Show patches with: Submitter = Christian Göttsche       |    Archived = No       |   896 patches
« 1 2 3 48 9 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[UTIL-LINUX] sulogin: relabel terminal according to SELinux policy [UTIL-LINUX] sulogin: relabel terminal according to SELinux policy - 1 - --- 2023-12-13 Christian Göttsche Handled Elsewhere
[3/3] libselinux: state setexecfilecon(3) sets errno on failure [1/3] libselinux: update const qualifier of parameters in man pages - - - --- 2023-12-11 Christian Göttsche Accepted
[2/3] libselinux: always set errno on context translation failure [1/3] libselinux: update const qualifier of parameters in man pages - - - --- 2023-12-11 Christian Göttsche Accepted
[1/3] libselinux: update const qualifier of parameters in man pages [1/3] libselinux: update const qualifier of parameters in man pages 1 - - --- 2023-12-11 Christian Göttsche Accepted
libsepol: validate empty common classes in scope indices libsepol: validate empty common classes in scope indices 1 - - --- 2023-12-11 Christian Göttsche Accepted
[3/3] libsepol: extended permission formatting cleanup [1/3] libsepol: constify tokenized input - - - --- 2023-12-11 Christian Göttsche Accepted
[2/3] libsepol: avoid integer overflow in add_i_to_a() [1/3] libsepol: constify tokenized input - - - --- 2023-12-11 Christian Göttsche Accepted
[1/3] libsepol: constify tokenized input [1/3] libsepol: constify tokenized input 1 - - --- 2023-12-11 Christian Göttsche Accepted
[3/3] libsepol: more strict validation [1/3] libsepol: validate default type of transition is not an attribute 1 - - --- 2023-11-01 Christian Göttsche Accepted
[v2,1/4] semodule_expand: update [v2,1/4] semodule_expand: update 1 - - --- 2023-07-06 Christian Göttsche Accepted
libsepol/fuzz: more strict fuzzing of binary policies libsepol/fuzz: more strict fuzzing of binary policies 1 - - --- 2023-07-06 Christian Göttsche Accepted
libsepol: check for overflow in put_entry() libsepol: check for overflow in put_entry() 1 - - --- 2023-07-06 Christian Göttsche Accepted
libsepol: free initial sid names libsepol: free initial sid names 1 - - --- 2023-07-06 Christian Göttsche Accepted
[UTIL-LINUX] mount: add rootcontext=@target [UTIL-LINUX] mount: add rootcontext=@target - - - --- 2023-02-21 Christian Göttsche Accepted
libselinux: add getpidprevcon libselinux: add getpidprevcon - - - --- 2023-01-09 Christian Göttsche Changes Requested
[2/2] checkpolicy: add simple round-trip test [1/2] libsepol: do not write empty class definitions - - - --- 2023-01-05 Christian Göttsche Changes Requested
[2/2] libsepol/tests: add tests for neverallow assertions [1/2] libsepol/tests: use more strict compiler options - - - --- 2022-11-14 Christian Göttsche Accepted
[1/2] libsepol/tests: use more strict compiler options [1/2] libsepol/tests: use more strict compiler options 1 - - --- 2022-11-14 Christian Göttsche Accepted
[v3,3/3] libselinux: filter arguments with path separators Untitled series #695210 1 - - --- 2022-11-14 Christian Göttsche Accepted
[v2,2/3] libselinux: bail out on path truncations Untitled series #694191 - - - --- 2022-11-10 Christian Göttsche Accepted
libselinux: drop set but not used internal variable libselinux: drop set but not used internal variable 1 - - --- 2022-11-09 Christian Göttsche Accepted
[3/3] libsepol: simplify string copying [1/3] libselinux: simplify string copying - - - --- 2022-11-09 Christian Göttsche Accepted
[2/3] checkpolicy: simplify string copying [1/3] libselinux: simplify string copying - - - --- 2022-11-09 Christian Göttsche Accepted
[1/3] libselinux: simplify string copying [1/3] libselinux: simplify string copying 1 - - --- 2022-11-09 Christian Göttsche Accepted
[3/3] libselinux: filter arguments with path separators [1/3] libselinux: make use of strndup - - - --- 2022-11-09 Christian Göttsche Accepted
[2/3] libselinux: bail out on path truncations [1/3] libselinux: make use of strndup - - - --- 2022-11-09 Christian Göttsche Accepted
[1/3] libselinux: make use of strndup [1/3] libselinux: make use of strndup - - - --- 2022-11-09 Christian Göttsche Accepted
libsepol/cil: restore error on context rule conflicts libsepol/cil: restore error on context rule conflicts 1 - 1 --- 2022-10-12 Christian Göttsche Accepted
[DPKG] selinux: install log callback to filter messages [DPKG] selinux: install log callback to filter messages - - - --- 2022-10-11 Christian Göttsche Handled Elsewhere
tests/secretmem: add test tests/secretmem: add test - - - --- 2022-08-31 Christian Göttsche Superseded
libselinux: support objname in compute_create libselinux: support objname in compute_create 1 - - --- 2022-08-30 Christian Göttsche Accepted
[4/4] Ignore egg-info directories and clean them [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[3/4] scripts: ignore Flake8 tag E275 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/4] scripts/ci: use F36 image instead of F34 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/2] restorecond: use strict function prototype for definition [1/2] checkpolicy: use strict function prototype for definitions - 1 - --- 2022-08-08 Christian Göttsche Accepted
[1/2] checkpolicy: use strict function prototype for definitions [1/2] checkpolicy: use strict function prototype for definitions 1 1 - --- 2022-08-08 Christian Göttsche Accepted
libselinux: avoid newline in avc message libselinux: avoid newline in avc message 1 - - --- 2022-08-08 Christian Göttsche Accepted
[v2,5/5] libsepol: more strict validation [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,4/5] libsepol: rename parameter name [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,3/5] libsepol: operate on const pointers during validation [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,2/5] libsepol: support const avtab_t pointer in avtab_map() [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,1/5] libsepol: rename validate_policydb to policydb_validate [v2,1/5] libsepol: rename validate_policydb to policydb_validate 1 - - --- 2022-07-21 Christian Göttsche Accepted
[v3,1/8] libsepol: refactor ebitmap conversion in link.c [v3,1/8] libsepol: refactor ebitmap conversion in link.c 1 - - --- 2022-07-21 Christian Göttsche Accepted
[v2,7/7] libsepol: skip superfluous memset calls in ebitmap operations [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,6/7] libsepol: optimize ebitmap_xor [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,5/7] libsepol: optimize ebitmap_and [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,4/7] libsepol: optimize ebitmap_not [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,3/7] libsepol/cil: use ebitmap_init_range [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,2/7] libsepol: add ebitmap_init_range [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,1/7] libsepol/tests: add ebitmap tests [v2,1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-19 Christian Göttsche Accepted
[5/5] libsepol: more strict validation [1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-13 Christian Göttsche Accepted
[4/5] libsepol: rename parameter name [1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-13 Christian Göttsche Accepted
[2/5] libsepol: support const avtab_t pointer in avtab_map() [1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-13 Christian Göttsche Accepted
[1/5] libsepol: rename validate_policydb to policydb_validate [1/5] libsepol: rename validate_policydb to policydb_validate 1 - - --- 2022-07-13 Christian Göttsche Accepted
[3/3] libsepol: enclose macro parameters and replacement lists in parentheses [1/3] libsepol: break circular include - - - --- 2022-07-13 Christian Göttsche Accepted
[2/3] libsepol: include necessary headers in headers [1/3] libsepol: break circular include - - - --- 2022-07-13 Christian Göttsche Accepted
[1/3] libsepol: break circular include [1/3] libsepol: break circular include 1 - - --- 2022-07-13 Christian Göttsche Accepted
[7/7] libsepol: skip superfluous memset calls in ebitmap operations [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[6/7] libsepol: optimize ebitmap_xor [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[5/7] libsepol: optimize ebitmap_and [1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-12 Christian Göttsche Accepted
[4/7] libsepol: optimize ebitmap_not [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[3/7] libsepol/cil: use ebitmap_init_range [1/7] libsepol/tests: add ebitmap tests 1 - - --- 2022-07-12 Christian Göttsche Accepted
[2/7] libsepol: add ebitmap_init_range [1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-12 Christian Göttsche Accepted
[1/7] libsepol/tests: add ebitmap tests [1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-12 Christian Göttsche Accepted
[v2] libselinux: set errno to EBADF on O_PATH emulation ENOENT failure [v2] libselinux: set errno to EBADF on O_PATH emulation ENOENT failure 1 - - --- 2022-07-06 Christian Göttsche Accepted
libsepol: do not modify policy during write libsepol: do not modify policy during write 1 - - --- 2022-06-30 Christian Göttsche Accepted
libsepol/utils: improve wording libsepol/utils: improve wording 1 - - --- 2022-06-29 Christian Göttsche Accepted
[RFC,1/4] libsepol: refactor ebitmap conversion in link.c [RFC,1/4] libsepol: refactor ebitmap conversion in link.c - - - --- 2022-06-16 Christian Göttsche Accepted
[4/4] watchkey: skip if CONFIG_WATCH_QUEUE not set [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche Superseded
[3/4] filesystem: allow getfilecon(3) to pass test [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche Superseded
[2/4] support perf_event_paranoid=3 [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche Superseded
[1/4] support Dash as default shell [1/4] support Dash as default shell - - - --- 2022-06-14 Christian Göttsche Superseded
checkpolicy: error out if required permission would exceed limit checkpolicy: error out if required permission would exceed limit 1 - - --- 2022-06-10 Christian Göttsche Accepted
libsepol: avoid potential NULL dereference on optional parameter libsepol: avoid potential NULL dereference on optional parameter 1 - - --- 2022-06-10 Christian Göttsche Accepted
[v2,3/4] libselinux: name parameters in context.h Untitled series #648107 - - - --- 2022-06-07 Christian Göttsche Accepted
[v4,4/4] libselinux: check for truncations Untitled series #648106 - - - --- 2022-06-07 Christian Göttsche Accepted
[v2] libselinux: restorecon: avoid printing NULL pointer [v2] libselinux: restorecon: avoid printing NULL pointer 1 - - --- 2022-06-07 Christian Göttsche Accepted
libsepol: fix validation of user declarations in modules libsepol: fix validation of user declarations in modules 1 - - --- 2022-06-07 Christian Göttsche Accepted
semodule: avoid toctou on output module semodule: avoid toctou on output module 1 - - --- 2022-05-20 Christian Göttsche Accepted
libselinux: declare return value of context_str(3) const libselinux: declare return value of context_str(3) const 1 - - --- 2022-05-20 Christian Göttsche Accepted
[4/4] libselinux: declare parameter of security_load_policy(3) const [1/4] libselinux: add man page redirections - - - --- 2022-05-20 Christian Göttsche Accepted
[3/4] libselinux: name parameters in context.h [1/4] libselinux: add man page redirections - - - --- 2022-05-20 Christian Göttsche Accepted
[2/4] libselinux: enclose macro definition in parenthesis [1/4] libselinux: add man page redirections - - - --- 2022-05-20 Christian Göttsche Accepted
python/audit2allow: close file stream on error python/audit2allow: close file stream on error 1 - - --- 2022-05-20 Christian Göttsche Accepted
[v3,4/4] libselinux: check for truncations Untitled series #643600 - - - --- 2022-05-20 Christian Göttsche Accepted
[RFC,v2,4/4] libselinux: check for truncations Untitled series #642403 - - - --- 2022-05-17 Christian Göttsche Accepted
[2/2] libselinux: restorecon: avoid printing NULL pointer [1/2] libselinux: restorecon: add fallback for pre 3.6 Linux - - - --- 2022-05-17 Christian Göttsche Accepted
ci: declare git repository a safe directory ci: declare git repository a safe directory 1 - - --- 2022-05-17 Christian Göttsche Accepted
[RFC,4/4] libselinux: restorecon: pin file to avoid TOCTOU issues [RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon 1 - - --- 2022-05-11 Christian Göttsche Accepted
[RFC,3/4] libselinux: restorecon: forward error if not ENOENT [RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon 1 - - --- 2022-05-11 Christian Göttsche Accepted
[RFC,2/4] libselinux: restorecon: misc tweaks [RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon 1 - - --- 2022-05-11 Christian Göttsche Accepted
libselinux: preserve errno in selinux_log() libselinux: preserve errno in selinux_log() 1 - - --- 2022-05-11 Christian Göttsche Accepted
[RFC,4/4] libselinux: check for truncations [RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read - - - --- 2022-05-10 Christian Göttsche Superseded
[RFC,3/4] libselinux: introduce strlcpy [RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read - - - --- 2022-05-10 Christian Göttsche Accepted
[RFC,2/4] libselinux: add header guard for internal header [RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read - - - --- 2022-05-10 Christian Göttsche Accepted
[RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read [RFC,1/4] libselinux: simplify policy path logic to avoid uninitialized read 1 - - --- 2022-05-10 Christian Göttsche Accepted
libselinux: free memory in error branch libselinux: free memory in error branch 1 - - --- 2022-05-10 Christian Göttsche Accepted
[RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon [RFC] libselinux: emulate O_PATH support in fgetfilecon/fsetfilecon 1 - - --- 2022-05-05 Christian Göttsche Accepted
libselinux/utils: print errno on failure libselinux/utils: print errno on failure 1 - - --- 2022-05-05 Christian Göttsche Accepted
libselinux: update man page of setfilecon(3) family about context parameter libselinux: update man page of setfilecon(3) family about context parameter 1 - - --- 2022-05-05 Christian Göttsche Accepted
« 1 2 3 48 9 »