Show patches with: State = Action Required       |   12036 patches
« 1 2 ... 22 23 24120 121 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v3,3/3] NFSv4 account for selinux security context when deciding to share superblock [v3,1/3,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia New
[v3,2/3,NFS] cleanup: remove unneeded null check in nfs_fill_super() [v3,1/3,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia New
[v3,1/3,security] Add new hook to compare new mount to an existing mount [v3,1/3,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia New
[v3] ARM: Implement SLS mitigation [v3] ARM: Implement SLS mitigation - 1 - --- 2021-02-19 Jian Cai New
[v3,2/2] NFSv4 account for selinux security context when deciding to share superblock [v3,1/2,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia New
[v3,1/2,security] Add new hook to compare new mount to an existing mount [v3,1/2,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-19 Olga Kornievskaia New
certs: Add support for using elliptic curve keys for signing modules certs: Add support for using elliptic curve keys for signing modules - 1 1 --- 2021-02-19 Stefan Berger New
ima: Replacing deprecated strlcpy with strscpy ima: Replacing deprecated strlcpy with strscpy - - - --- 2021-02-19 Palash Oswal New
[v2,5/5] ima: enable loading of build time generated key on .ima keyring ima: kernel build support for loading the kernel module signing key - 2 - --- 2021-02-18 Nayna Jain New
[v2,4/5] keys: define build time generated ephemeral kernel CA key ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-18 Nayna Jain New
[v2,3/5] ima: update kernel module signing process during build ima: kernel build support for loading the kernel module signing key - 1 - --- 2021-02-18 Nayna Jain New
[v2,2/5] keys: generate self-signed module signing key using CSR ima: kernel build support for loading the kernel module signing key - 1 - --- 2021-02-18 Nayna Jain New
[v2,1/5] keys: cleanup build time module signing keys ima: kernel build support for loading the kernel module signing key - 1 - --- 2021-02-18 Nayna Jain New
[v2,2/2] NFSv4 account for selinux security context when deciding to share superblock [v2,1/2,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-18 Olga Kornievskaia New
[v2,1/2,security] Add new hook to compare new mount to an existing mount [v2,1/2,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-18 Olga Kornievskaia New
[GIT,PULL] Smack patches for v5.12 [GIT,PULL] Smack patches for v5.12 - - - --- 2021-02-16 Casey Schaufler New
RTIC: selinux: ARM64: Move selinux_state to a separate page RTIC: selinux: ARM64: Move selinux_state to a separate page 1 - - --- 2021-02-16 Preeti Nagar New
[GIT,PULL] SELinux patches for v5.12 [GIT,PULL] SELinux patches for v5.12 - - - --- 2021-02-15 Paul Moore New
[v2,3/3] security: Add LSMs dependencies to CONFIG_LSM Kconfig oldconfig string update - - - --- 2021-02-15 Mickaël Salaün New
[v2,2/3] kconfig: Ask user if string needs to be changed when dependency changed Kconfig oldconfig string update - - - --- 2021-02-15 Mickaël Salaün New
[v2,1/3] kconfig: Remove duplicate call to sym_get_string_value() Kconfig oldconfig string update - - - --- 2021-02-15 Mickaël Salaün New
[v1,3/3] security: Add LSMs dependencies to CONFIG_LSM Kconfig oldconfig string update - - - --- 2021-02-15 Mickaël Salaün New
[v1,2/3] kconfig: Ask user if string needs to be changed when dependency changed Kconfig oldconfig string update - - - --- 2021-02-15 Mickaël Salaün New
[v1,1/3] kconfig: Remove duplicate call to sym_get_string_value() Kconfig oldconfig string update - - - --- 2021-02-15 Mickaël Salaün New
integrity/ima: Provide Kconfig option for ima-modsig template integrity/ima: Provide Kconfig option for ima-modsig template - - - --- 2021-02-15 Michael Weiß New
[GIT,PULL] tomoyo fixes for v5.12 [GIT,PULL] tomoyo fixes for v5.12 - - - --- 2021-02-15 Tetsuo Handa New
[2/2] NFSv4 account for selinux security context when deciding to share superblock [1/2,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-12 Olga Kornievskaia New
[1/2,security] Add new hook to compare new mount to an existing mount [1/2,security] Add new hook to compare new mount to an existing mount - - - --- 2021-02-12 Olga Kornievskaia New
[v2] ARM: Implement Clang's SLS mitigation [v2] ARM: Implement Clang's SLS mitigation - - - --- 2021-02-12 Jian Cai New
[v3] selinux: measure state and policy capabilities [v3] selinux: measure state and policy capabilities - - - --- 2021-02-12 Lakshmi Ramasubramanian New
ARM: Implement Clang's SLS mitigation ARM: Implement Clang's SLS mitigation - - - --- 2021-02-12 Jian Cai New
[5/5] ima: enable loading of build time generated key to .ima keyring ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[4/5] keys: define build time generated ephemeral kernel CA key ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[3/5] ima: update kernel module signing process during build ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[2/5] keys: generate self-signed module signing key using CSR ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[1/5] keys: cleanup build time module signing keys ima: kernel build support for loading the kernel module signing key - - - --- 2021-02-11 Nayna Jain New
[GIT,PULL] Add EFI_CERT_X509_GUID support for dbx/mokx entries [GIT,PULL] Add EFI_CERT_X509_GUID support for dbx/mokx entries - - - --- 2021-02-10 David Howells New
[GIT,PULL] keys: Collected minor fixes and cleanups [GIT,PULL] keys: Collected minor fixes and cleanups - - - --- 2021-02-10 David Howells New
[no subject] Untitled series #432931 - - - --- 2021-02-10 David Howells New
[v6,5/5] certs: Allow root user to append signed hashes to the blacklist keyring Enable root to update the blacklist keyring - - 1 --- 2021-02-10 Mickaël Salaün New
[v6,4/5] certs: Factor out the blacklist hash creation Enable root to update the blacklist keyring - - - --- 2021-02-10 Mickaël Salaün New
[v6,3/5] certs: Make blacklist_vet_description() more strict Enable root to update the blacklist keyring - 1 - --- 2021-02-10 Mickaël Salaün New
[v6,2/5] certs: Check that builtin blacklist hashes are valid Enable root to update the blacklist keyring - - - --- 2021-02-10 Mickaël Salaün New
[v6,1/5] tools/certs: Add print-cert-tbs-hash.sh Enable root to update the blacklist keyring - 1 - --- 2021-02-10 Mickaël Salaün New
[-next] integrity: Make function integrity_add_key() static [-next] integrity: Make function integrity_add_key() static - 2 - --- 2021-02-10 Wei Yongjun New
[-next] IMA: Make function ima_mok_init() static [-next] IMA: Make function ima_mok_init() static - - - --- 2021-02-10 Wei Yongjun New
[v1] efi: Don't use knowledge about efi_guid_t internals [v1] efi: Don't use knowledge about efi_guid_t internals 1 1 - --- 2021-02-09 Andy Shevchenko New
[2/2] keys: Allow request_key upcalls from a container to be intercepted keys: request_key() interception in containers - - - --- 2021-02-04 David Howells New
[1/2] Add namespace tags that can be used for matching without pinning a ns keys: request_key() interception in containers - - - --- 2021-02-04 David Howells New
[RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU [RESEND,v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-02-04 Stephen Brennan New
[v28,12/12] landlock: Add user and kernel documentation Landlock LSM - 1 - --- 2021-02-02 Mickaël Salaün New
[v28,11/12] samples/landlock: Add a sandbox manager example Landlock LSM - 1 - --- 2021-02-02 Mickaël Salaün New
[v28,09/12] arch: Wire up Landlock syscalls Landlock LSM - - - --- 2021-02-02 Mickaël Salaün New
[v28,08/12] landlock: Add syscall implementations Landlock LSM 1 - - --- 2021-02-02 Mickaël Salaün New
[v28,07/12] landlock: Support filesystem access-control Landlock LSM - - - --- 2021-02-02 Mickaël Salaün New
[v28,06/12] fs,security: Add sb_delete hook Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,05/12] LSM: Infrastructure management of the superblock Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,04/12] landlock: Add ptrace restrictions Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,03/12] landlock: Set up the security framework and manage credentials Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v28,02/12] landlock: Add ruleset and domain management Landlock LSM 1 - - --- 2021-02-02 Mickaël Salaün New
[v28,01/12] landlock: Add object management Landlock LSM 1 1 - --- 2021-02-02 Mickaël Salaün New
[v3,1/1] process_madvise.2: Add process_madvise man page [v3,1/1] process_madvise.2: Add process_madvise man page - 1 - --- 2021-02-02 Suren Baghdasaryan New
[3/3] IMA: add support to measure duplicate buffer for critical data hook support for duplicate measurement of integrity critical data - - - --- 2021-01-30 Tushar Sugandhi New
[2/3] IMA: update functions to read allow_dup policy condition support for duplicate measurement of integrity critical data - - - --- 2021-01-30 Tushar Sugandhi New
[1/3] IMA: add policy condition to measure duplicate critical data support for duplicate measurement of integrity critical data - - - --- 2021-01-30 Tushar Sugandhi New
[v2] selinux: measure state and policy capabilities [v2] selinux: measure state and policy capabilities - - - --- 2021-01-29 Lakshmi Ramasubramanian New
[v2,1/1] process_madvise.2: Add process_madvise man page [v2,1/1] process_madvise.2: Add process_madvise man page - - - --- 2021-01-29 Suren Baghdasaryan New
[v2] smackfs: restrict bytes count in smackfs write functions [v2] smackfs: restrict bytes count in smackfs write functions - - - --- 2021-01-28 Sabyrzhan Tasbolatov New
[v24,25/25] AppArmor: Remove the exclusive flag [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,24/25] LSM: Add /proc attr entry for full LSM context [v24,01/25] LSM: Infrastructure management of the sock security - 1 - --- 2021-01-26 Casey Schaufler New
[v24,23/25] Audit: Add a new record for multiple object LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,22/25] Audit: Add new record for multiple process LSM attributes [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,21/25] audit: add support for non-syscall auxiliary records [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,20/25] LSM: Verify LSM display sanity in binder [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,19/25] NET: Store LSM netlabel data in a lsmblob [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,18/25] LSM: security_secid_to_secctx in netlink netfilter [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,17/25] LSM: Use lsmcontext in security_inode_getsecctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,16/25] LSM: Use lsmcontext in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security 2 1 - --- 2021-01-26 Casey Schaufler New
[v24,15/25] LSM: Ensure the correct LSM context releaser [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler New
[v24,14/25] LSM: Specify which LSM to display [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,13/25] IMA: Change internal interfaces to use lsmblobs [v24,01/25] LSM: Infrastructure management of the sock security 1 2 - --- 2021-01-26 Casey Schaufler New
[v24,12/25] LSM: Use lsmblob in security_cred_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,11/25] LSM: Use lsmblob in security_inode_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,10/25] LSM: Use lsmblob in security_task_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,09/25] LSM: Use lsmblob in security_ipc_getsecid [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,08/25] LSM: Use lsmblob in security_secid_to_secctx [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,07/25] LSM: Use lsmblob in security_secctx_to_secid [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,06/25] LSM: Use lsmblob in security_kernel_act_as [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,05/25] LSM: Use lsmblob in security_audit_rule_match [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
[v24,04/25] IMA: avoid label collisions with stacked LSMs [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,03/25] LSM: provide lsm name and id slot mappings [v24,01/25] LSM: Infrastructure management of the sock security - - - --- 2021-01-26 Casey Schaufler New
[v24,02/25] LSM: Add the lsmblob data structure. [v24,01/25] LSM: Infrastructure management of the sock security 3 - - --- 2021-01-26 Casey Schaufler New
[v24,01/25] LSM: Infrastructure management of the sock security [v24,01/25] LSM: Infrastructure management of the sock security 2 2 - --- 2021-01-26 Casey Schaufler New
smackfs: restrict bytes count in smackfs write functions smackfs: restrict bytes count in smackfs write functions - - - --- 2021-01-24 Sabyrzhan Tasbolatov New
[v5] proc: Allow pid_revalidate() during LOOKUP_RCU [v5] proc: Allow pid_revalidate() during LOOKUP_RCU - - - --- 2021-01-22 Stephen Brennan New
[v5,4/4] integrity: Load mokx variables into the blacklist keyring Add EFI_CERT_X509_GUID support for dbx/mokx entries - - - --- 2021-01-22 Eric Snowberg New
[v5,3/4] certs: Add ability to preload revocation certs Add EFI_CERT_X509_GUID support for dbx/mokx entries 1 - - --- 2021-01-22 Eric Snowberg New
[v5,2/4] certs: Move load_system_certificate_list to a common function Add EFI_CERT_X509_GUID support for dbx/mokx entries 1 - - --- 2021-01-22 Eric Snowberg New
[v5,1/4] certs: Add EFI_CERT_X509_GUID support for dbx entries Add EFI_CERT_X509_GUID support for dbx/mokx entries - 1 - --- 2021-01-22 Eric Snowberg New
[v27,12/12] landlock: Add user and kernel documentation Landlock LSM - 1 - --- 2021-01-21 Mickaël Salaün New
« 1 2 ... 22 23 24120 121 »