Linux-Security-Module Archive mirror
 help / color / mirror / Atom feed
- recent:[subjects (threaded)|topics (new)|topics (active)]
2024-05-11  3:22 [PATCH] integrity: Update comment for load_moklist_certs()
2024-05-10 19:01 Re: [PATCH] apparmor: fix apparmor_socket_post_create() kernel-doc 3+ messages
2024-05-10 17:45 Re: [PATCH v4 55/66] selftests/seccomp: Drop define _GNU_SOURCE 70+ messages
2024-05-10 17:37 Re: [PATCH net v5] netlabel: fix RCU annotation for IPv4 options on socket creation 2+ messages
2024-05-10 17:11 Re: [PATCH v11 5/5] bpf: Only enable BPF LSM hooks when an LSM program is attached 10+ messages
2024-05-10 16:10 Re: [PATCH 2/2] AppArmor: Fix lsm_get_self_attr() 16+ messages
2024-05-10 16:03 Re: [PATCH v3] ima: Avoid blocking in RCU read-side critical section 3+ messages
2024-05-10 16:00 Re: [PATCH] apparmor: fix possible NULL pointer dereference 2+ messages
2024-05-10 15:55 Re: [PATCH 2/2] apparmor: fix typo in kernel doc 7+ messages
2024-05-10 15:46 Re: [PATCH][next] apparmor: remove useless static inline function is_deleted 2+ messages
2024-05-10 15:36 Re: [PATCH] apparmor: use kvfree_sensitive to free data->data 2+ messages
2024-05-10 13:28 [syzbot] [lsm?] WARNING in collect_domain_accesses
2024-05-10 13:23 Re: [PATCH bpf-next v10 5/5] bpf: Only enable BPF LSM hooks when an LSM program is attached 14+ messages
2024-05-10 10:07 Re: [RFC PATCH v3 3/5] KVM: x86: Add notifications for Heki policy configuration and violation 13+ messages
2024-05-10  0:01 Re: [syzbot] [lsm?] general protection fault in hook_inode_free_security 2+ messages
2024-05-09 22:58 Re: [PATCH v3 03/68] selftests: Compile with -D_GNU_SOURCE when including lib.mk 76+ messages
2024-05-09 19:13 Re: [PATCH net v4] netlabel: fix RCU annotation for IPv4 options on socket creation 2+ messages
2024-05-09 18:20 Re: [PATCH v2 0/5] Define _GNU_SOURCE for sources using 33+ messages
2024-05-09 17:07 Re: [PATCH v18 12/21] dm: add finalize hook to target_type 28+ messages
2024-05-09  9:09 [syzbot] Monthly lsm report (May 2024)
2024-05-09  1:00 Re: [PATCH v3 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers 25+ messages
2024-05-08 10:40 Re: [PATCH v15 00/11] Landlock: IOCTL support 13+ messages
2024-05-08 10:38 Re: [RFC PATCH v1 03/10] selftests/landlock: Create 'create' test 20+ messages
2024-05-08  6:54 Re: [PATCH v3] nfsd: set security label during create operations 6+ messages
2024-05-07 21:43 Re: [PATCH net v3] netlabel: fix RCU annotation for IPv4 options on socket creation 3+ messages
2024-05-07 20:27 Re: [RFC][PATCH] ima: Use sequence number to wait for policy updates 3+ messages
2024-05-07 19:17 Re: [RFC PATCH] lsm: fixup the inode xattr capability handling 11+ messages
2024-05-07 14:56 Re: [PATCH] MAINTAINERS: repair file entry in SECURITY SUBSYSTEM 2+ messages
2024-05-07  7:12 [kpsingh:static_calls_type_1] [security]  5bbd3fa92f: WARNING:at_kernel/static_call_inline.c:#__static_call_update
2024-05-06  8:57 [syzbot] [lsm?] general protection fault in smack_inode_permission
2024-05-05 16:25 Re: [PATCH v9 4/4] bpf: Only enable BPF LSM hooks when an LSM program is attached 10+ messages
2024-05-03 23:45 Re: [EXT] [PATCH v8 6/6] docs: trusted-encrypted: add DCP as new trust source 20+ messages
2024-05-03 12:48 Re: [PATCH v2] nfsd: set security label during create operations 5+ messages
2024-05-03  9:57 Re: [PATCH v3 1/2] proc: restrict /proc/pid/mem access via param knobs 5+ messages
2024-05-02 21:07 Re: [PATCH v4 00/12] selftests: kselftest_harness: support using xfail 44+ messages
2024-05-02 18:28 Re: [RFC][PATCH] nfsd: set security label during create operations 2+ messages
2024-05-02 15:42 [syzbot] [keyrings?] [lsm?] possible deadlock in keyring_clear
2024-05-01 20:47 Re: [PATCH -next] lsm: fix default return value for inode_set(remove)xattr 2+ messages
2024-05-01 20:04 Re: [PATCH v3 1/3] LSM: add security_execve_abort() hook 12+ messages
2024-05-01 18:42 Re: [PATCH] MAINTAINERS: update the LSM file list 3+ messages
2024-04-30 23:30 Re: [PATCH v2] netlabel: fix RCU annotation for IPv4 options on socket creation 4+ messages
2024-04-30 16:52 Re: [PATCH 1/2] landlock: Add hook on socket_listen() 6+ messages
2024-04-30 15:24 Re: [PATCH v2] landlock: Add abstract unix socket connect restrictions 4+ messages
2024-04-30 10:09 Re: [PATCH v3 2/2] fs/xattr: add *at family syscalls 3+ messages
2024-04-30  3:56 Re: [PATCH bpf-next v3 07/11] bpf: Fix a false rejection caused by AND operation 31+ messages
2024-04-29 14:46 Re: 回复:WARNING in current_check_refer_path 3+ messages
2024-04-28 16:39 Re: [PATCH v2] ima: Avoid blocking in RCU read-side critical section
2024-04-25 21:48 Re: [PATCH 2/2] cipso: make cipso_v4_skbuff_delattr() fully remove the CIPSO options 9+ messages
2024-04-25 20:23 Re: [PATCH v17 13/21] dm verity: consume root hash digest and expose signature data via LSM hook 32+ messages
2024-04-25 17:49 Re: [linus:master] [selftests/harness]  0710a1a73f: kernel-selftests.pidfd.pidfd_setns_test.fail 2+ messages
2024-04-25 13:13 Re: [PATCH] MAINTAINER: Add Günther Noack as Landlock reviewer 2+ messages
2024-04-23 16:37 Re: [PATCH v2] tty: n_gsm: restrict tty devices to attach 10+ messages
2024-04-23  9:22 Re: [PATCH v3 7/7] kunit: Add tests for fault 15+ messages
2024-04-19 23:29 Re: [PATCH v4 00/14] security: digest_cache LSM 42+ messages
2024-04-19 20:01 Re: general protection fault in security_inode_getattr 16+ messages
2024-04-19 14:49 Re: [PATCH v14 08/12] selftests/landlock: Exhaustive test for the IOCTL allow-list 30+ messages
2024-04-16 13:55 Re: [PATCH v2 1/1] mm: change inlined allocation helpers to account at the call site 2+ messages
2024-04-16  7:53 Re: [PATCH 2/7] security: Remove the now superfluous sentinel element from ctl_table array 18+ messages
2024-04-15 21:39 Re: [kpsingh:static_calls] [security] 9e15595ed0: Kernel_panic-not_syncing:lsm_static_call_init-Ran_out_of_static_slots 8+ messages
2024-04-15 16:10 [RFC][PATCH v2 9/9] ima: Register to the digest_cache LSM notifier and process events 10+ messages
2024-04-15 14:16 [PATCH v4 00/14] security: digest_cache LSM
2024-04-11 19:47 Re: [PATCH net] netlabel: fix RCU annotation for IPv4 options on socket creation 5+ messages
2024-04-11 18:13 Re: [PATCH v3 04/12] Add primary TSEM implementation file. 17+ messages
2024-04-11 10:33 Re: Hardcoded security module suggestion - stop the stacking insanity 8+ messages
2024-04-10 12:34 Re: [PATCH bpf-next v2 0/7] Add check for bpf lsm return value 13+ messages
2024-04-09 21:29 Re: [PATCH v3 00/10] evm: Support signatures on stacked filesystem 20+ messages
2024-04-09 20:14 Re: [GIT PULL] security changes for v6.9-rc3 12+ messages
2024-04-09 17:28 Re: [PATCH v4 RESEND 0/7] Handle faults in KUnit tests 9+ messages
2024-04-05 21:44 Re: [PATCH v13 01/10] landlock: Add IOCTL access right for character and block devices 26+ messages
2024-04-05 18:35 Re: [PATCH v4 0/7] Handle faults in KUnit tests 11+ messages
2024-04-05 14:17 Re: [PATCH v5][next] integrity: Avoid -Wflex-array-member-not-at-end warnings 5+ messages
2024-04-05 13:53 Re: [PATCH 1/1] mm: change inlined allocation helpers to account at the call site 14+ messages
2024-04-05 12:56 Re: [PATCH RFC 1/8] certs: Introduce ability to link to a system key 19+ messages
2024-04-04 21:16 [PATCH v4] Add test for io_uring openat access control with Landlock rules
2024-04-04 13:08 Re: [PATCH v3] selftests/landlock: Add tests for io_uring openat access control with Landlock rules 3+ messages
2024-04-03 22:21 Re: [RESEND][PATCH v3] security: Place security_path_post_mknod() where the original IMA call was 5+ messages
2024-04-03 16:32 Re: Subject: [PATCH] Add test for more file systems in landlock - ext4 4+ messages
2024-04-03 16:09 Re: [PATCH v2] landlock: Use kmem for landlock_object 6+ messages
2024-04-03 14:58 Re: [PATCH v3] security: Place security_path_post_mknod() where the original IMA call was 3+ messages
2024-04-03  5:10 Re: [PATCH v16 17/20] ipe: enable support for fs-verity as a trust provider 36+ messages
2024-04-03  3:16 Re: [GIT PULL] selinux/selinux-pr-20240402 2+ messages
2024-04-02 12:15 Re: [GIT PULL] security changes for v6.9-rc3 2+ messages
2024-04-02  8:18 [PATCH v2] security: Handle dentries without inode in security_path_post_mknod()
2024-04-01 20:15 [PATCH] landlock: Use kmem for object, rule, and hierarchy structures
2024-04-01 18:42 [PATCH v4][next] integrity: Avoid -Wflex-array-member-not-at-end warnings
2024-03-31 15:02 Re: [PATCH] Do not require attributes for security_inode_init_security. 13+ messages
2024-03-29 21:34 Re: [PATCH v1 1/2] lsm: Check and handle error priority for socket_bind and socket_connect 10+ messages
2024-03-29 19:56 Re: [PATCH 2/2] ima: evm: Rename *_post_path_mknod() to *_path_post_mknod() 10+ messages
2024-03-29  6:32 Re: [PATCH] LANDLOCK: use kmem_cache for landlock_object 10+ messages
2024-03-29  1:02 Re: [PATCH] ima: Fix use-after-free on a dentry's dname.name 2+ messages
2024-03-28 20:31 Re: [PATCH] landlock: Add abstract unix socket connect restrictions 2+ messages
2024-03-28 18:50 Re: [PATCH v7 6/6] docs: trusted-encrypted: add DCP as new trust source 13+ messages
2024-03-28 14:43 Re: [PATCH v2] Add Landlock test for io_uring IORING_OP_OPENAT operation
2024-03-28 13:03 Re: kernel crash in mknod 19+ messages
2024-03-27 21:41 Re: [PATCH v2 bpf-next 0/9] add new acquire/release BPF kfuncs 17+ messages
2024-03-27 10:45 Re: [PATCH] samples/landlock: Fix incorrect free in populate_ruleset_net 2+ messages
2024-03-26 18:52 Re: [PATCH v12 1/9] security: Introduce ENOFILEOPS return value for IOCTL hooks 19+ messages
2024-03-25 13:25 Re: [PATCH v11 1/9] fs: Add and use vfs_get_ioctl_handler() 12+ messages
2024-03-22 15:04 Re: [PATCH v10 6/9] selftests/landlock: Test IOCTLs on named pipes 21+ messages
2024-03-21 23:31 Re: LSM/IMA integration denying access to inode_init_security. 3+ messages
2024-03-21 17:25 Re: [PATCH RFC v15 12/21] security: add security_bdev_setintegrity() hook 41+ messages
2024-03-21 15:49 Re: [PATCH v3][next] integrity: Avoid -Wflex-array-member-not-at-end warnings 3+ messages
2024-03-21  3:55 [PATCH v2][next] integrity: Avoid -Wflex-array-member-not-at-end warnings
2024-03-21  3:39 Re: [PATCH][next] integrity: Avoid -Wflex-array-member-not-at-end warnings 4+ messages
2024-03-19 23:10 Re: [RFC PATCH 1/2] lsm: introduce new hook security_vm_execstack 8+ messages
2024-03-19 17:58 Systemd v254 LSM stacking issue - patch
2024-03-19 11:40 Re: [PATCH v2 1/2] landlock: Extend documentation for kernel support 7+ messages
2024-03-19  7:54 Re: [PATCH bpf-next 0/5] Fix kernel panic caused by bpf lsm return value 11+ messages
2024-03-17 19:20 Re: TSEM code organization. 2+ messages
2024-03-16 17:17 Re: [PATCH 02/10] capability: add any wrappers to test for multiple caps with exactly one audit message 25+ messages
2024-03-16  2:52 Re: [PATCH 11/11] sysctl: treewide: constify the ctl_table argument of handlers 13+ messages
2024-03-15 19:40 Re: [PATCH] lsm: handle the NULL buffer case in lsm_fill_user_ctx() 15+ messages
2024-03-15 13:29 Re: [syzbot] [hfs] general protection fault in tomoyo_check_acl (3) 9+ messages
2024-03-14 23:17 Re: [GIT PULL] lsm/lsm-pr-20240314 4+ messages
2024-03-14 23:14 Re: [GIT PULL] Landlock updates for v6.9 2+ messages
2024-03-14 18:18 Re: [PATCH v3] LSM: use 32 bit compatible data types in LSM syscalls. 15+ messages
2024-03-13  3:14 Re: [GIT PULL] lsm/lsm-pr-20240312 2+ messages
2024-03-13  3:14 Re: [GIT PULL] selinux/selinux-pr-20240312 2+ messages
2024-03-13  2:37 Re: [PATCH v2] integrity: eliminate unnecessary "Problem loading X.509 certificate" msg 18+ messages
2024-03-12 23:17 Re: [PATCH v15 05/11] LSM: Create lsm_list_modules system call 70+ messages
2024-03-12 22:24 Re: [GIT PULL] Smack patches for 6.9 2+ messages
2024-03-12 20:07 Re: [RFC PATCH v14 15/19] fsverity: consume builtin signature via LSM hook 36+ messages
2024-03-12 12:15 Re: [PATCH v2 6/7] kunit: Print last test location on fault 22+ messages
2024-03-12 10:58 Re: [RFC PATCH] fs: Add vfs_masks_device_ioctl*() helpers 50+ messages
2024-03-11 20:07 Re: [PATCH v6 3/6] KEYS: trusted: Introduce NXP DCP-backed trusted keys 14+ messages
2024-03-11 14:00 Re: [RFC][PATCH 5/8] ima: Record IMA verification result of digest lists in digest cache 24+ messages
2024-03-10  0:54 Re: [syzbot] [reiserfs?] possible deadlock in reiserfs_dirty_inode 6+ messages
2024-03-08 20:09 Re: [RFC 0/9] Nginx refcount scalability issue with Apparmor enabled and potential solutions 14+ messages
2024-03-07 20:03 Re: [PATCH] xattr: restrict vfs_getxattr_alloc() allocation size 7+ messages
2024-03-07 17:54 Re: [PATCH] landlock: Use f_cred in security_file_open() hook 4+ messages
2024-03-07 17:36 Re: [PATCH v39 04/42] IMA: avoid label collisions with stacked LSMs 54+ messages
2024-03-07 15:34 Re: [PATCH v5 4/6] MAINTAINERS: add entry for DCP-based trusted keys 19+ messages
2024-03-07 15:21 Re: [PATCH] samples/landlock: Don't error out if a file path cannot be opened 3+ messages
2024-03-07 15:02 Re: [PATCH] evm: Change vfs_getxattr() with __vfs_getxattr() in evm_calc_hmac_or_hash() 4+ messages
2024-03-07  9:39 [PATCH 2/2] landlock: Rename "ptrace" files to "task" 2+ messages
2024-03-07  9:27 Re: [syzbot] [reiserfs?] INFO: task hung in flush_old_commits 9+ messages
2024-03-07  9:22 Re: [syzbot] [usb] INFO: rcu detected stall in newfstatat (3) 3+ messages
2024-03-06 12:56 Re: [PATCH v2 24/25] commoncap: use vfs fscaps interfaces 87+ messages
2024-03-06 10:49 Re: [PATCH v2] proc: allow restricting /proc/pid/mem writes 24+ messages
2024-03-05  8:04 [linux-next:master] [selftests/harness]  0710a1a73f: kernel-selftests.seccomp.seccomp_bpf.TRAP.dfl.fail
2024-03-02 22:01 Re: [syzbot] [lsm?] [integrity?] KMSAN: uninit-value in ima_add_template_entry 3+ messages
2024-03-02 16:37 Re: [RFC PATCH v13 14/20] dm verity: consume root hash digest and signature data via LSM hook 30+ messages
2024-03-01 20:42 Re: [PATCH v1 8/8] kunit: Add tests for faults 26+ messages
2024-03-01 19:14 Re: [PATCH for 6.8] tomoyo: fix UAF write bug in tomoyo_write_control() 3+ messages
2024-02-29 20:33 Re: [GIT PULL] Landlock fixes for v6.8-rc7 2+ messages
2024-02-29  3:50 Re: [PATCH net-next] netlabel: remove impossible return value in netlbl_bitmap_walk 4+ messages
2024-02-28 17:46 Re: [PATCH v3 00/13] security: digest_cache LSM 17+ messages
2024-02-28  1:02 Re: [GIT PULL] lsm/lsm-pr-20240227 2+ messages
2024-02-27 16:05 Re: [syzbot] [lsm?] [reiserfs?] general protection fault in fsnotify_perm 2+ messages
2024-02-27  0:53 Re: [PATCH] proc: allow restricting /proc/pid/mem writes 8+ messages
2024-02-26 20:21 Re: [PATCH 2/2] selftests/harness: Merge TEST_F_FORK() into TEST_F() 28+ messages
2024-02-26 17:16 Re: [PATCH] landlock: Warn once if a Landlock action is requested while disabled 5+ messages
2024-02-22 21:52 Re: [PATCH] security: use default hook return value in call_int_hook() 6+ messages
2024-02-22 18:03 Re: [RFC 4/5] sbm: fix up calls to dynamic memory allocators 10+ messages
2024-02-22 10:40 [syzbot] [keyrings?] [lsm?] KASAN: slab-out-of-bounds Read in key_task_permission (2)
2024-02-22  6:41 TOCTOU-free exec(), chdir(), open() with O_PATH sandbox emulation support?
2024-02-22  0:03 Re: [PATCH] LSM: Fix typos in security/security.c comment headers 2+ messages
2024-02-21 17:40 Re: smack: Possible NULL pointer deref in cred_free hook. 13+ messages
2024-02-21 10:52 Re: [PATCH 5.4,4.19] lsm: new security_file_ioctl_compat() hook 2+ messages
2024-02-20 22:57 Re: [PATCH v2 2/9] security: allow finer granularity in permitting copy-up of security xattrs 22+ messages
2024-02-20 10:00 Re: [syzbot] [apparmor?] [ext4?] general protection fault in common_perm_cond 3+ messages
2024-02-20  7:40 memory leak in smack since de93 e515 db30 ("Smack: Improve mount process memory use")
2024-02-19 19:03 [PATCH] landlock: Fix asymmetric private inodes referring
2024-02-19 11:16 Re: [PATCH 2/13] Add TSEM specific documentation. 37+ messages
2024-02-16 22:34 Re: [PATCH v10 00/25] security: Move IMA and EVM to the LSM infrastructure 31+ messages
2024-02-16 17:11 Re: [GIT PULL] lsm/lsm-pr-20240215 2+ messages
2024-02-15 15:02 Re: [PATCH v9 12/25] security: Introduce file_post_open hook 101+ messages
2024-02-15 13:02 Re: [PATCH] security: fix integer overflow in lsm_set_self_attr() syscall 6+ messages
2024-02-15  8:52 Re: [PATCH v1 5/5] sbm: SandBox Mode documentation
2024-02-15  0:12 Re: [GIT PULL] Landlock fixes for v6.8-rc5 2+ messages
2024-02-12  5:11 Re: [PATCH] KEYS: encrypted: Add check for strsep 14+ messages
2024-02-08 14:28 Re: Calls to vfs_setlease() from NFSD code cause unnecessary CAP_LEASE security checks 4+ messages
2024-02-08  0:57 Re: [PATCH v2 1/3] LSM: add security_execve_abort() hook 17+ messages
2024-02-07 12:40 Re: [PATCH v2 1/1] netlabel: cleanup struct netlbl_lsm_catmap 3+ messages
2024-02-07  0:13 ANN: moving lsm/dev to v6.8-rc3
2024-02-06 21:53 Re: [PATCH RFC v12 15/20] ipe: add support for dm-verity as a trust provider 37+ messages
2024-02-05  7:45 [ANNOUNCE] CFP: Linux Security Summit Europe 2024
2024-02-02 19:12 Re: [PATCH 1/1] Modify macro NETLBL_CATMAP_MAPTYPE to define a type using typedef 3+ messages
2024-02-02 16:30 Re: [PATCH 4/5] evm: Use the real inode's metadata to calculate metadata hash 39+ messages
2024-02-02  2:50 Re: [PATCH] security: fix no-op hook logic in security_inode_{set,remove}xattr() 7+ messages
2024-02-01 18:23 Re: [GIT PULL] lsm/lsm-pr-20240131 2+ messages
2024-02-01 18:23 Starting to work on liblsm
2024-02-01 17:50 Re: [PATCH bpf-next] bpf: minor clean-up to sleepable_lsm_hooks BTF set 2+ messages
2024-02-01 13:38 Re: [PATCH bpf-next] bpf: add security_file_mprotect() to sleepable_lsm_hooks BTF set 2+ messages
2024-01-31 16:52 Re: Re: [PATCH v8 4/9] landlock: Add IOCTL access right 25+ messages
2024-01-30 22:01 Re: [PATCH] lsm: fix default return value of the socket_getpeersec_*  hooks 7+ messages
2024-01-30 16:31 Re: [PATCH] security: fix the logic in security_inode_getsecctx() 11+ messages
2024-01-30 10:42 Re: [PATCH 1/3] LSM: add security_bprm_aborting_creds() hook 8+ messages
2024-01-29  5:18 [PATCH] mm: init_mlocked_on_free_v2
2024-01-27 11:23 Re: [6.8-rc1 Regression] Unable to exec apparmor_parser from virt-aa-helper 18+ messages
2024-01-27  8:20 Re: [PATCH] apparmor: Fix null pointer deref when receiving skb during sock creation 4+ messages
2024-01-27  4:53 Re: [PATCH] exec: Check __FMODE_EXEC instead of in_execve for LSMs 15+ messages
2024-01-26 16:27 Re: [PATCH v3 5/5] ramfs: Initialize security of in-memory inodes 13+ messages
2024-01-25 19:26 Re: [External] Re: security_file_free contract/expectations 9+ messages
2024-01-25 15:32 [PATCH v1 2/2] selftests/landlock: Clean up error logs related to capabilities 3+ messages
2024-01-25  0:10 Re: [PATCH v2 bpf-next 00/30] BPF token 32+ messages
2024-01-24 13:13 Re: [PATCH] selftests/landlock:Fix fs_test build issues with old libc 2+ messages
2024-01-24  1:54 回复: 回复: [PATCH v4] selftests/landlock:Fix two build issues 6+ messages
2024-01-23 23:58 Re: [PATCH] io_uring: enable audit and restrict cred override for IORING_OP_FIXED_FD_INSTALL 7+ messages
2024-01-23 15:31 Re: [PATCH v4 5/6] add listmount(2) syscall 47+ messages

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).