Show patches with: State = Action Required       |   12035 patches
« 1 2 ... 113 114 115120 121 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[4/6] efi: Get the secure boot status [ver #2] - - - --- 2016-11-23 David Howells New
[3/6] efi: Add SHIM and image security database GUID definitions [ver #2] - 1 - --- 2016-11-23 David Howells New
[2/6] arm/efi: Allow invocation of arbitrary runtime services [ver #2] - - - --- 2016-11-23 David Howells New
[1/6] x86/efi: Allow invocation of arbitrary runtime services [ver #2] - - - --- 2016-11-23 David Howells New
[v5,9/9] selinux: Add a cache for quicker retreival of PKey SIDs - - - --- 2016-11-22 Daniel Jurgens New
[v5,8/9] selinux: Add IB Port SMP access vector - - - --- 2016-11-22 Daniel Jurgens New
[v5,7/9] selinux: Implement Infiniband PKey "Access" access vector - - - --- 2016-11-22 Daniel Jurgens New
[v5,6/9] selinux: Allocate and free infiniband security hooks - 1 - --- 2016-11-22 Daniel Jurgens New
[v5,5/9] selinux: Create policydb version for Infiniband support - 1 - --- 2016-11-22 Daniel Jurgens New
[v5,4/9] IB/core: Enforce security on management datagrams 1 - - --- 2016-11-22 Daniel Jurgens New
[v5,3/9] selinux lsm IB/core: Implement LSM notification system 1 - - --- 2016-11-22 Daniel Jurgens New
[v5,2/9] IB/core: Enforce PKey security on QPs 1 - - --- 2016-11-22 Daniel Jurgens New
[v5,1/9] IB/core: IB cache enhancements to support Infiniband security - 2 - --- 2016-11-22 Daniel Jurgens New
[v6,3/9] tpm: replace dynamically allocated bios_dir with a static array - - - --- 2016-11-22 Jason Gunthorpe New
[4/4] KEYS: Print insert-sys-cert information to stdout instead of stderr - - - --- 2016-11-22 Mehmet Kayaalp New
[3/4] KEYS: Support for inserting a certificate into x86 bzImage - - - --- 2016-11-22 Mehmet Kayaalp New
[2/4] KEYS: Add ELF class-independent certificate insertion support - - - --- 2016-11-22 Mehmet Kayaalp New
[1/4] KEYS: Insert incompressible bytes to reserve space in bzImage - - - --- 2016-11-22 Mehmet Kayaalp New
[6/6] efi: Add EFI_SECURE_BOOT bit - - - --- 2016-11-22 David Howells New
[5/6] efi: Disable secure boot if shim is in insecure mode - - - --- 2016-11-22 David Howells New
[4/6] efi: Get the secure boot status - - - --- 2016-11-22 David Howells New
[3/6] efi: Add SHIM and image security database GUID definitions - 1 - --- 2016-11-22 David Howells New
[2/6] arm/efi: Allow invocation of arbitrary runtime services - - - --- 2016-11-22 David Howells New
[1/6] x86/efi: Allow invocation of arbitrary runtime services - - - --- 2016-11-22 David Howells New
tpm: Do not print an error message when doing TPM auto startup - 1 - --- 2016-11-21 Jason Gunthorpe New
tpm: use test_bit() to check TPM2 flag in eventlog and sysfs code - - - --- 2016-11-21 Nayna New
[GIT,PULL,SECURITY] Apparmor bugfix - - - --- 2016-11-21 James Morris New
[2/2] tpm: Fix error code handling after tpm_bios_log_setup - - 1 --- 2016-11-19 Jason Gunthorpe New
apparmor: fix changehat not finding hat after policy replacement - - - --- 2016-11-18 John Johansen New
[v9,11/11] KEYS: Keyring restrict method with chaining - - - --- 2016-11-16 Mat Martineau New
[v9,10/11] KEYS: Consistent ordering for __key_link_begin and restrict check - - - --- 2016-11-16 Mat Martineau New
[v9,09/11] KEYS: Restrict key linkage using a specific keychain - - - --- 2016-11-16 Mat Martineau New
[v9,08/11] KEYS: Add a lookup_restrict function for the asymmetric key type - - - --- 2016-11-16 Mat Martineau New
[v9,07/11] KEYS: Parse keyring payload for restrict options - - - --- 2016-11-16 Mat Martineau New
[v9,06/11] KEYS: Add an optional lookup_restrict hook to key_type - - - --- 2016-11-16 Mat Martineau New
[v9,05/11] KEYS: Use structure to capture key restriction function and data - - - --- 2016-11-16 Mat Martineau New
[v9,04/11] KEYS: Add a key restriction struct - - - --- 2016-11-16 Mat Martineau New
[v9,03/11] KEYS: Split role of the keyring pointer for keyring restrict functions - - - --- 2016-11-16 Mat Martineau New
[v9,02/11] KEYS: Use a typedef for restrict_link function pointers - - - --- 2016-11-16 Mat Martineau New
[v9,01/11] KEYS: Add a rwsem to each key type - - - --- 2016-11-16 Mat Martineau New
[16/16] x86: Restrict MSR access when the kernel is locked down - - - --- 2016-11-16 David Howells New
[15/16] acpi: Ignore acpi_rsdp kernel param when the kernel has been locked down - - - --- 2016-11-16 David Howells New
[14/16] Restrict /dev/mem and /dev/kmem when the kernel is locked down - - - --- 2016-11-16 David Howells New
[13/16] asus-wmi: Restrict debugfs interface when the kernel is locked down - - - --- 2016-11-16 David Howells New
[12/16] ACPI: Limit access to custom_method when the kernel is locked down - - - --- 2016-11-16 David Howells New
[11/16] x86: Lock down IO port access when the kernel is locked down - - - --- 2016-11-16 David Howells New
[10/16] PCI: Lock down BAR access when the kernel is locked down - - - --- 2016-11-16 David Howells New
[09/16] hibernate: Disable when the kernel is locked down - - - --- 2016-11-16 David Howells New
[08/16] Copy secure_boot flag in boot params across kexec reboot - - - --- 2016-11-16 David Howells New
[07/16] kexec: Disable at runtime if the kernel is locked down - - - --- 2016-11-16 David Howells New
[06/16] Add a sysrq option to exit secure boot mode - - - --- 2016-11-16 David Howells New
[05/16] efi: Add EFI_SECURE_BOOT bit - - - --- 2016-11-16 David Howells New
[04/16] efi: Lock down the kernel if booted in secure boot mode - - - --- 2016-11-16 David Howells New
[03/16] efi: Disable secure boot if shim is in insecure mode - - - --- 2016-11-16 David Howells New
[02/16] efi: Get the secure boot status - - - --- 2016-11-16 David Howells New
[01/16] Add the ability to lock down access to the running kernel image - - - --- 2016-11-16 David Howells New
[9/9] MODSIGN: Allow the "db" UEFI variable to be suppressed - - - --- 2016-11-16 David Howells New
[8/9] MODSIGN: Import certificates from UEFI Secure Boot - - - --- 2016-11-16 David Howells New
[7/9] efi: Add an EFI signature blob parser - - - --- 2016-11-16 David Howells New
[6/9] efi: Add EFI signature data types - 1 - --- 2016-11-16 David Howells New
[5/9] efi: Add SHIM and image security database GUID definitions - 1 - --- 2016-11-16 David Howells New
[4/9] KEYS: Allow unrestricted boot-time addition of keys to secondary keyring - - - --- 2016-11-16 David Howells New
[3/9] PKCS#7: Handle blacklisted certificates - - - --- 2016-11-16 David Howells New
[2/9] X.509: Allow X.509 certs to be blacklisted - - - --- 2016-11-16 David Howells New
[1/9] KEYS: Add a system blacklist keyring - - - --- 2016-11-16 David Howells New
tpm: drop chip->is_open and chip->duration_adjusted - - - --- 2016-11-14 Jarkko Sakkinen New
Smack: Remove unnecessary smack_known_invalid - - - --- 2016-11-14 Casey Schaufler New
SELinux: Use GFP_KERNEL for selinux_parse_opts_str(). - - - --- 2016-11-14 Tetsuo Handa New
Smack: Use GFP_KERNEL for smk_netlbl_mls(). - - - --- 2016-11-14 Tetsuo Handa New
Smack: Use GFP_KERNEL for smack_parse_opts_str(). 1 - - --- 2016-11-14 Tetsuo Handa New
AppArmor: Use GFP_KERNEL for __aa_kvmalloc(). 1 - - --- 2016-11-14 Tetsuo Handa New
[v6,9/9] tpm: cleanup of printk error messages - 1 1 --- 2016-11-14 Nayna New
[v6,8/9] tpm: replace of_find_node_by_name() with dev of_node property - 1 - --- 2016-11-14 Nayna New
[v6,7/9] tpm: redefine read_log() to handle ACPI/OF at runtime - 2 1 --- 2016-11-14 Nayna New
[v6,6/9] tpm: fix the missing .owner in tpm_bios_measurements_ops - 1 1 --- 2016-11-14 Nayna New
[v6,5/9] tpm: have event log use the tpm_chip - 1 1 --- 2016-11-14 Nayna New
[v6,4/9] tpm: drop tpm1_chip_register(/unregister) - 2 1 --- 2016-11-14 Nayna New
[v6,3/9] tpm: replace dynamically allocated bios_dir with a static array - - 1 --- 2016-11-14 Nayna New
[v6,2/9] tpm: replace symbolic permission with octal for securityfs files - 2 1 --- 2016-11-14 Nayna New
[v6,1/9] tpm: define a generic open() method for ascii & bios measurements - 2 1 --- 2016-11-14 Nayna New
[3.16,138/346] x86/syscalls/64: Add compat_sys_keyctl for 32-bit userspace - - 1 --- 2016-11-14 Ben Hutchings New
[3.16,119/346] KEYS: 64-bit MIPS needs to use compat_sys_keyctl for 32-bit userspace - - - --- 2016-11-14 Ben Hutchings New
[3.2,051/152] x86/syscalls/64: Add compat_sys_keyctl for 32-bit userspace - - 1 --- 2016-11-14 Ben Hutchings New
[3.2,044/152] KEYS: 64-bit MIPS needs to use compat_sys_keyctl for 32-bit userspace - - - --- 2016-11-14 Ben Hutchings New
Security: selinux - Improvement in code readability when - - - --- 2016-11-11 shailendra.v@samsung.com New
[PATCHC,v7,10/10] ima: platform-independent hash value - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,09/10] ima: define a canonical binary_runtime_measurements list format - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,08/10] ima: support restoring multiple template formats - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,07/10] ima: store the builtin/custom template definitions in a list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,06/10] ima: on soft reboot, save the measurement list 1 - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,05/10] powerpc: ima: Send the kexec buffer to the next kernel 1 - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,04/10] ima: maintain memory size needed for serializing the measurement list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,03/10] ima: permit duplicate measurement list entries - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,02/10] ima: on soft reboot, restore the measurement list - - - --- 2016-11-10 Mimi Zohar New
[PATCHC,v7,01/10] powerpc: ima: Get the kexec buffer passed by the previous kernel 1 - - --- 2016-11-10 Mimi Zohar New
smack: parse mnt opts after privileges check 1 - - --- 2016-11-10 Himanshu Shukla New
SMACK: Do not apply star label in smack_setprocattr hook 1 - - --- 2016-11-10 Himanshu Shukla New
SMACK: Fix the memory leak in smack_cred_prepare() hook 1 - - --- 2016-11-10 Himanshu Shukla New
[v4,9/9] selinux: Add a cache for quicker retreival of PKey SIDs - - - --- 2016-11-08 Daniel Jurgens New
[v4,8/9] selinux: Add IB Port SMP access vector - - - --- 2016-11-08 Daniel Jurgens New
« 1 2 ... 113 114 115120 121 »