linux-security-module archive · April 2019
817 messages across 88 threads, ordered by last activity .
-
STALE2700d
[GIT PULL] keys: Namespacing
2019-04-30 22:39 · 0 replies this month · David Howells <dhowells@redhat.com> -
STALE2694d
Add support for TCG2 log format on UEFI systems
2019-04-30 21:35 · 8 replies this month · Matthew Garrett <hidden> -
STALE2694d
[PULL] Smack: Repair for 5.2 build issue.
2019-04-30 21:29 · 0 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2698d
[PATCH V32 0/27] Lockdown patches for 5.2
2019-04-30 19:19 · 40 replies this month · Matthew Garrett <hidden> -
STALE2700d
[GIT PULL] SELinux fixes for v5.1 (#3)
2019-04-30 18:25 · 1 reply this month · Paul Moore <paul@paul-moore.com> -
STALE2698d
[RFC PATCH 0/7] x86: introduce system calls addess space isolation
2019-04-30 16:44 · 36 replies this month · Mike Rapoport <hidden> -
STALE2701d
[PULL] Smack: one more change for 5.2
2019-04-30 16:08 · 2 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2701d
[PATCH 00/11] keys: Namespacing [ver #2]
2019-04-30 15:08 · 11 replies this month · David Howells <dhowells@redhat.com> -
STALE2546d
[PATCH 1/2] apparmor: Use a memory pool instead per-CPU caches
2019-04-30 14:47 · 4 replies this month · Sebastian Andrzej Siewior <bigeasy@linutronix.de> -
STALE2701d
[PATCH 1/3] selinux: Check address length before reading address family
2019-04-29 20:21 · 7 replies this month · Tetsuo Handa <penguin-kernel@I-love.SAKURA.ne.jp> -
STALE2701d
[PATCH] tomoyo: Change pathname calculation for read-only filesystems.
2019-04-29 20:07 · 2 replies this month · Tetsuo Handa <penguin-kernel@I-love.SAKURA.ne.jp> -
STALE2701d
[PATCH (resend)] tomoyo: Add a kernel config option for fuzzing testing.
2019-04-29 20:07 · 4 replies this month · Tetsuo Handa <penguin-kernel@I-love.SAKURA.ne.jp> -
STALE2702d
[PATCH] proc: prevent changes to overridden credentials
2019-04-29 13:57 · 5 replies this month · Paul Moore <paul@paul-moore.com> -
DORMANTno replies
Zdravstvuyte! Vas interesuyut kliyentskiye bazy dannykh?
2019-04-27 15:03 · 0 replies this month · <hidden> -
STALE2701d
[PATCH v6 00/24] x86: text_poke() fixes and executable lockdowns
2019-04-27 10:32 · 26 replies this month · <hidden> -
STALE2703d
REVIEWED: 3 (0M) [PATCH AUTOSEL 5.0 52/79] KEYS: trusted: fix -Wvarags warning
2019-04-27 01:53 · 0 replies this month · Sasha Levin <sashal@kernel.org> -
STALE404d
[PATCH v5 00/23] x86: text_poke() fixes and executable lockdowns
2019-04-26 16:43 · 26 replies this month · Nadav Amit <hidden> -
STALE2705d
Re: [PATCH 1/3] mm: security: introduce the init_allocations=1 boot option
2019-04-26 15:48 · 1 reply this month · Christopher Lameter <hidden> -
STALE2705d
[PATCH 0/3] RFC: add init_allocations=1 boot option
2019-04-26 14:14 · 21 replies this month · Alexander Potapenko <glider@google.com> -
STALE2705d
[PULL REQUEST] Kernel lockdown patches for 5.2
2019-04-25 21:44 · 2 replies this month · Matthew Garrett <hidden> -
STALE2705d
[PATCH v4 00/23] Merge text_poke fixes and executable lockdowns
2019-04-25 21:22 · 34 replies this month · Rick Edgecombe <rick.p.edgecombe@intel.com> -
STALE2705d
Re: smack ( on host ) + apparmor ( on docker ) - possible ?
2019-04-25 19:22 · 1 reply this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2706d
[PATCH 00/11] keys: Namespacing
2019-04-25 11:38 · 17 replies this month · David Howells <dhowells@redhat.com> -
STALE2706d
[PATCH v3 0/3] Refactor memory initialization hardening
2019-04-24 21:09 · 7 replies this month · Kees Cook <hidden> -
STALE2707d
[PATCH v2 0/3] Refactor memory initialization hardening
2019-04-24 04:06 · 12 replies this month · Kees Cook <hidden> -
STALE2627d
[PATCH v20 16/28] x86/sgx: Add provisioning
2019-04-24 01:34 · 3 replies this month · Jarkko Sakkinen <hidden> -
STALE2707d
Re: kernel BUG at kernel/cred.c:434!
2019-04-23 20:19 · 26 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2693d
[PATCH] apparmor: Force type-casting of current->real_cred
2019-04-23 16:53 · 0 replies this month · Bharath Vedartham <hidden> -
STALE2698d
Re: [PATCH] kexec_buffer measure
2019-04-23 00:18 · 0 replies this month · Mimi Zohar <zohar@linux.ibm.com> -
STALE2700d
Re: [RFC PATCH v9 03/13] mm: Add support for eXclusive Page Frame Ownership (XPFO)
2019-04-22 22:23 · 7 replies this month · Thomas Gleixner <hidden> -
STALE2708d
[PATCH 00/90] LSM: Module stacking for all
2019-04-22 21:01 · 88 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2695d
[PATCH v2 23/79] docs: netlabel: convert docs to ReST and rename to *.rst
2019-04-22 18:11 · 1 reply this month · Mauro Carvalho Chehab <mchehab+samsung@kernel.org> -
STALE2711d
[PATCHv2] added ima hook for buffer, being enabled as a policy
2019-04-20 00:01 · 2 replies this month · Prakhar Srivastava <hidden> -
STALE2695d
[PATCH 00/57] Convert files to ReST
2019-04-19 22:11 · 4 replies this month · Mauro Carvalho Chehab <mchehab+samsung@kernel.org> -
STALE2713d
[PATCH v2 0/2] RFC: introduce CONFIG_INIT_ALL_MEMORY
2019-04-18 13:02 · 9 replies this month · Alexander Potapenko <glider@google.com> -
STALE2268d
fanotify and LSM path hooks
2019-04-18 10:53 · 11 replies this month · Amir Goldstein <amir73il@gmail.com> -
STALE2672d
[PATCH v10 00/12] Appended signatures support for IMA appraisal
2019-04-18 03:53 · 12 replies this month · Thiago Jung Bauermann <hidden> -
STALE2700d
Re: [RFC PATCH v9 03/13] mm: Add support for eXclusive Page Frame Ownership (XPFO)
2019-04-17 21:20 · 10 replies this month · Ingo Molnar <mingo@kernel.org> -
STALE2714d
[PATCH] mm: security: introduce CONFIG_INIT_HEAP_ALL
2019-04-17 17:04 · 12 replies this month · Alexander Potapenko <glider@google.com> -
STALE2714d
Re: [RFC PATCH v1 1/5] fs: Add support for an O_MAYEXEC flag on sys_open()
2019-04-17 15:04 · 1 reply this month · Florian Weimer <hidden> -
STALE2603d
[RFC PATCH v1 0/5] Add support for O_MAYEXEC
2019-04-17 15:03 · 2 replies this month · Mickaël Salaün <mic@digikod.net> -
STALE2714d
crypto: Kernel memory overwrite attempt detected to spans multiple pages
2019-04-17 09:54 · 22 replies this month · Geert Uytterhoeven <geert@linux-m68k.org> -
STALE2714d
[PATCH] apparmor: fix spelling mistake "immutible" -> "immutable"
2019-04-16 19:56 · 1 reply this month · Colin King <hidden> -
STALE2715d
Re: [RFC PATCH v1 1/5] fs: Add support for an O_MAYEXEC flag on sys_open()
2019-04-16 15:34 · 1 reply this month · Florian Weimer <hidden> -
STALE2715d
[PULL] Smack: Changes for 5.2
2019-04-16 00:33 · 1 reply this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2716d
[PATCH] TCG2 log support build fixes for non-x86_64
2019-04-15 08:47 · 11 replies this month · Matthew Garrett <hidden> -
STALE2718d
[GIT PULL] linux-integrity patches for Linux 5.2
2019-04-12 22:22 · 1 reply this month · Mimi Zohar <zohar@linux.ibm.com> -
STALE2719d
Re: [PATCH] net: socket: Always initialize family field at move_addr_to_kernel().
2019-04-12 00:24 · 3 replies this month · Tetsuo Handa <penguin-kernel@i-love.sakura.ne.jp> -
STALE2694d
[PATCH v2 09/10] LSM: SafeSetID: verify transitive constrainedness
2019-04-11 20:38 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2694d
[PATCH v2 08/10] LSM: SafeSetID: add read handler
2019-04-11 20:38 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2719d
[PATCH v4 0/3] RFC: introduce CONFIG_INIT_ALL_MEMORY
2019-04-11 17:40 · 7 replies this month · Alexander Potapenko <glider@google.com> -
STALE2720d
[PATCH 0/3] Kconfig: Refactor memory initialization hardening
2019-04-11 17:12 · 8 replies this month · Kees Cook <hidden> -
STALE2720d
[PATCH] security: inode: fix a missing check for securityfs_create_file
2019-04-10 22:00 · 3 replies this month · Kangjie Lu <hidden> -
STALE2720d
Re: KASAN: use-after-free Read in path_lookupat
2019-04-10 19:45 · 1 reply this month · Al Viro <viro@zeniv.linux.org.uk> -
STALE2694d
[PATCH 07/10] LSM: SafeSetID: rewrite userspace API to atomic updates
2019-04-10 18:20 · 3 replies this month · Micah Morton <mortonm@chromium.org> -
STALE2720d
[PATCH 09/10] LSM: SafeSetID: verify transitive constrainedness
2019-04-10 18:17 · 3 replies this month · Micah Morton <mortonm@chromium.org> -
STALE2720d
[PATCH 08/10] LSM: SafeSetID: add read handler
2019-04-10 17:42 · 2 replies this month · Micah Morton <mortonm@chromium.org> -
STALE2720d
[PATCH] Yama: mark function as static
2019-04-10 17:37 · 1 reply this month · Mukesh Ojha <hidden> -
STALE2720d
[PATCH] keys: safe concurrent user->{session,uid}_keyring access
2019-04-10 17:31 · 1 reply this month · Jann Horn <jannh@google.com> -
STALE2721d
[PATCH] security: don't use RCU accessors for cred->session_keyring
2019-04-10 17:29 · 1 reply this month · Jann Horn <jannh@google.com> -
STALE2694d
[PATCH 10/10] LSM: SafeSetID: fix use of literal -1 in capable hook
2019-04-10 17:29 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2721d
[PATCH] Yama: mark local symbols as static
2019-04-10 17:26 · 1 reply this month · Jann Horn <jannh@google.com> -
STALE2721d
[PATCH v5 1/2] LSM: SafeSetID: gate setgid transitions
2019-04-10 17:21 · 2 replies this month · mortonm@chromium.org -
STALE2721d
[PATCH 00/59] LSM: Module stacking for AppArmor
2019-04-10 17:19 · 65 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2694d
[PATCH 06/10] LSM: SafeSetID: fix userns handling in securityfs
2019-04-10 17:16 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2694d
[PATCH 05/10] LSM: SafeSetID: refactor policy parsing
2019-04-10 17:15 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2694d
[PATCH 04/10] LSM: SafeSetID: refactor safesetid_security_capable()
2019-04-10 17:14 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2694d
[PATCH 03/10] LSM: SafeSetID: refactor policy hash table
2019-04-10 17:13 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2694d
[PATCH 02/10] LSM: SafeSetID: fix check for setresuid(new1, new2, new3)
2019-04-10 17:11 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2694d
[PATCH 01/10] LSM: SafeSetID: fix pr_warn() to include newline
2019-04-10 17:09 · 1 reply this month · Micah Morton <mortonm@chromium.org> -
STALE2721d
[GIT PULL] apparmor regression fix for v5.1-rc5
2019-04-10 16:50 · 1 reply this month · John Johansen <john.johansen@canonical.com> -
STALE2718d
Re: [PATCH v3 bpf-next 00/21] bpf: Sysctl hook
2019-04-09 23:35 · 3 replies this month · Jann Horn <jannh@google.com> -
STALE2721d
[PATCH 1/1] Smack: Create smack_rule cache to optimize memory usage
2019-04-09 23:30 · 1 reply this month · Vishal Goel <hidden> -
STALE2721d
[PATCH 1/1] Smack :- In this patch, global rule list has been removed. Now all smack rules will be read using "smack_known_list". This list contains all the smack labels and internally each smack label structure maintains the list of smack rules corresponding to that smack label. So there is no need to maintain extra list.
2019-04-09 23:29 · 1 reply this month · Vishal Goel <hidden> -
STALE2718d
Re: [PATCH v3 bpf-next 00/21] bpf: Sysctl hook
2019-04-09 23:18 · 3 replies this month · Kees Cook <hidden> -
DORMANTno replies
[ANNOUNCE][CFP] Linux Security Summit North America 2019
2019-04-09 22:35 · 0 replies this month · James Morris <jmorris@namei.org> -
DORMANTno replies
Sorry about duplicates on the stacking patches
2019-04-09 21:47 · 0 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2721d
[PATCH] apparmor: Restore Y/N in /sys for apparmor's "enabled"
2019-04-09 21:17 · 10 replies this month · Kees Cook <hidden> -
STALE2721d
[PATCH 00/59] LSM: Module stacking for AppArmor
2019-04-09 20:12 · 40 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2721d
[PATCH 00/59] LSM: Module stacking for AppArmor
2019-04-09 19:21 · 47 replies this month · Casey Schaufler <casey@schaufler-ca.com> -
STALE2722d
[PATCH v3 0/2] RFC: introduce CONFIG_INIT_ALL_MEMORY
2019-04-09 17:07 · 11 replies this month · Alexander Potapenko <glider@google.com> -
STALE2722d
[PATCH v19 17/27] x86/sgx: Add provisioning
2019-04-09 13:37 · 6 replies this month · Jarkko Sakkinen <hidden> -
STALE2722d
[GIT PULL] TPM fixes for v5.1
2019-04-09 03:15 · 1 reply this month · James Morris <jmorris@namei.org> -
STALE2722d
[GIT PULL] tpmdd fixes for Linux v5.1
2019-04-08 22:14 · 3 replies this month · Jarkko Sakkinen <hidden> -
STALE2723d
[REGRESSION] AppArmor module parameter layout changed with c5459b829b716
2019-04-08 15:03 · 1 reply this month · David Rheinsberg <hidden> -
STALE2700d
Re: [RFC PATCH v9 00/13] Add support for eXclusive Page Frame Ownership
2019-04-04 17:18 · 1 reply this month · Nadav Amit <hidden> -
STALE2727d
Re: Should mprotect(..., PROT_EXEC) be checked by IMA?
2019-04-04 11:44 · 15 replies this month · Mimi Zohar <zohar@linux.ibm.com> -
DORMANTno replies
[PATCH] Smack: Fix IPv6 handling of 0 secmark
2019-04-03 22:01 · 0 replies this month · Casey Schaufler <casey@schaufler-ca.com>