Show patches with: Archived = No       |   4923 patches
« 1 2 ... 9 10 1149 50 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v1] perf trace: BTF-based enum pretty printing [v1] perf trace: BTF-based enum pretty printing - - - --- 2024-06-10 Howard Chu Handled Elsewhere
landlock: Use bit-fields for storing handled layer access masks landlock: Use bit-fields for storing handled layer access masks - - - --- 2024-06-10 Günther Noack Handled Elsewhere
[v2,4/4] bpf,lsm: Allow editing capabilities in BPF-LSM hooks Introduce user namespace capabilities - - - --- 2024-06-09 Jonathan Calmels pcmoore Rejected
[v2,3/4] capabilities: Add sysctl to mask off userns caps Introduce user namespace capabilities - - - --- 2024-06-09 Jonathan Calmels pcmoore Changes Requested
[v2,2/4] capabilities: Add securebit to restrict userns caps Introduce user namespace capabilities - - - --- 2024-06-09 Jonathan Calmels pcmoore Changes Requested
[v2,1/4] capabilities: Add user namespace capabilities Introduce user namespace capabilities - 1 - --- 2024-06-09 Jonathan Calmels pcmoore Changes Requested
perf trace: Fix syscall untraceable bug perf trace: Fix syscall untraceable bug - - - --- 2024-06-08 Howard Chu Handled Elsewhere
[v2,2/2] cipso: make cipso_v4_skbuff_delattr() fully remove the CIPSO options cipso: make cipso_v4_skbuff_delattr() fully remove the CIPSO options - - - --- 2024-06-07 Ondrej Mosnacek pcmoore Handled Elsewhere
[v2,1/2] cipso: fix total option length computation cipso: make cipso_v4_skbuff_delattr() fully remove the CIPSO options - - - --- 2024-06-07 Ondrej Mosnacek pcmoore Handled Elsewhere
[v3,2/2] KEYS: encrypted: add missing MODULE_DESCRIPTION() KEYS: add missing MODULE_DESCRIPTION() macros - 1 - --- 2024-06-07 Jeff Johnson Handled Elsewhere
[v3,1/2] KEYS: trusted: add missing MODULE_DESCRIPTION() KEYS: add missing MODULE_DESCRIPTION() macros - 1 - --- 2024-06-07 Jeff Johnson Handled Elsewhere
[v3] landlock: Add abstract unix socket connect restriction [v3] landlock: Add abstract unix socket connect restriction - - - --- 2024-06-06 Tahera Fahimi Handled Elsewhere
[v3] landlock: Add abstract unix socket connect restriction [v3] landlock: Add abstract unix socket connect restriction - - - --- 2024-06-06 Tahera Fahimi pcmoore Handled Elsewhere
[v5,2/2] proc: restrict /proc/pid/mem [v5,1/2] proc: pass file instead of inode to proc_mem_open - - - --- 2024-06-05 Adrian Ratiu Handled Elsewhere
[v5,1/2] proc: pass file instead of inode to proc_mem_open [v5,1/2] proc: pass file instead of inode to proc_mem_open - 1 - --- 2024-06-05 Adrian Ratiu Handled Elsewhere
[v1,1/1] treewide: Align match_string() with sysfs_match_string() [v1,1/1] treewide: Align match_string() with sysfs_match_string() 9 3 - --- 2024-06-02 Andy Shevchenko Handled Elsewhere
smack: tcp: ipv4, fix incorrect labeling and unauthorized writes smack: tcp: ipv4, fix incorrect labeling and unauthorized writes - - - --- 2024-06-02 Konstantin Andreev Handled Elsewhere
[6/6] selftests/bpf: Replace memcpy() with __get_task_comm() kernel: Avoid memcpy of task comm - - - --- 2024-06-02 Yafang Shao pcmoore Handled Elsewhere
[5/6] bpftool: Make task comm always be NUL-terminated kernel: Avoid memcpy of task comm - 1 - --- 2024-06-02 Yafang Shao pcmoore Handled Elsewhere
[4/6] security: Replace memcpy() with __get_task_comm() kernel: Avoid memcpy of task comm 1 - - --- 2024-06-02 Yafang Shao pcmoore Handled Elsewhere
[3/6] auditsc: Replace memcpy() with __get_task_comm() kernel: Avoid memcpy of task comm 1 - - --- 2024-06-02 Yafang Shao pcmoore Handled Elsewhere
[2/6] tracing: Replace memcpy() with __get_task_comm() kernel: Avoid memcpy of task comm - - - --- 2024-06-02 Yafang Shao pcmoore Handled Elsewhere
[1/6] fs/exec: Drop task_lock() inside __get_task_comm() kernel: Avoid memcpy of task comm - - - --- 2024-06-02 Yafang Shao pcmoore Handled Elsewhere
[GIT,PULL] Landlock fix for v6.10-rc2 [GIT,PULL] Landlock fix for v6.10-rc2 - - - --- 2024-05-31 Mickaël Salaün Handled Elsewhere
[RFC,v2,8/8] clavis: Introduce new LSM called clavis Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[RFC,v2,7/8] clavis: Introduce a new key type called clavis_key_acl Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[RFC,v2,6/8] keys: Add ability to track intended usage of the public key Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[RFC,v2,5/8] keys: Add new verification type (VERIFYING_CLAVIS_SIGNATURE) Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[RFC,v2,4/8] clavis: Prevent clavis boot param from changing during kexec Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[RFC,v2,3/8] efi: Make clavis boot param persist across kexec Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[RFC,v2,2/8] clavis: Introduce a new system keyring called clavis Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[RFC,v2,1/8] certs: Introduce ability to link to a system key Clavis LSM - - - --- 2024-05-31 Eric Snowberg pcmoore Superseded
[v2] KEYS: trusted: add missing MODULE_DESCRIPTION() [v2] KEYS: trusted: add missing MODULE_DESCRIPTION() - - - --- 2024-05-30 Jeff Johnson pcmoore Superseded
apparmor: test: add MODULE_DESCRIPTION() apparmor: test: add MODULE_DESCRIPTION() 1 - - --- 2024-05-30 Jeff Johnson Handled Elsewhere
KEYS: trusted: add MODULE_DESCRIPTION() KEYS: trusted: add MODULE_DESCRIPTION() - - - --- 2024-05-30 Jeff Johnson Changes Requested
tpm: Remove illict WARN's from tpm2-sessions.c tpm: Remove illict WARN's from tpm2-sessions.c - - - --- 2024-05-29 Jarkko Sakkinen Handled Elsewhere
KEYS: trusted: Change -EINVAL to -E2BIG KEYS: trusted: Change -EINVAL to -E2BIG - 1 - --- 2024-05-29 Jarkko Sakkinen Handled Elsewhere
[v7,3/5] crypto: tpm2_key: Introduce a TPM2 key type Untitled series #856714 - - - --- 2024-05-28 Jarkko Sakkinen Handled Elsewhere
[v7,2/5] KEYS: trusted: Change -EINVAL to -E2BIG Untitled series #856714 - 1 - --- 2024-05-28 Jarkko Sakkinen Handled Elsewhere
[v6,4/6] crypto: tpm2_key: Introduce a TPM2 key type Untitled series #856357 - - - --- 2024-05-28 Jarkko Sakkinen Handled Elsewhere
[v6,3/6] KEYS: trusted: Change -EINVAL to -E2BIG Untitled series #856357 - - - --- 2024-05-28 Jarkko Sakkinen Handled Elsewhere
tpm: Open code tpm_buf_parameters() tpm: Open code tpm_buf_parameters() - - - --- 2024-05-25 Jarkko Sakkinen Handled Elsewhere
KEYS: trusted_tpm2: Only check options->keyhandle for ASN.1 KEYS: trusted_tpm2: Only check options->keyhandle for ASN.1 - - - --- 2024-05-25 Jarkko Sakkinen Handled Elsewhere
[v19,20/20] MAINTAINERS: ipe: add ipe maintainer information Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,19/20] Documentation: add ipe documentation Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,18/20] ipe: kunit test for parser Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,17/20] scripts: add boot policy generation program Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,16/20] ipe: enable support for fs-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,15/20] fsverity: expose verified fsverity built-in signatures to LSMs Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,14/20] security: add security_inode_setintegrity() hook Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,13/20] ipe: add support for dm-verity as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,12/20] dm verity: expose root hash digest and signature data to LSMs Integrity Policy Enforcement LSM (IPE) - 1 - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,11/20] block,lsm: add LSM blob and new LSM hooks for block device Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,10/20] ipe: add permissive toggle Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,09/20] uapi|audit|ipe: add ipe auditing support Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,08/20] ipe: add userspace interface Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,07/20] security: add new securityfs delete function Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,06/20] ipe: introduce 'boot_verified' as a trust provider Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,05/20] initramfs|security: Add a security hook to do_populate_rootfs() Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,04/20] ipe: add LSM hooks on execution and kernel read Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,03/20] ipe: add evaluation loop Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,02/20] ipe: add policy parser Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v19,01/20] security: add ipe lsm Integrity Policy Enforcement LSM (IPE) - - - --- 2024-05-24 Fan Wu pcmoore Changes Requested
[v4,2/2] proc: restrict /proc/pid/mem [v4,1/2] proc: pass file instead of inode to proc_mem_open - - - --- 2024-05-24 Adrian Ratiu Handled Elsewhere
[v4,1/2] proc: pass file instead of inode to proc_mem_open [v4,1/2] proc: pass file instead of inode to proc_mem_open - 1 - --- 2024-05-24 Adrian Ratiu Handled Elsewhere
[RFC,v2,12/12] samples/landlock: Support socket protocol restrictions Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,11/12] selftests/landlock: Add mini.socket_invalid_type to socket tests Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,10/12] selftests/landlock: Add mini.socket_overflow to socket tests Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,09/12] selftests/landlock: Add mini.ruleset_with_unknown_access to socket tests Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,08/12] selftests/landlock: Add tcp_layers.ruleset_overlap to socket tests Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,07/12] selftests/landlock: Add protocol.inval to socket tests Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,06/12] selftests/landlock: Add protocol.rule_with_unhandled_access to socket tests Socket type control for Landlock - 1 - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,05/12] selftests/landlock: Add protocol.rule_with_unknown_access to socket tests Socket type control for Landlock - 1 - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,04/12] selftests/landlock: Add protocol.socket_access_rights to socket tests Socket type control for Landlock - 1 - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,03/12] selftests/landlock: Add protocol.create to socket tests Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,02/12] landlock: Add hook on socket creation Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[RFC,v2,01/12] landlock: Support socket access-control Socket type control for Landlock - - - --- 2024-05-24 Mikhail Ivanov Handled Elsewhere
[v5,4/5] tpm: tpm2_key: Extend parser to TPM_LoadableKey Untitled series #855490 - - - --- 2024-05-23 Jarkko Sakkinen Handled Elsewhere
[v5,3/5] KEYS: trusted: Move tpm2_key_decode() to the TPM driver Untitled series #855490 - - - --- 2024-05-23 Jarkko Sakkinen Handled Elsewhere
[v5,2/5] KEYS: trusted: Change -EINVAL to -E2BIG Untitled series #855490 - - - --- 2024-05-23 Jarkko Sakkinen Handled Elsewhere
[v3] KEYS: trusted: Use ASN.1 encoded OID [v3] KEYS: trusted: Use ASN.1 encoded OID - 1 - --- 2024-05-23 Jarkko Sakkinen Handled Elsewhere
[v2] KEYS: trusted: Use ASN.1 encoded OID [v2] KEYS: trusted: Use ASN.1 encoded OID - 1 - --- 2024-05-23 Jarkko Sakkinen Handled Elsewhere
[RESEND] KEYS: trusted: Use ASN.1 encoded OID [RESEND] KEYS: trusted: Use ASN.1 encoded OID - - - --- 2024-05-23 Jarkko Sakkinen Handled Elsewhere
KEYS: trusted: Use ASN.1 encoded OID KEYS: trusted: Use ASN.1 encoded OID - - - --- 2024-05-23 Jarkko Sakkinen Handled Elsewhere
[v5,68/68] selftests/x86: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - 2 - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,67/68] selftests/x86: Append to CFLAGS in Makefile Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,66/68] selftests/vDSO: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,65/68] selftests/vDSO: Append to CFLAGS in Makefile Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,64/68] selftests/user_events: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - 2 - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,63/68] selftests/uevent: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,62/68] selftests/tmpfs: Drop duplicate -D_GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,61/68] selftests/timens: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,60/68] selftests/thermal: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,59/68] selftests/syscall_user_dispatch: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,58/68] selftests/splice: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,57/68] selftests/sgx: Compile with -D_GNU_SOURCE Define _GNU_SOURCE for sources using - 1 - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,56/68] selftests/sigaltstack: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,55/68] selftests/seccomp: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using 1 2 - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,54/68] selftests/sched: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
[v5,53/68] selftests/safesetid: Drop define _GNU_SOURCE Define _GNU_SOURCE for sources using - - - --- 2024-05-22 Edward Liaw Handled Elsewhere
« 1 2 ... 9 10 1149 50 »