Show patches with: Submitter = Christian Göttsche       |    Archived = No       |   896 patches
« 1 2 3 48 9 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v2] libselinux: avoid logs in get_ordered_context_list() without policy [v2] libselinux: avoid logs in get_ordered_context_list() without policy - - - --- 2024-03-22 Christian Göttsche bachradsusi Accepted
[2/2] checkpolicy: handle unprintable token [1/2] checkpolicy: use YYerror only when available - - - --- 2024-03-22 Christian Göttsche bachradsusi Accepted
[1/2] checkpolicy: use YYerror only when available [1/2] checkpolicy: use YYerror only when available 1 - - --- 2024-03-22 Christian Göttsche bachradsusi Accepted
[v2] libselinux: avoid logs in get_ordered_context_list() without policy [v2] libselinux: avoid logs in get_ordered_context_list() without policy 1 - - --- 2024-03-22 Christian Göttsche bachradsusi Accepted
[v2,1/2] selinux: dump statistics for more hash tables [v2,1/2] selinux: dump statistics for more hash tables - - - --- 2024-03-15 Christian Göttsche pcmoore Accepted
[v2,2/2] selinux: improve symtab string hashing [v2,1/2] selinux: dump statistics for more hash tables - - - --- 2024-03-15 Christian Göttsche pcmoore Accepted
[v3] selinux: optimize ebitmap_and() [v3] selinux: optimize ebitmap_and() - - - --- 2024-03-15 Christian Göttsche pcmoore Changes Requested
[RFC,2/2] selinux: wire up new execstack LSM hook Untitled series #835707 - - - --- 2024-03-15 Christian Göttsche pcmoore New
selinux: use u32 as bit type in ebitmap code selinux: use u32 as bit type in ebitmap code - - - --- 2024-03-15 Christian Göttsche pcmoore Accepted
[1/2] selinux: avoid identifier using reserved name [1/2] selinux: avoid identifier using reserved name - - - --- 2024-03-15 Christian Göttsche pcmoore Rejected
[2/2] selinux: make more use of current_sid() [1/2] selinux: avoid identifier using reserved name - - - --- 2024-03-15 Christian Göttsche pcmoore Accepted
[v2] selinux: reject invalid ebitmaps [v2] selinux: reject invalid ebitmaps - - - --- 2024-03-15 Christian Göttsche pcmoore Accepted
libselinux: avoid logs in get_ordered_context_list() without policy libselinux: avoid logs in get_ordered_context_list() without policy - - - --- 2024-03-15 Christian Göttsche bachradsusi Accepted
[01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY [01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY - 1 - --- 2024-03-15 Christian Göttsche pcmoore Handled Elsewhere
[5/5] libselinux/utils/selabel_digest: pass BASEONLY only for file backend [1/5] libselinux/utils/selabel_digest: drop unsupported option -d - - - --- 2024-03-13 Christian Göttsche bachradsusi Accepted
[4/5] libselinux: free data on selabel open failure [1/5] libselinux/utils/selabel_digest: drop unsupported option -d - - - --- 2024-03-13 Christian Göttsche bachradsusi Accepted
[3/5] libselinux/utils/selabel_digest: avoid buffer overflow [1/5] libselinux/utils/selabel_digest: drop unsupported option -d - - - --- 2024-03-13 Christian Göttsche bachradsusi Accepted
[2/5] libselinux/utils/selabel_digest: cleanup [1/5] libselinux/utils/selabel_digest: drop unsupported option -d - - - --- 2024-03-13 Christian Göttsche bachradsusi Accepted
[1/5] libselinux/utils/selabel_digest: drop unsupported option -d [1/5] libselinux/utils/selabel_digest: drop unsupported option -d 1 - - --- 2024-03-13 Christian Göttsche bachradsusi Accepted
[5/5] checkpolicy/fuzz: scan Xen policies [1/5] checkpolicy/fuzz: drop redundant notdefined check - - - --- 2024-03-11 Christian Göttsche bachradsusi Accepted
[4/5] libsepol: reject MLS support in pre-MLS policies [1/5] checkpolicy/fuzz: drop redundant notdefined check - - - --- 2024-03-11 Christian Göttsche bachradsusi Accepted
[3/5] checkpolicy: return YYerror on invalid character [1/5] checkpolicy/fuzz: drop redundant notdefined check - - - --- 2024-03-11 Christian Göttsche bachradsusi Accepted
[2/5] checkpolicy: clone level only once [1/5] checkpolicy/fuzz: drop redundant notdefined check - - - --- 2024-03-11 Christian Göttsche bachradsusi Accepted
[1/5] checkpolicy/fuzz: drop redundant notdefined check [1/5] checkpolicy/fuzz: drop redundant notdefined check 1 - - --- 2024-03-11 Christian Göttsche bachradsusi Accepted
sepolgen: adjust parse for refpolicy sepolgen: adjust parse for refpolicy 1 - - --- 2024-02-22 Christian Göttsche bachradsusi Accepted
[RFC,v2,9/9] libselinux: support parallel selabel_lookup(3) libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,8/9] libselinux: add selabel_file(5) fuzzer libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,7/9] libselinux: remove unused hashtab code libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,6/9] libselinux: rework selabel_file(5) database libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,5/9] libselinux: sidtab updates libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,4/9] libselinux: add unique id to sidtab entries libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,3/9] libselinux: use more appropriate types in sidtab libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,2/9] libselinux/utils: introduce selabel_compare libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[RFC,v2,1/9] policycoreutils: introduce unsetfiles libselinux: rework selabel_file(5) database - - - --- 2024-01-31 Christian Göttsche bachradsusi New
[3/3] mcstrans: ensure transitivity in compare functions [1/3] libsepol: ensure transitivity in compare functions - - - --- 2024-01-31 Christian Göttsche bachradsusi Accepted
[2/3] libsepol/cil: ensure transitivity in compare functions [1/3] libsepol: ensure transitivity in compare functions - - - --- 2024-01-31 Christian Göttsche bachradsusi Accepted
[1/3] libsepol: ensure transitivity in compare functions [1/3] libsepol: ensure transitivity in compare functions 1 - - --- 2024-01-31 Christian Göttsche bachradsusi Accepted
[15/15] checkpolicy: misc policy_define.c cleanup [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[14/15] checkpolicy: avoid assigning garbage values [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[13/15] checkpolicy: free temporary bounds type [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[12/15] checkpolicy: provide more descriptive error messages [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[11/15] checkpolicy: fix use-after-free on invalid sens alias [01/15] checkpolicy: add libfuzz based fuzzer - - - --- 2024-01-22 Christian Göttsche bachradsusi New
[10/15] libsepol: add copy member to level_datum [01/15] checkpolicy: add libfuzz based fuzzer - - - --- 2024-01-22 Christian Göttsche bachradsusi New
[09/15] libsepol: use typedef [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[08/15] checkpolicy: bail out on invalid role [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[07/15] checkpolicy: call YYABORT on parse errors [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[06/15] checkpolicy: clean expression on error [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[05/15] checkpolicy: check allocation and free memory on error at type definition [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[04/15] checkpolicy: free ebitmap on error [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[03/15] checkpolicy: cleanup identifiers on error [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[02/15] checkpolicy: cleanup resources on parse error [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
[01/15] checkpolicy: add libfuzz based fuzzer [01/15] checkpolicy: add libfuzz based fuzzer 1 - - --- 2024-01-22 Christian Göttsche bachradsusi Accepted
libselinux: use reentrant strtok_r(3) libselinux: use reentrant strtok_r(3) 1 - - --- 2024-01-15 Christian Göttsche bachradsusi Accepted
[RFC] libselinux: disable capturing in fcontext matching [RFC] libselinux: disable capturing in fcontext matching - - - --- 2024-01-08 Christian Göttsche bachradsusi New
[4/4] mcstrans: check memory allocations [1/4] libsepol: reorder calloc(3) arguments - - - --- 2024-01-05 Christian Göttsche bachradsusi Accepted
[3/4] sandbox: do not override warning CFLAGS [1/4] libsepol: reorder calloc(3) arguments - - - --- 2024-01-05 Christian Göttsche bachradsusi Accepted
[2/4] libselinux: reorder calloc(3) arguments [1/4] libsepol: reorder calloc(3) arguments - - - --- 2024-01-05 Christian Göttsche bachradsusi Accepted
[1/4] libsepol: reorder calloc(3) arguments [1/4] libsepol: reorder calloc(3) arguments 1 - - --- 2024-01-05 Christian Göttsche bachradsusi Accepted
[11/11] setfiles: avoid unsigned integer underflow [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[10/11] libselinux: enable usage with pedantic UB sanitizers [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[09/11] libsemanage: support huge passwd entries [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[08/11] libselinux: support huge passwd/group entries [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[07/11] libselinux: use logging wrapper in getseuser(3) and get_default_context(3) family [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[06/11] libselinux: fail selabel_open(3) on invalid option [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[05/11] libselinux: align SELABEL_OPT_DIGEST usage with man page [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[04/11] libselinux/utils: improve compute_av output [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[03/11] libselinux/utils: free allocated resources [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[02/11] libselinux/man: sync selinux_check_securetty_context(3) [01/11] libselinux/man: mention errno for regex compilation failure - - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[01/11] libselinux/man: mention errno for regex compilation failure [01/11] libselinux/man: mention errno for regex compilation failure 1 - - --- 2023-12-19 Christian Göttsche bachradsusi Accepted
[UTIL-LINUX] sulogin: relabel terminal according to SELinux policy [UTIL-LINUX] sulogin: relabel terminal according to SELinux policy - 1 - --- 2023-12-13 Christian Göttsche Handled Elsewhere
[3/3] libselinux: state setexecfilecon(3) sets errno on failure [1/3] libselinux: update const qualifier of parameters in man pages - - - --- 2023-12-11 Christian Göttsche Accepted
[2/3] libselinux: always set errno on context translation failure [1/3] libselinux: update const qualifier of parameters in man pages - - - --- 2023-12-11 Christian Göttsche Accepted
[1/3] libselinux: update const qualifier of parameters in man pages [1/3] libselinux: update const qualifier of parameters in man pages 1 - - --- 2023-12-11 Christian Göttsche Accepted
libsepol: validate empty common classes in scope indices libsepol: validate empty common classes in scope indices 1 - - --- 2023-12-11 Christian Göttsche Accepted
[RFC] libsepol: handle long permission names in sepol_av_to_string() [RFC] libsepol: handle long permission names in sepol_av_to_string() - - - --- 2023-12-11 Christian Göttsche bachradsusi New
[3/3] libsepol: extended permission formatting cleanup [1/3] libsepol: constify tokenized input - - - --- 2023-12-11 Christian Göttsche Accepted
[2/3] libsepol: avoid integer overflow in add_i_to_a() [1/3] libsepol: constify tokenized input - - - --- 2023-12-11 Christian Göttsche Accepted
[1/3] libsepol: constify tokenized input [1/3] libsepol: constify tokenized input 1 - - --- 2023-12-11 Christian Göttsche Accepted
libsepol: validate common classes in scope indices libsepol: validate common classes in scope indices - - - --- 2023-12-08 Christian Göttsche bachradsusi New
[v2] checkpolicy/dispol: misc updates [v2] checkpolicy/dispol: misc updates 1 - - --- 2023-12-07 Christian Göttsche bachradsusi Accepted
[RFC] libsepol: validate permission identifier length [RFC] libsepol: validate permission identifier length - - - --- 2023-12-07 Christian Göttsche bachradsusi New
[7/7] libsepol: reject linking modules with no avrules [1/7] libsepol: validate conditional type rules have a simple default type - - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
[6/7] libsepol/fuzz: handle empty and non kernel policies [1/7] libsepol: validate conditional type rules have a simple default type - - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
[5/7] libsepol: reject invalid class datums [1/7] libsepol: validate conditional type rules have a simple default type - - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
[4/7] checkpolicy/dispol: misc updates [1/7] libsepol: validate conditional type rules have a simple default type - - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
[3/7] checkpolicy/dismod: avoid duplicate initialization and fix module linking [1/7] libsepol: validate conditional type rules have a simple default type - - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
[2/7] libsepol: use correct type to avoid truncations [1/7] libsepol: validate conditional type rules have a simple default type - - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
[1/7] libsepol: validate conditional type rules have a simple default type [1/7] libsepol: validate conditional type rules have a simple default type 1 - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
libsepol: simplify string formatting libsepol: simplify string formatting 1 - - --- 2023-11-28 Christian Göttsche bachradsusi Accepted
[v2,2/2] libsepol: avoid fixed sized format buffer for xperms [v2,1/2] libsepol: avoid fixed sized format buffer for xperms 1 - - --- 2023-11-20 Christian Göttsche bachradsusi Accepted
[v2,1/2] libsepol: avoid fixed sized format buffer for xperms [v2,1/2] libsepol: avoid fixed sized format buffer for xperms - - - --- 2023-11-20 Christian Göttsche bachradsusi Accepted
[2/2] libsepol: avoid fixed sized format buffer for xperms [1/2] libsepol: avoid fixed sized format buffer for xperms - - - --- 2023-11-20 Christian Göttsche bachradsusi Accepted
[1/2] libsepol: avoid fixed sized format buffer for xperms [1/2] libsepol: avoid fixed sized format buffer for xperms - - - --- 2023-11-20 Christian Göttsche bachradsusi Accepted
libsepol: validate common classes have at least one permissions libsepol: validate common classes have at least one permissions 1 - - --- 2023-11-13 Christian Göttsche bachradsusi Accepted
github: bump action dependencies github: bump action dependencies 1 - - --- 2023-11-09 Christian Göttsche bachradsusi Accepted
libsepol: update policy capabilities array libsepol: update policy capabilities array 1 - - --- 2023-11-09 Christian Göttsche bachradsusi Accepted
[5/5] libsepol: avoid memory corruption on realloc failure [1/5] semodule_link: avoid NULL dereference on OOM - - - --- 2023-11-09 Christian Göttsche bachradsusi Accepted
[4/5] libsepol: avoid leak in OOM branch [1/5] semodule_link: avoid NULL dereference on OOM - - - --- 2023-11-09 Christian Göttsche bachradsusi Accepted
[3/5] libselinux: fix memory leak in customizable_init() [1/5] semodule_link: avoid NULL dereference on OOM - - - --- 2023-11-09 Christian Göttsche bachradsusi Accepted
[2/5] libsepol: set number of target names [1/5] semodule_link: avoid NULL dereference on OOM - - - --- 2023-11-09 Christian Göttsche bachradsusi Accepted
« 1 2 3 48 9 »