Show patches with: Archived = No       |   9273 patches
« 1 2 ... 19 20 2192 93 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
selinux: remove runtime disable message in the install_policy.sh script selinux: remove runtime disable message in the install_policy.sh script - - - --- 2022-09-20 Paul Moore pcmoore Accepted
scripts/selinux: use "grep -E" instead of "egrep" scripts/selinux: use "grep -E" instead of "egrep" - - - --- 2022-09-20 Greg Kroah-Hartman pcmoore Accepted
[v2,RFC] LSM: lsm_self_attr syscall for LSM self attributes [v2,RFC] LSM: lsm_self_attr syscall for LSM self attributes - - - --- 2022-09-19 Casey Schaufler pcmoore Handled Elsewhere
secilc/doc: classmap is also allowed in permissionx secilc/doc: classmap is also allowed in permissionx 1 - - --- 2022-09-19 Dominick Grift Accepted
[userspace] fixfiles: do not cross mounts when traversing directories [userspace] fixfiles: do not cross mounts when traversing directories - - - --- 2022-09-19 Ondrej Mosnacek Rejected
[v3] fixfiles: Unmount temporary bind mounts on SIGINT [v3] fixfiles: Unmount temporary bind mounts on SIGINT - - - --- 2022-09-16 Petr Lautrbach Superseded
[v2] fixfiles: Unmount temporary bind mounts on SIGINT [v2] fixfiles: Unmount temporary bind mounts on SIGINT - - - --- 2022-09-15 Petr Lautrbach Superseded
fixfiles: Unmount temporary bind mounts on SIGINT fixfiles: Unmount temporary bind mounts on SIGINT - - - --- 2022-09-15 Petr Lautrbach Superseded
python: Hide error message when modifying non-local fcontext python: Hide error message when modifying non-local fcontext - - - --- 2022-09-14 Vit Mojzis Rejected
[RFC] LSM: Specify which LSM to display [RFC] LSM: Specify which LSM to display - - - --- 2022-09-14 Casey Schaufler pcmoore Handled Elsewhere
[linux-next] selinux/hooks: remove the unneeded result variable [linux-next] selinux/hooks: remove the unneeded result variable - - - --- 2022-09-12 CGEL pcmoore Accepted
python/chcat: Don't fail on missing translation files python/chcat: Don't fail on missing translation files - - - --- 2022-09-12 Johannes Segitz Rejected
[RFC] LSM: lsm_self_attr system call to get security module attributes [RFC] LSM: lsm_self_attr system call to get security module attributes - - - --- 2022-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v5.19.y,3/3] Smack: Provide read control for io_uring_cmd Backport the io_uring/LSM CMD passthrough controls 1 - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[v5.19.y,2/3] selinux: implement the security_uring_cmd() LSM hook Backport the io_uring/LSM CMD passthrough controls - - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[v5.19.y,1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op Backport the io_uring/LSM CMD passthrough controls - - - --- 2022-09-06 Paul Moore pcmoore Handled Elsewhere
[testsuite] tests/Makefile: add missing condition for userfaultfd test [testsuite] tests/Makefile: add missing condition for userfaultfd test - - - --- 2022-09-02 Ondrej Mosnacek omos Accepted
[2/2] fs: don't call capable() prematurely in simple_xattr_list() fs: fix capable() call in simple_xattr_list() - - - --- 2022-09-01 Ondrej Mosnacek pcmoore Handled Elsewhere
[1/2] fs: convert simple_xattrs to RCU list fs: fix capable() call in simple_xattr_list() - - - --- 2022-09-01 Ondrej Mosnacek pcmoore Handled Elsewhere
[v5] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing [v5] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing 2 1 1 --- 2022-09-01 David Howells pcmoore Superseded
[v2] tests/secretmem: add test [v2] tests/secretmem: add test - - - --- 2022-08-31 Christian Göttsche omos Superseded
tests/secretmem: add test tests/secretmem: add test - - - --- 2022-08-31 Christian Göttsche Superseded
libselinux: support objname in compute_create libselinux: support objname in compute_create 1 - - --- 2022-08-30 Christian Göttsche Accepted
selinux: declare read-only parameters const selinux: declare read-only parameters const - - - --- 2022-08-30 Christian Göttsche pcmoore Accepted
selinux: use int arrays for boolean values selinux: use int arrays for boolean values - - - --- 2022-08-30 Christian Göttsche pcmoore Accepted
[linux-next] selinux: remove redundant variables rc [linux-next] selinux: remove redundant variables rc - - - --- 2022-08-30 CGEL In Next
[linux-next] selinux: Remove the unneeded result variable [linux-next] selinux: Remove the unneeded result variable - - - --- 2022-08-30 CGEL Accepted
[GIT,PULL] LSM fixes for v6.0 (#1) [GIT,PULL] LSM fixes for v6.0 (#1) - - - --- 2022-08-29 Paul Moore Handled Elsewhere
checkpolicy: avoid passing NULL pointer to memset() checkpolicy: avoid passing NULL pointer to memset() 1 - - --- 2022-08-29 Juraj Marcin Accepted
[3/3] secilc/docs: disable pandoc default css for html docs [1/3] secilc/docs: selinuxuser actually takes a string not identifier 1 - - --- 2022-08-28 bauen1 Accepted
[2/3] secilc/docs: fix syntax highlighting [1/3] secilc/docs: selinuxuser actually takes a string not identifier 1 - - --- 2022-08-28 bauen1 Accepted
[testsuite] tests: remove more stray flag/temporary files with 'make clean' [testsuite] tests: remove more stray flag/temporary files with 'make clean' - - - --- 2022-08-26 Ondrej Mosnacek omos Accepted
libsepol: fix missing double quotes in typetransition CIL rule libsepol: fix missing double quotes in typetransition CIL rule - - - --- 2022-08-25 Juraj Marcin Accepted
tests/filesystem/xfs: use a 300M xfs filesystem image tests/filesystem/xfs: use a 300M xfs filesystem image - - - --- 2022-08-24 Paul Moore omos Accepted
[testsuite,2/2] test_userfaultfd.te: adapt to upcoming Fedora policy changes Prepare userfaultfd policy for Fedora policy changes - 1 - --- 2022-08-24 Ondrej Mosnacek omos Accepted
[testsuite,1/2] policy: remove CIL workarounds for missing anon_inode class Prepare userfaultfd policy for Fedora policy changes - - - --- 2022-08-24 Ondrej Mosnacek omos Accepted
[v4] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing [v4] vfs, security: Fix automount superblock LSM init problem, preventing NFS sb sharing - - 1 --- 2022-08-24 David Howells pcmoore Superseded
[3/3] /dev/null: add IORING_OP_URING_CMD support LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[2/3] selinux: implement the security_uring_cmd() LSM hook LSM hooks for IORING_OP_URING_CMD - - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[1/3] lsm,io_uring: add LSM hooks for the new uring_cmd file op LSM hooks for IORING_OP_URING_CMD 1 - - --- 2022-08-22 Paul Moore pcmoore Handled Elsewhere
[v1] selinux/ss/services.c: check the return value of audit_log_start() in security_sid_mls_copy() [v1] selinux/ss/services.c: check the return value of audit_log_start() in security_sid_mls_copy() - - - --- 2022-08-20 Li Zhong pcmoore Rejected
[selinux-testsuite] tests/binder: remove stray flag files with 'make clean' [selinux-testsuite] tests/binder: remove stray flag files with 'make clean' - - - --- 2022-08-16 Paul Moore omos Accepted
[v5,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 3 - - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
[v5,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 2 - --- 2022-08-15 Frederick Lawler pcmoore Handled Elsewhere
tests/sctp: reenable the SCTP ASCONF tests tests/sctp: reenable the SCTP ASCONF tests - - - --- 2022-08-09 Paul Moore omos Under Review
tests/sctp: allow both ENOSPC and EINPROGRESS for CIPSO tag space errors tests/sctp: allow both ENOSPC and EINPROGRESS for CIPSO tag space errors - - - --- 2022-08-09 Paul Moore omos Accepted
selinux: SCTP fixes, including ASCONF selinux: SCTP fixes, including ASCONF - - - --- 2022-08-09 Paul Moore pcmoore Changes Requested
[4/4] Ignore egg-info directories and clean them [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[3/4] scripts: ignore Flake8 tag E275 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/4] scripts/ci: use F36 image instead of F34 [1/4] ci: bump versions in GitHub Actions - - - --- 2022-08-08 Christian Göttsche Accepted
[2/2] restorecond: use strict function prototype for definition [1/2] checkpolicy: use strict function prototype for definitions - 1 - --- 2022-08-08 Christian Göttsche Accepted
[1/2] checkpolicy: use strict function prototype for definitions [1/2] checkpolicy: use strict function prototype for definitions 1 1 - --- 2022-08-08 Christian Göttsche Accepted
libselinux: avoid newline in avc message libselinux: avoid newline in avc message 1 - - --- 2022-08-08 Christian Göttsche Accepted
selinux: add a new warn_on_audited debug flag to selinuxfs selinux: add a new warn_on_audited debug flag to selinuxfs - - - --- 2022-08-08 Ondrej Mosnacek pcmoore Rejected
[v3] nfs: Fix automount superblock LSM init problem, preventing sb sharing [v3] nfs: Fix automount superblock LSM init problem, preventing sb sharing - 1 1 --- 2022-08-05 David Howells pcmoore Superseded
[v2] nfs: Fix automount superblock LSM init problem, preventing sb sharing [v2] nfs: Fix automount superblock LSM init problem, preventing sb sharing - - - --- 2022-08-04 David Howells Superseded
nfs: Fix automount superblock LSM init problem, preventing sb sharing nfs: Fix automount superblock LSM init problem, preventing sb sharing - - - --- 2022-08-04 David Howells Superseded
[GIT,PULL] SELinux patches for v6.0 [GIT,PULL] SELinux patches for v6.0 - - - --- 2022-08-01 Paul Moore pcmoore Accepted
[v4,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 3 - - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[v4,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 2 - --- 2022-08-01 Frederick Lawler pcmoore Handled Elsewhere
[2/2] sepolgen: Support named xperms [1/2] sepolgen: Update refparser to handle xperm - - - --- 2022-08-01 chris.lindee@gmail.com Changes Requested
[1/2] sepolgen: Update refparser to handle xperm [1/2] sepolgen: Update refparser to handle xperm - - - --- 2022-08-01 chris.lindee@gmail.com Changes Requested
[testsuite,24/24] ci: add sysadm_t to the test matrix Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,23/24] tests/vsock_socket: use modprobe to check vsock availability Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,22/24] policy: give sysadm_t perms needed to run quotacheck(8) Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,21/24] tests/overlay: don't hard-code SELinux user of the caller Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,20/24] tests/binder: check only the type part of the context Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,19/24] ci: check for unconfined_t AVCs Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,18/24] policy: don't audit testsuite programs searching the caller's keys Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,17/24] test_general.te: generalize the dontaudit rule Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,16/24] policy: remove last hardcoded references to unconfined_t Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,15/24] tests/*filesystem: remove weird uses of unconfined_t Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,14/24] tests/nnp_nosuid: avoid hardcoding unconfined_t in the policy Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,13/24] test_filesystem.te: remove suspicious rules Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,12/24] test_filesystem.te: remove redundant dontaudit rules Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,11/24] test_general.te: move sysadm-related rules into an optional block Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,10/24] policy: substitute userdom_sysadm_entry_spec_domtrans_to() Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,09/24] policy: move miscfiles_domain_entry_test_files() to general policy Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,08/24] policy: move userdom_sysadm_entry_spec_domtrans_to() to general policy Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,07/24] policy: move unconfined_t-related dontaudit rule to where it fits better Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,06/24] test_policy.if: remove weird rule from testsuite_domain_type_minimal() Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,03/24] test_global.te: don't add domains to system_r Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,02/24] test_global.te: remove unused role require Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[testsuite,01/24] keys: change test_newcon_key_t to be just an object context Clean up testsuite policy and support running as sysadm_t - - - --- 2022-07-29 Ondrej Mosnacek omos Superseded
[v3,4/4] selinux: Implement userns_create hook Introduce security_create_user_ns() - - - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v3,3/4] selftests/bpf: Add tests verifying bpf lsm userns_create hook Introduce security_create_user_ns() 1 - - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v3,2/4] bpf-lsm: Make bpf_lsm_userns_create() sleepable Introduce security_create_user_ns() 1 - - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v3,1/4] security, lsm: Introduce security_create_user_ns() Introduce security_create_user_ns() - 1 - --- 2022-07-21 Frederick Lawler pcmoore Superseded
[v2,5/5] libsepol: more strict validation [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,4/5] libsepol: rename parameter name [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,3/5] libsepol: operate on const pointers during validation [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,2/5] libsepol: support const avtab_t pointer in avtab_map() [v2,1/5] libsepol: rename validate_policydb to policydb_validate - - - --- 2022-07-21 Christian Göttsche Accepted
[v2,1/5] libsepol: rename validate_policydb to policydb_validate [v2,1/5] libsepol: rename validate_policydb to policydb_validate 1 - - --- 2022-07-21 Christian Göttsche Accepted
[v3,1/8] libsepol: refactor ebitmap conversion in link.c [v3,1/8] libsepol: refactor ebitmap conversion in link.c 1 - - --- 2022-07-21 Christian Göttsche Accepted
[v2,7/7] libsepol: skip superfluous memset calls in ebitmap operations [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
[v2,6/7] libsepol: optimize ebitmap_xor [v2,1/7] libsepol/tests: add ebitmap tests - - - --- 2022-07-19 Christian Göttsche Accepted
« 1 2 ... 19 20 2192 93 »