Show patches with: Archived = No       |   9273 patches
« 1 2 ... 27 28 2992 93 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v3,08/36] libsepol: use mallocarray wrapper to avoid overflows libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[v3,07/36] libsepol: use logging framework in ebitmap.c libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[v3,06/36] libsepol: use logging framework in conditional.c libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[v3,05/36] libsepol/fuzz: limit element sizes for fuzzing libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[v3,04/36] libsepol: add libfuzz based fuzzer for reading binary policies libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[v3,03/36] libsepol/fuzz: silence secilc-fuzzer libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[v3,02/36] cifuzz: use the default runtime of 600 seconds libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[v3,01/36] cifuzz: enable report-unreproducible-crashes libsepol: add fuzzer for reading binary policies - - - --- 2021-12-09 Christian Göttsche Accepted
[RFC,1/2] security: Remove security_add_mnt_opt() as it's unused [RFC,1/2] security: Remove security_add_mnt_opt() as it's unused - - - --- 2021-12-08 David Howells pcmoore In Next
[V2,7/7] title.md: Clarify example code location Various SELinux Notebook updates - - - --- 2021-12-08 Richard Haines pcmoore Accepted
[V2,6/7] policy_config_files.md: Update snapperd_contexts contents Various SELinux Notebook updates - - - --- 2021-12-08 Richard Haines pcmoore Accepted
[V2,5/7] policy_config_files.md: Update openssh_contexts contents Various SELinux Notebook updates - - - --- 2021-12-08 Richard Haines pcmoore Accepted
[V2,4/7] policy_config_files.md: Update openrc_contexts contents Various SELinux Notebook updates - - - --- 2021-12-08 Richard Haines pcmoore Accepted
[V2,3/7] object_classes_permissions.md: Deprecate lockdown class Various SELinux Notebook updates - - - --- 2021-12-08 Richard Haines pcmoore Accepted
[V2,2/7] object_classes_permissions.md: Correct the context object class entry Various SELinux Notebook updates - - - --- 2021-12-08 Richard Haines pcmoore Accepted
[V2,1/7] notebook: Minor formatting fixes Various SELinux Notebook updates - - - --- 2021-12-08 Richard Haines pcmoore Accepted
security,selinux: remove security_add_mnt_opt() security,selinux: remove security_add_mnt_opt() 1 1 - --- 2021-12-06 Ondrej Mosnacek pcmoore Accepted
[v2] security/selinux: fix potential memleak in error branch [v2] security/selinux: fix potential memleak in error branch - - - --- 2021-12-06 Bernard Zhao pcmoore Changes Requested
[7/7] title.md: Clarify example code location Various SELinux Notebook updates - - - --- 2021-12-03 Richard Haines pcmoore Superseded
[6/7] policy_config_files.md: Update snapperd_contexts contents Various SELinux Notebook updates - - - --- 2021-12-03 Richard Haines pcmoore Superseded
[5/7] policy_config_files.md: Update openssh_contexts contents Various SELinux Notebook updates - - - --- 2021-12-03 Richard Haines pcmoore Superseded
[4/7] policy_config_files.md: Update openrc_contexts contents Various SELinux Notebook updates - - - --- 2021-12-03 Richard Haines pcmoore Superseded
[3/7] object_classes_permissions.md: Deprecate lockdown class Various SELinux Notebook updates - - - --- 2021-12-03 Richard Haines pcmoore Superseded
[2/7] object_classes_permissions.md: Correct the context object class entry Various SELinux Notebook updates - - - --- 2021-12-03 Richard Haines pcmoore Superseded
[1/7] notebook: Minor formatting fixes Various SELinux Notebook updates - - - --- 2021-12-03 Richard Haines pcmoore Superseded
[-next] selinux: Use struct_size() helper in kmalloc() [-next] selinux: Use struct_size() helper in kmalloc() - - - --- 2021-12-02 Xiu Jianfeng pcmoore Accepted
security/selinux: fix potential memleak security/selinux: fix potential memleak - - - --- 2021-12-02 Bernard Zhao pcmoore Changes Requested
security/selinux: fix potential memleak in error branch security/selinux: fix potential memleak in error branch - - - --- 2021-12-02 Bernard Zhao pcmoore Changes Requested
[v2,1/3] mcstrans: port to new PCRE2 from end-of-life PCRE [v2,1/3] mcstrans: port to new PCRE2 from end-of-life PCRE 1 - - --- 2021-11-30 Christian Göttsche Accepted
[2/2] checkpolicy: warn on bogus IP address or netmask in nodecon statement [1/2] libsepol/cil: support IPv4/IPv6 address embedding 1 - - --- 2021-11-30 Christian Göttsche Accepted
[1/2] libsepol/cil: support IPv4/IPv6 address embedding [1/2] libsepol/cil: support IPv4/IPv6 address embedding 1 - - --- 2021-11-30 Christian Göttsche Accepted
libsepol: free ebitmap on end of function libsepol: free ebitmap on end of function - - - --- 2021-11-25 Christian Göttsche Superseded
[RFC,v2,4/4] libsepol: free ebitmap on end of function [RFC,v2,1/4] libsepol: introduce ebitmap_subtract() - - - --- 2021-11-24 Christian Göttsche Superseded
[RFC,v2,3/4] checkpolicy: add not-self neverallow support [RFC,v2,1/4] libsepol: introduce ebitmap_subtract() - - - --- 2021-11-24 Christian Göttsche Superseded
[RFC,v2,2/4] libsepol: add not-self neverallow support [RFC,v2,1/4] libsepol: introduce ebitmap_subtract() - - - --- 2021-11-24 Christian Göttsche Superseded
[RFC,v2,1/4] libsepol: introduce ebitmap_subtract() [RFC,v2,1/4] libsepol: introduce ebitmap_subtract() - - - --- 2021-11-24 Christian Göttsche Superseded
[5.10,130/154] block: Check ADMIN before NICE for IOPRIO_CLASS_RT Untitled series #585215 1 1 - --- 2021-11-24 Greg KH pcmoore Not Applicable
[5.15,222/279] block: Check ADMIN before NICE for IOPRIO_CLASS_RT Untitled series #585227 1 1 - --- 2021-11-24 Greg KH pcmoore Not Applicable
Modified Russian and English man pages to fix typo; REQUIREUSERS -> REQUIRESEUSERS Modified Russian and English man pages to fix typo; REQUIREUSERS -> REQUIRESEUSERS 1 - - --- 2021-11-24 Jacob M Cutright Accepted
[v30,28/28] AppArmor: Remove the exclusive flag [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 1 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,27/28] LSM: Add /proc attr entry for full LSM context [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - 1 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,26/28] Audit: Add record for multiple object security contexts [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,25/28] Audit: Add record for multiple task security contexts [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,24/28] Audit: Add framework for auxiliary records [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,23/28] Audit: Create audit_stamp structure [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,22/28] Audit: Keep multiple LSM data in audit_names [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,21/28] LSM: Extend security_secid_to_secctx to include module selection [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,20/28] binder: Pass LSM identifier for confirmation [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,19/28] NET: Store LSM netlabel data in a lsmblob [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,18/28] LSM: security_secid_to_secctx in netlink netfilter [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,17/28] LSM: Use lsmcontext in security_inode_getsecctx [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,16/28] LSM: Use lsmcontext in security_secid_to_secctx [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 1 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,15/28] LSM: Ensure the correct LSM context releaser [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 3 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,14/28] LSM: Specify which LSM to display [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,13/28] LSM: Use lsmblob in security_cred_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,12/28] LSM: Use lsmblob in security_inode_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,11/28] LSM: Use lsmblob in security_task_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,10/28] LSM: Use lsmblob in security_ipc_getsecid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,09/28] LSM: Use lsmblob in security_secid_to_secctx [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,08/28] LSM: Use lsmblob in security_secctx_to_secid [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,07/28] LSM: Use lsmblob in security_kernel_act_as [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,06/28] LSM: Use lsmblob in security_audit_rule_match [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,05/28] IMA: avoid label collisions with stacked LSMs [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,04/28] LSM: provide lsm name and id slot mappings [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 1 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,03/28] LSM: Add the lsmblob data structure. [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule - - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,02/28] LSM: Infrastructure management of the sock security [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 2 2 - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule [v30,01/28] integrity: disassociate ima_filter_rule from security_audit_rule 1 - - --- 2021-11-24 Casey Schaufler pcmoore Changes Requested
[GIT,PULL] SELinux fixes for v5.16 (#2) [GIT,PULL] SELinux fixes for v5.16 (#2) - - - --- 2021-11-23 Paul Moore pcmoore Accepted
[RFC,3/3] checkpolicy: add not-self neverallow support [RFC,1/3] libsepol: introduce ebitmap_subtract() - - - --- 2021-11-23 Christian Göttsche Superseded
[RFC,2/3] libsepol: add not-self neverallow support [RFC,1/3] libsepol: introduce ebitmap_subtract() - - - --- 2021-11-23 Christian Göttsche Superseded
[RFC,1/3] libsepol: introduce ebitmap_subtract() [RFC,1/3] libsepol: introduce ebitmap_subtract() - - - --- 2021-11-23 Christian Göttsche Superseded
[3/3] Replace PCRE with PCRE2 build dependencies [1/3] mcstrans: port to new PCRE2 from end-of-life PCRE 1 - - --- 2021-11-23 Christian Göttsche Accepted
[2/3] libselinux: use PCRE2 by default [1/3] mcstrans: port to new PCRE2 from end-of-life PCRE 1 - - --- 2021-11-23 Christian Göttsche Accepted
[1/3] mcstrans: port to new PCRE2 from end-of-life PCRE [1/3] mcstrans: port to new PCRE2 from end-of-life PCRE - - - --- 2021-11-23 Christian Göttsche Accepted
semodule: Don't forget to munmap() data semodule: Don't forget to munmap() data 1 - - --- 2021-11-23 Petr Lautrbach Accepted
libselinux: Fix selinux_restorecon_parallel symbol version libselinux: Fix selinux_restorecon_parallel symbol version 1 - - --- 2021-11-23 Petr Lautrbach Accepted
Kernel policy language is infix Kernel policy language is infix - - - --- 2021-11-19 Topi Miettinen Superseded
Kernel policy language is infix Kernel policy language is infix - - - --- 2021-11-19 Topi Miettinen Superseded
selinux: fix NULL-pointer dereference when hashtab allocation fails selinux: fix NULL-pointer dereference when hashtab allocation fails - - - --- 2021-11-19 Ondrej Mosnacek pcmoore Accepted
[testsuite] tests/inet_socket: Add socket transition tests [testsuite] tests/inet_socket: Add socket transition tests - - - --- 2021-11-17 Richard Haines omos Superseded
[v19,4/4] overlayfs: inode_owner_or_capable called during execv overlayfs override_creds=off & nested get xattr fix - - - --- 2021-11-17 David Anderson pcmoore Changes Requested
[v19,3/4] overlayfs: override_creds=off option bypass creator_cred overlayfs override_creds=off & nested get xattr fix - - - --- 2021-11-17 David Anderson pcmoore Changes Requested
[v19,2/4] overlayfs: handle XATTR_NOSECURITY flag for get xattr method overlayfs override_creds=off & nested get xattr fix - - - --- 2021-11-17 David Anderson pcmoore Changes Requested
[v19,1/4] Add flags option to get xattr method paired to __vfs_getxattr overlayfs override_creds=off & nested get xattr fix 5 1 - --- 2021-11-17 David Anderson pcmoore Changes Requested
[V2] netlabel: Update man page to clarify SELinux labeling [V2] netlabel: Update man page to clarify SELinux labeling - - - --- 2021-11-16 Richard Haines pcmoore Accepted
netlabel: Update man page to clarify SELinux labeling netlabel: Update man page to clarify SELinux labeling - - - --- 2021-11-16 Richard Haines pcmoore Superseded
semodule: Fix lang_ext column index semodule: Fix lang_ext column index 1 - - --- 2021-11-16 Petr Lautrbach Accepted
semodule: add -m | --checksum option semodule: add -m | --checksum option 1 - - --- 2021-11-16 Petr Lautrbach Accepted
[RFC] capability: add capable_or to test for multiple caps with exactly one audit message [RFC] capability: add capable_or to test for multiple caps with exactly one audit message - - - --- 2021-11-16 Christian Göttsche pcmoore Handled Elsewhere
[v3] selinux-notebook: New chapter: Hardening SELinux [v3] selinux-notebook: New chapter: Hardening SELinux - 2 - --- 2021-11-16 Topi Miettinen pcmoore Superseded
ci: run the tests under ASan/UBsan on GHActions ci: run the tests under ASan/UBsan on GHActions 1 - - --- 2021-11-15 Evgeny Vereshchagin Accepted
[v2] block: Check ADMIN before NICE for IOPRIO_CLASS_RT [v2] block: Check ADMIN before NICE for IOPRIO_CLASS_RT 1 - - --- 2021-11-15 Alistair Delva pcmoore Accepted
block: Check ADMIN before NICE for IOPRIO_CLASS_RT block: Check ADMIN before NICE for IOPRIO_CLASS_RT - - - --- 2021-11-15 Alistair Delva pcmoore Superseded
[v2] selinux-notebook: New chapter: Hardening SELinux [v2] selinux-notebook: New chapter: Hardening SELinux - - - --- 2021-11-13 Topi Miettinen pcmoore Superseded
[GIT,PULL] SELinux fix / revert for v5.16 (#1) [GIT,PULL] SELinux fix / revert for v5.16 (#1) - - - --- 2021-11-12 Paul Moore pcmoore Accepted
net,lsm,selinux: revert the security_sctp_assoc_established() hook net,lsm,selinux: revert the security_sctp_assoc_established() hook - - - --- 2021-11-12 Paul Moore pcmoore Accepted
binder: fix test regression due to sender_euid change binder: fix test regression due to sender_euid change 2 - - --- 2021-11-12 Todd Kjos pcmoore Accepted
[12/12] libsemanage: add extern prototype for legacy function [01/12] checkpolicy: use correct unsigned format specifiers - - - --- 2021-11-12 Christian Göttsche Accepted
[11/12] libsemanage: include paired header for prototypes [01/12] checkpolicy: use correct unsigned format specifiers - - - --- 2021-11-12 Christian Göttsche Accepted
[10/12] libsemanage: mark local functions static [01/12] checkpolicy: use correct unsigned format specifiers - - - --- 2021-11-12 Christian Göttsche Accepted
« 1 2 ... 27 28 2992 93 »