Show patches with: Submitter = Stephen Smalley       |    Archived = No       |   391 patches
« 1 2 3 4 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[v2] libsemanage: set selinux policy root around calls to selinux_boolean_sub [v2] libsemanage: set selinux policy root around calls to selinux_boolean_sub 1 - - --- 2019-01-08 Stephen Smalley Not Applicable
libsemanage: set selinux policy root around calls to selinux_boolean_sub libsemanage: set selinux policy root around calls to selinux_boolean_sub - - - --- 2019-01-07 Stephen Smalley Not Applicable
[3/7] selinux: convert to kvmalloc Untitled series #57711 - - - --- 2018-12-17 Stephen Smalley Changes Requested
[2/2] selinux: stop passing MAY_NOT_BLOCK to the AVC upon follow_link [1/2] selinux: avoid silent denials in permissive mode under RCU walk - - - --- 2018-12-12 Stephen Smalley Accepted
[1/2] selinux: avoid silent denials in permissive mode under RCU walk [1/2] selinux: avoid silent denials in permissive mode under RCU walk - - - --- 2018-12-12 Stephen Smalley Accepted
[RFC,v2,2/2] selinux: stop passing MAY_NOT_BLOCK to the AVC upon follow_link [RFC,v2,1/2] selinux: avoid silent denials in permissive mode under RCU walk - - - --- 2018-12-07 Stephen Smalley Superseded
[RFC,v2,1/2] selinux: avoid silent denials in permissive mode under RCU walk [RFC,v2,1/2] selinux: avoid silent denials in permissive mode under RCU walk - - - --- 2018-12-07 Stephen Smalley Superseded
[RFC] selinux: avoid silent denials in permissive mode under RCU walk [RFC] selinux: avoid silent denials in permissive mode under RCU walk - - - --- 2018-12-04 Stephen Smalley Superseded
README: Update the SELinux mailing list location README: Update the SELinux mailing list location - - - --- 2018-10-10 Stephen Smalley Not Applicable
libselinux: fix selinux_restorecon() on non-SELinux hosts libselinux: fix selinux_restorecon() on non-SELinux hosts - - - --- 2018-09-26 Stephen Smalley Accepted
selinux: fix mounting of cgroup2 under older policies selinux: fix mounting of cgroup2 under older policies - - 1 --- 2018-09-04 Stephen Smalley Accepted
[RFC,1/1] selinux-testsuite: Add binder tests - - - --- 2018-05-15 Stephen Smalley Superseded
libsepol: cil: prevent stack buffer overflow in cil_expr_to_string - - - --- 2018-05-09 Stephen Smalley Not Applicable
libsemanage: prevent string overflow on final paths - - - --- 2018-05-08 Stephen Smalley Not Applicable
[4/4] libselinux: audit2why: fix build warnings - - - --- 2018-05-03 Stephen Smalley Not Applicable
[3/4] libselinux: avcstat: fix build warning - - - --- 2018-05-03 Stephen Smalley Not Applicable
[2/4] libselinux: fix build warning in save_booleans() - - - --- 2018-05-03 Stephen Smalley Not Applicable
[1/4] libsepol: remove unused function and type - - - --- 2018-05-03 Stephen Smalley Not Applicable
Revert "libselinux: verify file_contexts when using restorecon" - - - --- 2018-04-20 Stephen Smalley Not Applicable
selinux: fix missing dput() before selinuxfs unmount - - - --- 2018-04-09 Stephen Smalley Accepted
[2/2] selinux: wrap selinuxfs state - - - --- 2018-03-20 Stephen Smalley Accepted
[1/2] selinux: fix handling of uninitialized selinux state in get_bools/classes - - - --- 2018-03-20 Stephen Smalley Accepted
libsepol: Export sepol_polcap_getnum/name functions 2 - - --- 2018-03-08 Stephen Smalley Not Applicable
[2/2] selinux: wrap AVC state - 1 - --- 2018-03-05 Stephen Smalley Accepted
[1/2] selinux: wrap selinuxfs state - 1 - --- 2018-03-05 Stephen Smalley Changes Requested
selinux: wrap global selinux state - - - --- 2018-02-16 Stephen Smalley Accepted
[v2,4/5] selinux: Use pointer to switch policydb and sidtab - - - --- 2018-01-30 Stephen Smalley Superseded
[Fwd:,[PATCH,v2,14/15] selinux: allow setxattr on rootfs so initramfs code can set them] - - - --- 2018-01-25 Stephen Smalley Not Applicable
[Fwd:,[PATCH,v2,15/15] selinux: delay sid population for rootfs till init is complete] - - - --- 2018-01-25 Stephen Smalley Not Applicable
[RFC] xfrm: fix regression introduced by xdst pcpu cache - - - --- 2017-10-30 Stephen Smalley Superseded
selinux-testsuite: inet_socket: test xfrm state selectors - - - --- 2017-10-30 Stephen Smalley Rejected
[RFC] xfrm: fix regression introduced by xdst pcpu cache - - - --- 2017-10-27 Stephen Smalley Superseded
selinux-testsuite: nnp_nosuid: tidy perl style - - - --- 2017-10-26 Stephen Smalley Accepted
selinux-testsuite: inet_socket: tighten checking - - - --- 2017-10-26 Stephen Smalley Accepted
semodule-utils: remove semodule_deps - - - --- 2017-10-03 Stephen Smalley Superseded
[RFC,10/10] selinuxfs: restrict write operations to the same selinux namespace - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,09/10] selinux: add a selinuxfs interface to unshare selinux namespace - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,08/10] selinux: support per-namespace superblock security structures - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,07/10] selinux: support per-namespace inode security structures - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,06/10] selinux: introduce cred_selinux_ns() and use it - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,05/10] selinux: support per-task/cred selinux namespace - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,04/10] netns, selinux: create the selinux netlink socket per network namespace - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,03/10] selinux: move the AVC into the selinux namespace - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,02/10] selinux: support multiple selinuxfs instances - - - --- 2017-10-02 Stephen Smalley RFC
[RFC,01/10] selinux: introduce a selinux namespace - - - --- 2017-10-02 Stephen Smalley RFC
[2/2,v2] selinux-testsuite: Move kernel config to a defconfig fragment - - - --- 2017-09-29 Stephen Smalley Accepted
[1/2,v2] selinux-testsuite: README: Update kernel config requirements - - - --- 2017-09-29 Stephen Smalley Accepted
selinux-testsuite: README: Update kernel config requirements - - - --- 2017-09-29 Stephen Smalley Superseded
usb, signal, security: only pass the cred, not the secid, to kill_pid_info_as_cred and security_tas… 4 - - --- 2017-09-08 Stephen Smalley Accepted
checkpolicy, libselinux, libsepol, policycoreutils: Update my email address - - - --- 2017-08-17 Stephen Smalley Not Applicable
[2/2] lsm_audit: update my email address - - - --- 2017-08-17 Stephen Smalley Accepted
[1/2] selinux: update my email address - - - --- 2017-08-17 Stephen Smalley Accepted
[v3] selinux-testsuite: Add tests for transitions under NNP/nosuid - - - --- 2017-08-01 Stephen Smalley Accepted
[v2] selinux-testsuite: Add tests for transitions under NNP/nosuid - - - --- 2017-07-31 Stephen Smalley Not Applicable
[v2] selinux-testsuite: Add tests for transitions under NNP/nosuid - - - --- 2017-07-31 Stephen Smalley Superseded
[v4] selinux: Generalize support for NNP/nosuid SELinux domain transitions - - - --- 2017-07-31 Stephen Smalley Accepted
selinux: genheaders should fail if too many permissions are defined - - - --- 2017-07-25 Stephen Smalley Accepted
selinux-testsuite: Add tests for transitions under NNP/nosuid - - - --- 2017-07-25 Stephen Smalley Superseded
selinux-testsuite: Add tests for transitions under NNP/nosuid - - - --- 2017-07-25 Stephen Smalley Superseded
[v3] selinux: Generalize support for NNP/nosuid SELinux domain transitions - - - --- 2017-07-25 Stephen Smalley Superseded
[v2] selinux: Generalize support for NNP/nosuid SELinux domain transitions - - - --- 2017-07-24 Stephen Smalley Superseded
selinux-testsuite: Add tests for AT_SECURE - - - --- 2017-07-19 Stephen Smalley Accepted
[2/2] open_init_pty: restore stdin/stdout to blocking upon exit - - - --- 2017-07-18 Stephen Smalley Not Applicable
[1/2] Revert "open_init_pty: Do not make stdin and stdout non-blocking" - - - --- 2017-07-18 Stephen Smalley Not Applicable
libsepol: Define nnp_nosuid_transition policy capability - - - --- 2017-07-14 Stephen Smalley Not Applicable
selinux: Generalize support for NNP/nosuid SELinux domain transitions - - - --- 2017-07-14 Stephen Smalley Superseded
[RFC] selinux: Introduce a policy capability and permission for NNP transitions - - - --- 2017-07-10 Stephen Smalley Superseded
open_init_pty: Do not make stdin and stdout non-blocking - - - --- 2017-07-10 Stephen Smalley Not Applicable
libselinux,libsemanage: fix RUBYLIBS definition - - - --- 2017-06-28 Stephen Smalley Not Applicable
Fix BINDIR/SBINDIR/... variables in Makefiles - - - --- 2017-06-20 Stephen Smalley Not Applicable
[RFC] Make BINDIR/SBINDIR/USRSBINDIR definition and usage consistent. - - - --- 2017-06-19 Stephen Smalley Not Applicable
libselinux: always unmount selinuxfs for SELINUX=disabled - - - --- 2017-06-09 Stephen Smalley Not Applicable
libselinux: fix selabel_lookup*() double slash bug - - - --- 2017-06-01 Stephen Smalley Not Applicable
[3/3] libsepol: Fix alloc-size-larger-than warning from gcc 7 - - - --- 2017-05-31 Stephen Smalley Not Applicable
[2/3] libsemanage: Fix snprintf warnings from gcc 7 - - - --- 2017-05-31 Stephen Smalley Not Applicable
[1/3] libsepol, libsemanage, libselinux: Fix fallthrough warnings from gcc 7 - - - --- 2017-05-31 Stephen Smalley Not Applicable
sort input files - - - --- 2017-05-30 Stephen Smalley Not Applicable
python/semanage: print is a function in python3 - - - --- 2017-05-26 Stephen Smalley Not Applicable
selinux-testsuite: allow more instances of map permission - - - --- 2017-05-25 Stephen Smalley Accepted
selinux: log policy capability state when a policy is loaded - - - --- 2017-05-18 Stephen Smalley Accepted
selinux-testsuite: Test ioctl xperms - - - --- 2017-05-17 Stephen Smalley Accepted
[v2] libsepol, checkpolicy: add binary module support for xperms - - - --- 2017-05-16 Stephen Smalley Not Applicable
libsepol,checkpolicy: add binary module support for xperms - - - --- 2017-05-15 Stephen Smalley Not Applicable
[v2] selinux: log policy capability state when a policy is loaded - - - --- 2017-05-12 Stephen Smalley Changes Requested
selinux: do not check open permission on sockets - - - --- 2017-05-12 Stephen Smalley Accepted
selinux: log policy capability state when a policy is loaded - - - --- 2017-05-12 Stephen Smalley Superseded
checkpolicy,libsepol: drop unnecessary usage of s6_addr32 - - - --- 2017-05-10 Stephen Smalley Not Applicable
selinux-testsuite: update mmap tests for map permission - - - --- 2017-05-09 Stephen Smalley Accepted
libselinux: Fix CFLAGS definition - - - --- 2017-05-09 Stephen Smalley Not Applicable
[RFC] selinux: add a map permission check for mmap - - - --- 2017-05-05 Stephen Smalley Not Applicable
[RFC] selinux: add a map permission check for mmap - - - --- 2017-05-05 Stephen Smalley Accepted
[v2] selinux-testsuite: Add CAP_MAC_ADMIN tests - - - --- 2017-04-20 Stephen Smalley Accepted
selinux-testsuite: Add CAP_MAC_ADMIN tests - - - --- 2017-04-20 Stephen Smalley Accepted
selinux: only invoke capabilities and selinux for CAP_MAC_ADMIN checks - - - --- 2017-04-20 Stephen Smalley Accepted
[v2] libsemanage: Save linked policy, skip re-link when possible - - - --- 2017-04-11 Stephen Smalley Not Applicable
libsemanage: Save linked policy, skip re-link when possible - - - --- 2017-04-11 Stephen Smalley Not Applicable
[2/2] libsemanage: revert "Skip policy module re-link when only setting booleans." - - - --- 2017-04-10 Stephen Smalley Not Applicable
[1/2] libsepol: do not seg fault on sepol_*_key_free(NULL) - - - --- 2017-04-10 Stephen Smalley Not Applicable
Running Java and JVM on SELinux - - - --- 2017-04-04 Stephen Smalley Not Applicable
python/semanage: fix export of fcontext socket entries - - - --- 2017-03-15 Stephen Smalley Not Applicable
« 1 2 3 4 »