Show patches with: Archived = No       |   9250 patches
« 1 2 3 492 93 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v9,6/7] mm/util: Deduplicate code in {kstrdup,kstrndup,kmemdup_nul} Improve the copy of task comm - - - --- 2024-10-07 Yafang Shao pcmoore Handled Elsewhere
[v9,5/7] mm/util: Fix possible race condition in kstrdup() Improve the copy of task comm - - - --- 2024-10-07 Yafang Shao pcmoore Handled Elsewhere
[v9,4/7] bpftool: Ensure task comm is always NUL-terminated Improve the copy of task comm - 1 - --- 2024-10-07 Yafang Shao pcmoore Handled Elsewhere
[v9,3/7] security: Replace memcpy() with get_task_comm() Improve the copy of task comm 1 - - --- 2024-10-07 Yafang Shao pcmoore Handled Elsewhere
[v9,2/7] auditsc: Replace memcpy() with strscpy() Improve the copy of task comm 1 1 - --- 2024-10-07 Yafang Shao pcmoore Handled Elsewhere
[v9,1/7] Get rid of __get_task_comm() Improve the copy of task comm - - - --- 2024-10-07 Yafang Shao pcmoore Handled Elsewhere
[v2] selinux: Deprecate /sys/fs/selinux/user [v2] selinux: Deprecate /sys/fs/selinux/user - - - --- 2024-10-04 Stephen Smalley pcmoore Accepted
libselinux: formally deprecate security_compute_user() libselinux: formally deprecate security_compute_user() 1 - - --- 2024-10-04 Stephen Smalley bachradsusi Accepted
selinux: Deprecate /sys/fs/selinux/user selinux: Deprecate /sys/fs/selinux/user - - - --- 2024-10-04 Stephen Smalley pcmoore Superseded
[v5.15-v6.1] selinux,smack: don't bypass permissions check in inode_setsecctx hook [v5.15-v6.1] selinux,smack: don't bypass permissions check in inode_setsecctx hook 1 3 1 --- 2024-09-28 Shivani Agarwal pcmoore Handled Elsewhere
[v5.10] selinux,smack: don't bypass permissions check in inode_setsecctx hook [v5.10] selinux,smack: don't bypass permissions check in inode_setsecctx hook 1 3 1 --- 2024-09-28 Shivani Agarwal pcmoore Handled Elsewhere
[2/2] selinux: apply clang format to security/selinux/nlmsgtab.c [1/2] selinux: streamline selinux_nlmsg_lookup() - - - --- 2024-09-25 Paul Moore pcmoore Accepted
[1/2] selinux: streamline selinux_nlmsg_lookup() [1/2] selinux: streamline selinux_nlmsg_lookup() - - 1 --- 2024-09-25 Paul Moore pcmoore Accepted
selinux,smack: properly reference the LSM blob in security_watch_key() selinux,smack: properly reference the LSM blob in security_watch_key() - 1 - --- 2024-09-19 Paul Moore pcmoore Handled Elsewhere
mm: call the security_mmap_file() LSM hook in remap_file_pages() mm: call the security_mmap_file() LSM hook in remap_file_pages() 1 - - --- 2024-09-19 Paul Moore pcmoore Handled Elsewhere
[5/5] LSM: Use lsm_context in security_inode_notifysecctx [1/5] LSM: Replace context+len with lsm_context - - - --- 2024-09-17 Casey Schaufler pcmoore Handled Elsewhere
[4/5] LSM: secctx provider check on release [1/5] LSM: Replace context+len with lsm_context - - - --- 2024-09-17 Casey Schaufler pcmoore Handled Elsewhere
[3/5] LSM: lsm_context in security_dentry_init_security [1/5] LSM: Replace context+len with lsm_context - - - --- 2024-09-17 Casey Schaufler pcmoore Handled Elsewhere
[2/5] LSM: Use lsm_context in security_inode_getsecctx [1/5] LSM: Replace context+len with lsm_context - - - --- 2024-09-17 Casey Schaufler pcmoore Handled Elsewhere
[1/5] LSM: Replace context+len with lsm_context [1/5] LSM: Replace context+len with lsm_context - 1 - --- 2024-09-17 Casey Schaufler pcmoore Handled Elsewhere
[GIT,PULL] selinux/selinux-pr-20240911 [GIT,PULL] selinux/selinux-pr-20240911 - - - --- 2024-09-13 Paul Moore pcmoore Accepted
[v3] selinux: Add netlink xperm support [v3] selinux: Add netlink xperm support - - - --- 2024-09-12 Thiébaud Weksteen pcmoore Accepted
[v3,13/13] LSM: Remove lsm_prop scaffolding [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,12/13] Use lsm_prop for audit data [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,11/13] Audit: Change context data from secid to lsm_prop [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,10/13] LSM: Create new security_cred_getlsmprop LSM hook [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,09/13] Audit: use an lsm_prop in audit_names [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,08/13] LSM: Use lsm_prop in security_inode_getsecid [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,07/13] LSM: Use lsm_prop in security_current_getsecid [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,06/13] Audit: Update shutdown LSM data [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,05/13] LSM: Use lsm_prop in security_ipc_getsecid [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,04/13] Audit: maintain an lsm_prop in audit_context [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,03/13] LSM: Add lsmprop_to_secctx hook [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,02/13] LSM: Use lsm_prop in security_audit_rule_match [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v3,01/13] LSM: Add the lsm_prop data structure. [v3,01/13] LSM: Add the lsm_prop data structure. - - - --- 2024-09-10 Casey Schaufler pcmoore Handled Elsewhere
[v2] selinux: Add netlink xperm support [v2] selinux: Add netlink xperm support 1 - 1 --- 2024-09-10 Thiébaud Weksteen pcmoore Changes Requested
[testsuite] policy/test_filesystem.te: fix policy for NFS over a symlinked directory [testsuite] policy/test_filesystem.te: fix policy for NFS over a symlinked directory 1 - - --- 2024-09-09 Ondrej Mosnacek omos Accepted
[v2,2/2] selinux: move genheaders to security/selinux/ [v2,1/2] selinux: do not include <linux/*.h> headers from host programs - - - --- 2024-09-06 Masahiro Yamada pcmoore Accepted
[v2,1/2] selinux: do not include <linux/*.h> headers from host programs [v2,1/2] selinux: do not include <linux/*.h> headers from host programs - - - --- 2024-09-06 Masahiro Yamada pcmoore Accepted
[v2,8/8] Documentation: add howto build in macos Enable build system on macOS hosts - - - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
[v2,7/8] selinux: move genheaders to security/selinux/ Enable build system on macOS hosts - - - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
[v2,6/8] selinux: do not include <linux/*.h> headers from host programs Enable build system on macOS hosts - - - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
[v2,5/8] scripts: add bee-headers support Enable build system on macOS hosts - - - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
[v2,4/8] arm64: nvhe: add bee-headers support Enable build system on macOS hosts - - - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
[v2,3/8] drm/xe: xe_gen_wa_oob: fix program_invocation_short_name for macos Enable build system on macOS hosts - 1 - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
[v2,2/8] file2alias: fix uuid_t definitions for macos Enable build system on macOS hosts - - - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
[v2,1/8] scripts: subarch.include: fix SUBARCH on macOS hosts Enable build system on macOS hosts - - - --- 2024-09-06 Daniel Gomez via B4 Relay pcmoore Changes Requested
selinux: fix style problems in security/selinux/include/audit.h selinux: fix style problems in security/selinux/include/audit.h - - - --- 2024-09-03 Paul Moore pcmoore Accepted
[v2,13/13] LSM: Remove lsmblob scaffolding [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,12/13] Netlabel: Use lsmblob for audit data [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,11/13] Audit: Change context data from secid to lsmblob [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,10/13] LSM: Create new security_cred_getlsmblob LSM hook [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,09/13] Audit: use an lsmblob in audit_names [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,08/13] LSM: Use lsmblob in security_inode_getsecid [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,07/13] LSM: Use lsmblob in security_current_getsecid [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,06/13] Audit: Update shutdown LSM data [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,05/13] LSM: Use lsmblob in security_ipc_getsecid [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,04/13] Audit: maintain an lsmblob in audit_context [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,03/13] LSM: Add lsmblob_to_secctx hook [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,02/13] LSM: Use lsmblob in security_audit_rule_match [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[v2,01/13] LSM: Add the lsmblob data structure. [v2,01/13] LSM: Add the lsmblob data structure. - - - --- 2024-08-30 Casey Schaufler pcmoore Handled Elsewhere
[testsuite,v2] tests/extended_socket_class: test SMC sockets [testsuite,v2] tests/extended_socket_class: test SMC sockets - - - --- 2024-08-29 Stephen Smalley omos Accepted
[testsuite] policy,tests: add tests for netlink xperms [testsuite] policy,tests: add tests for netlink xperms - - 1 --- 2024-08-28 Stephen Smalley omos Accepted
[1/1] selinux,smack: don't bypass permissions check in inode_setsecctx hook selinux,smack: don't bypass permissions check in inode_setsecctx hook 1 3 1 --- 2024-08-28 Scott Mayhew pcmoore Handled Elsewhere
[v3] checkpolicy: Fix MLS users in optional blocks [v3] checkpolicy: Fix MLS users in optional blocks - - - --- 2024-08-28 James Carter bachradsusi Accepted
[RESEND] selinux: mark all newly created Internet domain sockets as labeled sockets [RESEND] selinux: mark all newly created Internet domain sockets as labeled sockets - - - --- 2024-08-28 Guido Trentalancia pcmoore Accepted
[v8,8/8] drm: Replace strcpy() with strscpy() Improve the copy of task comm 1 1 - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
[v8,7/8] net: Replace strcpy() with strscpy() Improve the copy of task comm - 1 - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
[v8,6/8] mm/util: Deduplicate code in {kstrdup,kstrndup,kmemdup_nul} Improve the copy of task comm - 1 - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
[v8,5/8] mm/util: Fix possible race condition in kstrdup() Improve the copy of task comm - - - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
[v8,4/8] bpftool: Ensure task comm is always NUL-terminated Improve the copy of task comm - 1 - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
[v8,3/8] security: Replace memcpy() with get_task_comm() Improve the copy of task comm 1 - - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
[v8,2/8] auditsc: Replace memcpy() with strscpy() Improve the copy of task comm 1 1 - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
[v8,1/8] Get rid of __get_task_comm() Improve the copy of task comm - - - --- 2024-08-28 Yafang Shao pcmoore Handled Elsewhere
selinux: replace kmem_cache_create() with KMEM_CACHE() selinux: replace kmem_cache_create() with KMEM_CACHE() - - - --- 2024-08-27 ericsu@linux.microsoft.com pcmoore Accepted
[testsuite] tests/key_socket: skip the test if CONFIG_NET_KEY is not enabled [testsuite] tests/key_socket: skip the test if CONFIG_NET_KEY is not enabled 1 - - --- 2024-08-27 Ondrej Mosnacek omos Accepted
[v2] sepolgen-ifgen: allow M4 escaped filenames [v2] sepolgen-ifgen: allow M4 escaped filenames - - - --- 2024-08-27 Petr Lautrbach bachradsusi New
[net] sctp: fix association labeling in the duplicate COOKIE-ECHO case [net] sctp: fix association labeling in the duplicate COOKIE-ECHO case 2 - - --- 2024-08-26 Ondrej Mosnacek pcmoore Handled Elsewhere
selinux: annotate false positive data race to avoid KCSAN warnings selinux: annotate false positive data race to avoid KCSAN warnings - - - --- 2024-08-26 Stephen Smalley pcmoore Accepted
libselinux: rename hashtab functions libselinux: rename hashtab functions 1 - - --- 2024-08-26 Thiébaud Weksteen bachradsusi Accepted
[1/1] selinux: simplify avc_xperms_audit_required() [1/1] selinux: simplify avc_xperms_audit_required() - - - --- 2024-08-22 Leizhen (ThunderTown) pcmoore Accepted
[3/3] libsepol: Add policy capability netlink_xperm [1/3] libsepol: Rename ioctl xperms structures and functions 1 - - --- 2024-08-22 Thiébaud Weksteen bachradsusi Accepted
[2/3] libsepol: Support nlmsg extended permissions [1/3] libsepol: Rename ioctl xperms structures and functions 1 - - --- 2024-08-22 Thiébaud Weksteen bachradsusi Accepted
[1/3] libsepol: Rename ioctl xperms structures and functions [1/3] libsepol: Rename ioctl xperms structures and functions 1 - - --- 2024-08-22 Thiébaud Weksteen bachradsusi Accepted
[v3,2/2] security: Update file_set_fowner documentation [v3,1/2] fs: Fix file_set_fowner LSM hook inconsistencies - - - --- 2024-08-21 Mickaël Salaün pcmoore Handled Elsewhere
[v3,1/2] fs: Fix file_set_fowner LSM hook inconsistencies [v3,1/2] fs: Fix file_set_fowner LSM hook inconsistencies - - - --- 2024-08-21 Mickaël Salaün pcmoore Handled Elsewhere
selinux: Add netlink xperm support selinux: Add netlink xperm support 1 - 1 --- 2024-08-20 Thiébaud Weksteen pcmoore Superseded
sepolgen-ifgen: allow M4 escaped filenames sepolgen-ifgen: allow M4 escaped filenames - - - --- 2024-08-19 Petr Lautrbach bachradsusi Superseded
[v7,8/8] drm: Replace strcpy() with strscpy() Improve the copy of task comm 1 - - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[v7,7/8] net: Replace strcpy() with strscpy() Improve the copy of task comm - - - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[v7,6/8] mm/util: Deduplicate code in {kstrdup,kstrndup,kmemdup_nul} Improve the copy of task comm - - - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[v7,5/8] mm/util: Fix possible race condition in kstrdup() Improve the copy of task comm - - - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[v7,4/8] bpftool: Ensure task comm is always NUL-terminated Improve the copy of task comm - 1 - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[v7,3/8] security: Replace memcpy() with get_task_comm() Improve the copy of task comm 1 - - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[v7,2/8] auditsc: Replace memcpy() with strscpy() Improve the copy of task comm 1 - - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[v7,1/8] Get rid of __get_task_comm() Improve the copy of task comm - - - --- 2024-08-17 Yafang Shao pcmoore Handled Elsewhere
[testsuite] tests/extended_socket_class: test SMC sockets [testsuite] tests/extended_socket_class: test SMC sockets - 1 - --- 2024-08-16 Stephen Smalley omos Superseded
selinux: support IPPROTO_SMC in socket_type_to_security_class() selinux: support IPPROTO_SMC in socket_type_to_security_class() 1 - - --- 2024-08-15 Jeongjun Park pcmoore Under Review
checkpolicy: Fix MLS users in optional blocks checkpolicy: Fix MLS users in optional blocks - - - --- 2024-08-14 James Carter bachradsusi Superseded
[GIT,PULL] selinux/selinux-pr-20240814 [GIT,PULL] selinux/selinux-pr-20240814 - - - --- 2024-08-14 Paul Moore pcmoore Accepted
« 1 2 3 492 93 »