Linux-Security-Module Archive mirror
 help / color / mirror / Atom feed
- recent:[subjects (threaded)|topics (new)|topics (active)]
2024-05-11  3:22 [PATCH] integrity: Update comment for load_moklist_certs()
2024-05-10 17:19 [PATCH net v5] netlabel: fix RCU annotation for IPv4 options on socket creation 2+ messages
2024-05-10 13:28 [syzbot] [lsm?] WARNING in collect_domain_accesses
2024-05-10  0:06 [PATCH v4 00/66] Define _GNU_SOURCE for sources using 70+ messages
2024-05-09 20:14 [PATCH v11 0/5] Reduce overhead of LSMs with static calls 10+ messages
2024-05-09 19:57 [PATCH v3 00/68] Define _GNU_SOURCE for sources using 76+ messages
2024-05-09 10:07 [PATCH net v4] netlabel: fix RCU annotation for IPv4 options on socket creation 2+ messages
2024-05-09  9:09 [syzbot] Monthly lsm report (May 2024)
2024-05-08 19:32 [syzbot] [lsm?] general protection fault in hook_inode_free_security 2+ messages
2024-05-07 22:10 [PATCH bpf-next v10 0/5] Reduce overhead of LSMs with static calls 14+ messages
2024-05-07 21:38 [PATCH v2 0/5] Define _GNU_SOURCE for sources using 33+ messages
2024-05-07 16:12 [PATCH] apparmor: fix possible NULL pointer dereference 2+ messages
2024-05-07 14:01 [PATCH] MAINTAINERS: repair file entry in SECURITY SUBSYSTEM 2+ messages
2024-05-07  9:28 [RFC][PATCH] ima: Use sequence number to wait for policy updates 3+ messages
2024-05-07  7:12 [kpsingh:static_calls_type_1] [security]  5bbd3fa92f: WARNING:at_kernel/static_call_inline.c:#__static_call_update
2024-05-07  1:25 [PATCH v3] ima: Avoid blocking in RCU read-side critical section 3+ messages
2024-05-06 10:45 [PATCH net v3] netlabel: fix RCU annotation for IPv4 options on socket creation 3+ messages
2024-05-06  8:57 [syzbot] [lsm?] general protection fault in smack_inode_permission
2024-05-05 22:39 [PATCH] apparmor: fix apparmor_socket_post_create() kernel-doc 3+ messages
2024-05-03 22:32 [PATCH v18 03/21] ipe: add evaluation loop 28+ messages
2024-05-03 13:19 [RFC PATCH v3 0/5] Hypervisor-Enforced Kernel Integrity - CR pinning 13+ messages
2024-05-03 13:09 [PATCH v3] nfsd: set security label during create operations 6+ messages
2024-05-03  0:58 [RFC PATCH] lsm: fixup the inode xattr capability handling 11+ messages
2024-05-02 19:58 [PATCH v2] nfsd: set security label during create operations 5+ messages
2024-05-02 17:58 [RFC][PATCH] nfsd: set security label during create operations 2+ messages
2024-05-02 15:42 [syzbot] [keyrings?] [lsm?] possible deadlock in keyring_clear
2024-05-01 16:07 [PATCH] MAINTAINERS: update the LSM file list 3+ messages
2024-05-01 16:02 Re: [PATCH -next] lsm: fix default return value for inode_set(remove)xattr 2+ messages
2024-04-29  9:05 Re: WARNING in current_check_refer_path 3+ messages
2024-04-28 16:39 Re: [PATCH v2] ima: Avoid blocking in RCU read-side critical section
2024-04-26 16:20 [PATCH v3 2/2] fs/xattr: add *at family syscalls 3+ messages
2024-04-25  9:21 [PATCH] MAINTAINER: Add Günther Noack as Landlock reviewer 2+ messages
2024-04-24 14:43 [PATCH net v2] netlabel: fix RCU annotation for IPv4 options on socket creation 4+ messages
2024-04-23  7:54 [PATCH v3 05/11] neighbour: constify ctl_table arguments of utility function 26+ messages
2024-04-20 11:12 [PATCH v2] tty: n_gsm: restrict tty devices to attach 10+ messages
2024-04-19 16:11 [PATCH v15 00/11] Landlock: IOCTL support 13+ messages
2024-04-16 15:29 [PATCH 0/2] cipso: make cipso_v4_skbuff_delattr() fully remove the CIPSO options 9+ messages
2024-04-15 16:10 [RFC][PATCH v2 0/9] ima: Integrate with digest_cache LSM 10+ messages
2024-04-15 14:24 [PATCH v4 02/14] security: Introduce the digest_cache LSM 42+ messages
2024-04-15 14:16 [PATCH v4 00/14] security: digest_cache LSM
2024-04-15  5:30 [kpsingh:static_calls] [security]  9e15595ed0: Kernel_panic-not_syncing:lsm_static_call_init-Ran_out_of_static_slots 8+ messages
2024-04-15  2:07 [PATCH v2 1/1] mm: change inlined allocation helpers to account at the call site 2+ messages
2024-04-13  0:55 [PATCH v17 01/21] security: add ipe lsm 32+ messages
2024-04-11 15:44 [PATCH net] netlabel: fix RCU annotation for IPv4 options on socket creation 5+ messages
2024-04-11 12:27 [PATCH bpf-next v3 04/11] bpf, lsm: Add bpf lsm disabled hook list 31+ messages
2024-04-09 17:57 [PATCH v3 1/2] proc: restrict /proc/pid/mem access via param knobs 5+ messages
2024-04-09 17:22 Hardcoded security module suggestion - stop the stacking insanity 8+ messages
2024-04-08  9:47 [PATCH 0/2] Forbid illegitimate binding via listen(2) 6+ messages
2024-04-08  9:39 [RFC PATCH v1 00/10] Socket type control for Landlock 20+ messages
2024-04-08  7:46 [PATCH v4 RESEND 1/7] kunit: Handle thread creation error 9+ messages
2024-04-05 21:40 [PATCH v14 00/12] Landlock: IOCTL support 30+ messages
2024-04-04 21:16 [PATCH v4] Add test for io_uring openat access control with Landlock rules
2024-04-04 16:54 [PATCH 1/1] mm: change inlined allocation helpers to account at the call site 14+ messages
2024-04-04 15:00 [PATCH v5][next] integrity: Avoid -Wflex-array-member-not-at-end warnings 5+ messages
2024-04-03  9:07 [RESEND][PATCH v3] security: Place security_path_post_mknod() where the original IMA call was 5+ messages
2024-04-03  7:57 [PATCH v3] security: Place security_path_post_mknod() where the original IMA call was 3+ messages
2024-04-03  7:21 [PATCH v8 0/6] DCP as trusted keys backend 20+ messages
2024-04-03  3:11 [GIT PULL] selinux/selinux-pr-20240402 2+ messages
2024-04-02 14:47 Re: [PATCH v3] selftests/landlock: Add tests for io_uring openat access control with Landlock rules 3+ messages
2024-04-02 14:11 [GIT PULL] security changes for v6.9-rc3 12+ messages
2024-04-02  9:21 [GIT PULL] security changes for v6.9-rc3 2+ messages
2024-04-02  8:18 [PATCH v2] security: Handle dentries without inode in security_path_post_mknod()
2024-04-02  8:07 Subject: [PATCH] Add test for more file systems in landlock - ext4 4+ messages
2024-04-01 20:15 [PATCH] landlock: Use kmem for object, rule, and hierarchy structures
2024-04-01 18:42 [PATCH v4][next] integrity: Avoid -Wflex-array-member-not-at-end warnings
2024-04-01 10:50 [PATCH v3 00/12] Implement Trusted Security Event Modeling. 17+ messages
2024-03-30 13:54 [PATCH v2] landlock: Use kmem for landlock_object 6+ messages
2024-03-29 10:56 [PATCH 1/2] security: Handle dentries without inode in security_path_post_mknod() 10+ messages
2024-03-29  2:42 [linus:master] [selftests/harness]  0710a1a73f: kernel-selftests.pidfd.pidfd_setns_test.fail 2+ messages
2024-03-28 23:12 [PATCH v2] landlock: Add abstract unix socket connect restrictions 4+ messages
2024-03-28 20:17 [PATCH v16 03/20] ipe: add evaluation loop 36+ messages
2024-03-28 20:07 [PATCH] landlock: Add abstract unix socket connect restrictions 2+ messages
2024-03-28 15:57 [PATCH 0/7] sysctl: Remove sentinel elements from misc directories 18+ messages
2024-03-28 14:43 Re: [PATCH v2] Add Landlock test for io_uring IORING_OP_OPENAT operation
2024-03-27 23:25 [PATCH] LANDLOCK: use kmem_cache for landlock_object 10+ messages
2024-03-27 13:10 [PATCH v13 00/10] Landlock: IOCTL support 26+ messages
2024-03-27 12:00 [PATCH v1 2/2] selftests/landlock: Improve AF_UNSPEC tests 10+ messages
2024-03-27  8:24 [PATCH v7 0/6] DCP as trusted keys backend 13+ messages
2024-03-26  9:56 [PATCH] samples/landlock: Fix incorrect free in populate_ruleset_net 2+ messages
2024-03-26  9:51 [PATCH v4 1/7] kunit: Handle thread creation error 11+ messages
2024-03-25 13:39 [PATCH v12 0/9] Landlock: IOCTL support 19+ messages
2024-03-25  9:56 [PATCH bpf-next v2 0/7] Add check for bpf lsm return value 13+ messages
2024-03-24 22:32 [PATCH] Do not require attributes for security_inode_init_security. 13+ messages
2024-03-24 16:50 RE: kernel crash in mknod 19+ messages
2024-03-22 15:09 [PATCH v11 0/9] Landlock: IOCTL support 12+ messages
2024-03-22 14:03 [PATCH] ima: Fix use-after-free on a dentry's dname.name 2+ messages
2024-03-21  4:11 [PATCH v3][next] integrity: Avoid -Wflex-array-member-not-at-end warnings 3+ messages
2024-03-21  3:55 [PATCH v2][next] integrity: Avoid -Wflex-array-member-not-at-end warnings
2024-03-19 17:58 Systemd v254 LSM stacking issue - patch
2024-03-19 10:48 [PATCH v3 0/7] Handle faults in KUnit tests 15+ messages
2024-03-18  9:38 LSM/IMA integration denying access to inode_init_security. 3+ messages
2024-03-16 12:23 [PATCH bpf-next 0/5] Fix kernel panic caused by bpf lsm return value 11+ messages
2024-03-16 10:47 TSEM code organization. 2+ messages
2024-03-16  3:35 [RFC PATCH v15 03/21] ipe: add evaluation loop 41+ messages
2024-03-15 20:47 [PATCH 00/11] sysctl: treewide: constify ctl_table argument of sysctl handlers 13+ messages
2024-03-15 18:08 [RFC PATCH 2/2] selinux: wire up new execstack LSM hook 8+ messages
2024-03-15 12:54 [PATCH 2/2] apparmor: fix typo in kernel doc 7+ messages
2024-03-15 11:37 [PATCH 01/10] capability: introduce new capable flag CAP_OPT_NOAUDIT_ONDENY 25+ messages
2024-03-14 20:31 [GIT PULL] lsm/lsm-pr-20240314 4+ messages
2024-03-14  2:22 [PATCH] lsm: handle the NULL buffer case in lsm_fill_user_ctx() 15+ messages
2024-03-13 17:53 [GIT PULL] Landlock updates for v6.9 2+ messages
2024-03-12 23:20 [GIT PULL] lsm/lsm-pr-20240312 2+ messages
2024-03-12 23:18 [GIT PULL] selinux/selinux-pr-20240312 2+ messages
2024-03-12 22:13 [PATCH] LSM: use 32 bit compatible data types in LSM syscalls. 15+ messages
2024-03-11 20:47 [GIT PULL] Smack patches for 6.9 2+ messages
2024-03-11 16:11 [PATCH RFC 3/8] efi: Make clavis boot param persist across kexec 19+ messages
2024-03-09  7:53 [PATCH v10 0/9] Landlock: IOCTL support 21+ messages
2024-03-07 15:38 [PATCH v5 0/6] DCP as trusted keys backend 14+ messages
2024-03-07 14:38 [PATCH] samples/landlock: Don't error out if a file path cannot be opened 3+ messages
2024-03-07 12:22 [PATCH] evm: Change vfs_getxattr() with __vfs_getxattr() in evm_calc_hmac_or_hash() 4+ messages
2024-03-07  9:52 [PATCH] landlock: Use f_cred in security_file_open() hook 4+ messages
2024-03-07  9:39 [PATCH 1/2] landlock: Simplify current_check_access_socket() 2+ messages
2024-03-06 23:34 [RFC PATCH v14 01/19] security: add ipe lsm 36+ messages
2024-03-06 12:13 Re: [PATCH v2 bpf-next 0/9] add new acquire/release BPF kfuncs 17+ messages
2024-03-05 12:27 [PATCH] xattr: restrict vfs_getxattr_alloc() allocation size 7+ messages
2024-03-05  8:04 [linux-next:master] [selftests/harness]  0710a1a73f: kernel-selftests.seccomp.seccomp_bpf.TRAP.dfl.fail
2024-03-04 17:52 [PATCH][next] integrity: Avoid -Wflex-array-member-not-at-end warnings 4+ messages
2024-03-04 16:36 [PATCH][next] apparmor: remove useless static inline function is_deleted 2+ messages
2024-03-01 21:34 [PATCH v2] proc: allow restricting /proc/pid/mem writes 24+ messages
2024-03-01 19:40 [PATCH v2 1/7] kunit: Handle thread creation error 22+ messages
2024-03-01  8:32 [Linux Kernel Bug] KASAN: slab-out-of-bounds Write in tomoyo_write_control 3+ messages
2024-02-29 18:18 [GIT PULL] Landlock fixes for v6.8-rc7 2+ messages
2024-02-29 17:04 [PATCH v1 1/8] kunit: Run tests when the kernel is fully setup 26+ messages
2024-02-29  0:59 [PATCH v4 00/12] selftests: kselftest_harness: support using xfail 44+ messages
2024-02-29  0:54 [RFC PATCH v13 03/20] ipe: add evaluation loop 30+ messages
2024-02-27 22:57 [GIT PULL] lsm/lsm-pr-20240227 2+ messages
2024-02-27 11:05 [PATCH v2 2/2] landlock: Warn once if a Landlock action is requested while disabled 7+ messages
2024-02-27  9:36 [PATCH net-next] netlabel: remove impossible return value in netlbl_bitmap_walk 4+ messages
2024-02-23 19:05 [PATCH 2/2] AppArmor: Fix lsm_get_self_attr() 16+ messages
2024-02-23 17:25 [PATCH v3 00/10] evm: Support signatures on stacked filesystem 20+ messages
2024-02-22 10:40 [syzbot] [keyrings?] [lsm?] KASAN: slab-out-of-bounds Read in key_task_permission (2)
2024-02-22  6:41 TOCTOU-free exec(), chdir(), open() with O_PATH sandbox emulation support?
2024-02-21 21:24 [PATCH v2 00/25] fs: use type-safe uid representation for filesystem capabilities 87+ messages
2024-02-21 21:06 [PATCH] proc: allow restricting /proc/pid/mem writes 8+ messages
2024-02-20 19:22 [PATCH net-next v3 00/11] selftests: kselftest_harness: support using xfail 28+ messages
2024-02-20  7:40 memory leak in smack since de93 e515 db30 ("Smack: Improve mount process memory use")
2024-02-20  6:41 [syzbot] [integrity?] [lsm?] KMSAN: uninit-value in ima_add_template_entry 3+ messages
2024-02-19 19:18 [PATCH] landlock: Warn once if a Landlock action is requested while disabled 5+ messages
2024-02-19 19:03 [PATCH] landlock: Fix asymmetric private inodes referring
2024-02-17 13:35 [PATCH] LSM: Fix typos in security/security.c comment headers 2+ messages
2024-02-16 18:24 Re: [RFC 0/8] PGP key parser using SandBox Mode 10+ messages
2024-02-15 22:19 [GIT PULL] lsm/lsm-pr-20240215 2+ messages
2024-02-15 10:30 [PATCH v10 00/25] security: Move IMA and EVM to the LSM infrastructure 31+ messages
2024-02-15  8:52 Re: [PATCH v1 5/5] sbm: SandBox Mode documentation
2024-02-14 16:05 [PATCH] security: fix integer overflow in lsm_set_self_attr() syscall 6+ messages
2024-02-14 14:35 [RFC][PATCH 0/8] ima: Integrate with digest_cache LSM 24+ messages
2024-02-14 14:20 [GIT PULL] Landlock fixes for v6.8-rc5 2+ messages
2024-02-09 17:06 [PATCH v9 0/8] Landlock: IOCTL support 50+ messages
2024-02-09 14:09 [PATCH v3 00/13] security: digest_cache LSM 17+ messages
2024-02-07 12:49 [PATCH v9 0/4] Reduce overhead of LSMs with static calls 10+ messages
2024-02-07  0:13 ANN: moving lsm/dev to v6.8-rc3
2024-02-06 14:31 Re: smack: Possible NULL pointer deref in cred_free hook. 13+ messages
2024-02-06 13:58 [PATCH v3 0/3] fs/exec: remove current->in_execve flag 12+ messages
2024-02-06  1:29 [PATCH 5.4,4.19] lsm: new security_file_ioctl_compat() hook 2+ messages
2024-02-05 18:25 [PATCH v2 9/9] ima: Record i_version of real_inode for change detection 22+ messages
2024-02-05  7:45 [ANNOUNCE] CFP: Linux Security Summit Europe 2024
2024-02-04  2:35 [PATCH v2 1/1] netlabel: cleanup struct netlbl_lsm_catmap 3+ messages
2024-02-03 10:52 [PATCH v2 0/3] fs/exec: remove current->in_execve flag 17+ messages
2024-02-02 15:31 Calls to vfs_setlease() from NFSD code cause unnecessary CAP_LEASE security checks 4+ messages
2024-02-02  3:44 [PATCH 1/1] Modify macro NETLBL_CATMAP_MAPTYPE to define a type using typedef 3+ messages
2024-02-01 18:23 Starting to work on liblsm
2024-02-01 14:24 [PATCH] apparmor: use kvfree_sensitive to free data->data 2+ messages
2024-02-01 10:43 [PATCH bpf-next] bpf: add security_file_mprotect() to sleepable_lsm_hooks BTF set 2+ messages
2024-02-01 10:43 [PATCH bpf-next] bpf: minor clean-up to sleepable_lsm_hooks BTF set 2+ messages
2024-01-31 23:46 [GIT PULL] lsm/lsm-pr-20240131 2+ messages
2024-01-30 22:36 [RFC PATCH v12 01/20] security: add ipe lsm 37+ messages
2024-01-30 21:46 [PATCH 5/5] evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509 39+ messages
2024-01-30 12:56 [PATCH] security: use default hook return value in call_int_hook() 6+ messages
2024-01-29 13:30 [PATCH] security: fix no-op hook logic in security_inode_{set,remove}xattr() 7+ messages
2024-01-29  5:18 [PATCH] mm: init_mlocked_on_free_v2
2024-01-28 14:16 [PATCH 0/3] fs/exec: remove current->in_execve flag 8+ messages
2024-01-26 18:45 [PATCH] lsm: fix default return value of the socket_getpeersec_* hooks 7+ messages
2024-01-26 10:44 [PATCH] security: fix the logic in security_inode_getsecctx() 11+ messages
2024-01-25 15:32 [PATCH v1 2/2] selftests/landlock: Clean up error logs related to capabilities 3+ messages
2024-01-24 23:46 security_file_free contract/expectations 9+ messages
2024-01-24 19:22 [PATCH] exec: Check __FMODE_EXEC instead of in_execve for LSMs 15+ messages
2024-01-24 16:35 Re: [6.8-rc1 Regression] Unable to exec apparmor_parser from virt-aa-helper 18+ messages
2024-01-24  2:29 [PATCH] selftests/landlock:Fix fs_test build issues with old libc 2+ messages
2024-01-24  2:20 [PATCH v2 bpf-next 00/30] BPF token 32+ messages
2024-01-23 21:55 [PATCH] io_uring: enable audit and restrict cred override for IORING_OP_FIXED_FD_INSTALL 7+ messages
2024-01-15 18:17 [PATCH v9 00/25] security: Move IMA and EVM to the LSM infrastructure 101+ messages
2024-01-15 10:24 [PATCH v4] selftests/landlock:Fix two build issues 6+ messages
2024-01-10 11:11 [RFC 0/9] Nginx refcount scalability issue with Apparmor enabled and potential solutions 14+ messages
2023-12-27  4:41 [PATCH] integrity: don't throw an error immediately when failed to add a cert to the .machine keyring 18+ messages
2023-12-15 22:15 [PATCH v39 00/42] LSM: General module stacking 54+ messages
2023-12-15 11:06 [PATCH v5 0/6] DCP as trusted keys backend 19+ messages
2023-12-08 15:51 [PATCH v8 0/9] Landlock: IOCTL support 25+ messages
2023-11-16  9:01 [PATCH v3 0/5] Smack transmute fixes 13+ messages
2023-11-08  7:36 [PATCH] KEYS: encrypted: Add check for strsep 14+ messages
2023-11-06 22:53 Re: [syzbot] [reiserfs?] possible deadlock in reiserfs_dirty_inode 6+ messages
2023-10-25 14:01 [PATCH v4 1/6] add unique mount ID 47+ messages
2023-09-12 20:56 [PATCH v15 01/11] LSM: Identify modules by more than name 70+ messages
2023-09-02  0:48 [PATCH] apparmor: Fix null pointer deref when receiving skb during sock creation 4+ messages
2023-07-20  1:11 [syzbot] [apparmor?] [ext4?] general protection fault in common_perm_cond 3+ messages
2023-07-10 10:23 [PATCH 01/13] Update MAINTAINERS file. 37+ messages
2023-07-07 12:09 [syzbot] [tomoyo?] [hfs?] general protection fault in tomoyo_check_acl (3) 9+ messages
2023-06-29 17:47 [syzbot] [lsm?] [reiserfs?] general protection fault in fsnotify_perm 2+ messages
2023-06-10  9:07 [syzbot] [tomoyo?] [fs?] INFO: rcu detected stall in newfstatat (3) 3+ messages
2023-05-24 15:11 Re: [syzbot] [reiserfs?] INFO: task hung in flush_old_commits 9+ messages
2020-07-29 20:23 general protection fault in security_inode_getattr 16+ messages

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).