/6] security: Support multiple LSMs implementing the inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-21 Roberto Sassu pcmoore Superseded
[v2,3/6] security: Pass xattrs allocated by LSMs to the inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-21 Roberto Sassu pcmoore Superseded
[v2,2/6] reiserfs: Add missing calls to reiserfs_security_free() evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-21 Roberto Sassu pcmoore Superseded
[v2,1/6] xattr: Complete constify ->name member of "struct xattr" evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-21 Roberto Sassu pcmoore Superseded
[3/3,v2] secilc: Create the new program called secil2tree to write out CIL AST Create secil2tree to write CIL AST - - - --- 2021-04-19 James Carter Accepted
[2/3,v2] libsepol/cil: Add functions to make use of cil_write_ast() Create secil2tree to write CIL AST - - - --- 2021-04-19 James Carter Accepted
[1/3,v2] libsepol/cil: Create functions to write the CIL AST Create secil2tree to write CIL AST - - - --- 2021-04-19 James Carter Accepted
[11/11,v2] libsepol/cil: Move check for the shadowing of macro parameters Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[10/11,v2] libsepol/cil: Create function cil_add_decl_to_symtab() and refactor Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[09/11,v2] libsepol/cil: Refactor helper function for cil_gen_node() Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[08/11,v2] libsepol/cil: Allow permission expressions when using map classes Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[07/11,v2] libsepol/cil: Exit with an error if declaration name is a reserved word Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[06/11,v2] libsepol/cil: More strict verification of constraint leaf expressions Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[05/11,v2] libsepol/cil: Set class field to NULL when resetting struct cil_classperms Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[04/11,v2] libsepol/cil: cil_reset_classperms_set() should not reset classpermission Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[03/11,v2] libsepol/cil: Destroy classperm list when resetting map perms Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[02/11,v2] libsepol/cil: Destroy classperms list when resetting classpermission Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[01/11,v2] libsepol/cil: Fix out-of-bound read of file context pattern ending with "\" Various CIL patches - - - --- 2021-04-19 James Carter Accepted
[RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU [RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-04-16 Stephen Brennan pcmoore New
[3/3] secilc: Create the new program called secil2tree to write out CIL AST Create secil2tree to write CIL AST - - - --- 2021-04-15 James Carter Superseded
[2/3] libsepol/cil: Add functions to make use of cil_write_ast() Create secil2tree to write CIL AST - - - --- 2021-04-15 James Carter Superseded
[1/3] libsepol/cil: Create functions to write the CIL AST Create secil2tree to write CIL AST - - - --- 2021-04-15 James Carter Superseded
[5/5] evm: Support multiple LSMs providing an xattr evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-15 Roberto Sassu Superseded
[4/5] evm: Align evm_inode_init_security() definition with LSM infrastructure evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-15 Roberto Sassu Superseded
[3/5] security: Pass xattrs allocated by LSMs to the inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-15 Roberto Sassu Superseded
[2/5] security: Support multiple LSMs implementing the inode_init_security hook evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-15 Roberto Sassu Superseded
[1/5] xattr: Complete constify ->name member of "struct xattr" evm: Prepare for moving to the LSM infrastructure - - - --- 2021-04-15 Roberto Sassu Superseded
secilc.c: Don't fail if input file is empty secilc.c: Don't fail if input file is empty 1 - - --- 2021-04-14 Yi-Yo Chiang Accepted
[RFC,SHADOW,7/7] selinux: only open selabel database once SELinux modernizations - - - --- 2021-04-13 Christian Göttsche Not Applicable
[RFC,SHADOW,6/7] set_selinux_file_context(): prepare context for actual file type SELinux modernizations - - - --- 2021-04-13 Christian Göttsche Not Applicable
[RFC,SHADOW,5/7] selinux.c: use modern selabel interface instead of deprecated matchpathcon SELinux modernizations - - - --- 2021-04-13 Christian Göttsche Not Applicable
[RFC,SHADOW,4/7] selinux.c:reset_selinux_file_context(): do not fail in permissive mode SELinux modernizations - - - --- 2021-04-13 Christian Göttsche Not Applicable
[RFC,SHADOW,3/7] selinux.c: do not use deprecated typedef and skip context translation SELinux modernizations - - - --- 2021-04-13 Christian Göttsche Not Applicable
[RFC,SHADOW,2/7] vipw[selinux]: do not use deprecated typedef and skip context translation SELinux modernizations - - - --- 2021-04-13 Christian Göttsche Not Applicable
[RFC,SHADOW,1/7] struct commonio_db[selinux]: do not use deprecated type security_context_t SELinux modernizations - - - --- 2021-04-13 Christian Göttsche Not Applicable
[GIT,PULL] SELinux fixes for v5.12 (#2) [GIT,PULL] SELinux fixes for v5.12 (#2) - - - --- 2021-04-09 Paul Moore Accepted
[2/2] selinux: fix SECURITY_LSM_NATIVE_LABELS flag handling on double mount vfs/security/NFS/btrfs: clean up and fix LSM option handling - - - --- 2021-04-09 Ondrej Mosnacek pcmoore Superseded
[1/2] vfs,LSM: introduce the FS_HANDLES_LSM_OPTS flag vfs/security/NFS/btrfs: clean up and fix LSM option handling - - - --- 2021-04-09 Ondrej Mosnacek pcmoore Superseded
[2/2] selinux:Delete selinux_xfrm_policy_lookup() useless argument Untitled series #463965 - - - --- 2021-04-09 Zhongjun Tan pcmoore Accepted
[11/11] libsepol/cil: Move check for the shadowing of macro parameters Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[10/11] libsepol/cil: Create function cil_add_decl_to_symtab() and refactor Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[09/11] libsepol/cil: Refactor helper function for cil_gen_node() Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[08/11] libsepol/cil: Allow permission expressions when using map classes Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[07/11,v2] libsepol/cil: Exit with an error if declaration name is a reserved word Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[06/11] libsepol/cil: More strict verification of constraint leaf expressions Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[05/11] libsepol/cil: Set class field to NULL when resetting struct cil_classperms Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[04/11] libsepol/cil: cil_reset_classperms_set() should not reset classpermission Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[03/11] libsepol/cil: Destroy classperm list when resetting map perms Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[02/11] libsepol/cil: Destroy classperms list when resetting classpermission Various CIL patches - - - --- 2021-04-08 James Carter Accepted
[01/11] libsepol/cil: Fix out-of-bound read of file context pattern ending with "\" Various CIL patches - - - --- 2021-04-08 James Carter Accepted
selinux:Delete selinux_xfrm_policy_lookup() useless argument selinux:Delete selinux_xfrm_policy_lookup() useless argument - - - --- 2021-04-08 Zhongjun Tan Superseded
selinux:Delete selinux_xfrm_policy_lookup() useless argument selinux:Delete selinux_xfrm_policy_lookup() useless argument - - - --- 2021-04-08 Zhongjun Tan Superseded
[v2,4/4] selinux: add "mls" binary version of the policy Untitled series #462281 - - - --- 2021-04-07 Vit Mojzis Not Applicable
[v2,3/4] selinux: Remove 'make' dependency Untitled series #462281 - - - --- 2021-04-07 Vit Mojzis Not Applicable
[v2,2/4,DO,NOT,MERGE] Install selinux-policy-devel in test environment Untitled series #462281 - - - --- 2021-04-07 Vit Mojzis Not Applicable
[v3] selinux: fix race between old and new sidtab [v3] selinux: fix race between old and new sidtab - - - --- 2021-04-07 Ondrej Mosnacek pcmoore Accepted
[testsuite] Deactivate userfaultfd test policy if no xperm support [testsuite] Deactivate userfaultfd test policy if no xperm support - - - --- 2021-04-06 Ondrej Mosnacek omos Accepted
[v2] selinux: fix race between old and new sidtab [v2] selinux: fix race between old and new sidtab - - - --- 2021-04-06 Ondrej Mosnacek pcmoore Changes Requested
selinux: fix race between old and new sidtab selinux: fix race between old and new sidtab - - - --- 2021-04-05 Ondrej Mosnacek pcmoore Changes Requested
[v3,2/2] selinux: fix cond_list corruption when changing booleans selinux: fix changing booleans - - - --- 2021-04-02 Ondrej Mosnacek pcmoore Accepted
[v3,1/2] selinux: make nslot handling in avtab more robust selinux: fix changing booleans - - - --- 2021-04-02 Ondrej Mosnacek pcmoore Accepted
[v2,2/2] selinux: fix cond_list corruption when changing booleans selinux: fix changing booleans - - - --- 2021-04-01 Ondrej Mosnacek pcmoore Changes Requested
[v2,1/2] selinux: make nslot handling in avtab more robust selinux: fix changing booleans - - - --- 2021-04-01 Ondrej Mosnacek pcmoore Changes Requested
[12/12] secilc/docs: Update the CIL documentation for various blocks Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[11/12] libsepol/cil: Use CIL_ERR for error messages in cil_compile() Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[10/12] libsepol/cil: Make invalid statement error messages consistent Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[09/12] libsepol/cil: Do not allow tunable declarations in in-statements Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[08/12] libsepol/cil: Sync checks for invalid rules in macros Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[07/12] libsepol/cil: Check for statements not allowed in optional blocks Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[06/12] libsepol/cil: Sync checks for invalid rules in booleanifs Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[05/12] libsepol/cil: Reorder checks for invalid rules when resolving AST Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[04/12] libsepol/cil: Use AST to track blocks and optionals when resolving Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[03/12] libsepol/cil: Create new first child helper function for building AST Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[02/12] libsepol/cil: Cleanup build AST helper functions Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[01/12] libsepol/cil: Reorder checks for invalid rules when building AST Update checks for invalid rules in blocks - - - --- 2021-03-30 James Carter Accepted
[3/3] selinux: constify some avtab function arguments selinux: fix changing booleans - - - --- 2021-03-30 Ondrej Mosnacek pcmoore Accepted
[2/3] selinux: simplify duplicate_policydb_cond_list() by using kmemdup() selinux: fix changing booleans - - - --- 2021-03-30 Ondrej Mosnacek pcmoore Accepted
« 1 2 ... 3 4 561 62 »