Linux Security Modules development
 help / color / mirror / Atom feed
 messages from 2026-05-19 20:50:17 to 2026-05-24 05:20:13 UTC [more...]

[PATCH v8 0/3]
 2026-05-24  5:20 UTC  (5+ messages)
` [PATCH v8 1/3] lib/asn1_encoder: Add asn1_encode_integer_bytes()
` [PATCH v8 2/3] crypto: Migrate TPMKey ASN.1 objects from trusted-keys
` [PATCH v8 3/3] keys: asymmetric: tpm2_asymmetric

[PATCH net v2 0/4] net: trust-after-modification fixes for IPv4 options + netlabel
 2026-05-24  4:14 UTC  (3+ messages)
` [PATCH net v2 3/4] netlabel: validate CALIPSO option against skb tail in netlbl_skbuff_getattr
` [PATCH net v2 4/4] netlabel: validate CIPSO "

[PATCH v8 0/9] Implement LANDLOCK_ADD_RULE_QUIET
 2026-05-24  1:29 UTC  (4+ messages)
` [PATCH v8 1/9] landlock: Add a place for flags to layer rules

[PATCH bpf-next 00/13] Signed BPF + IPE Policies
 2026-05-24  0:55 UTC  (26+ messages)
` [PATCH bpf-next 01/13] bpf: expose signature verdict to LSMs via bpf_prog_aux
` [PATCH bpf-next 02/13] bpf: include prog BTF in the signed loader signature scope
` [PATCH bpf-next 03/13] bpf, libbpf: load prog BTF in the skel_internal loader
` [PATCH bpf-next 04/13] bpf: add bpf_loader_verify_metadata kfunc
` [PATCH bpf-next 05/13] bpf: compute prog->digest at BPF_PROG_LOAD entry
` [PATCH bpf-next 06/13] bpf: resolve loader-style kfunc CALLs against prog BTF
` [PATCH bpf-next 07/13] libbpf: generate prog BTF for loader programs
` [PATCH bpf-next 08/13] bpftool gen: embed loader prog BTF in the lskel header
` [PATCH bpf-next 09/13] lsm: add bpf_prog_load_post_integrity hook
` [PATCH bpf-next 10/13] bpf: invoke security_bpf_prog_load_post_integrity from the metadata kfunc
` [PATCH bpf-next 11/13] ipe: add BPF program signature properties
` [PATCH bpf-next 12/13] ipe: gate post-integrity BPF program loads
` [PATCH bpf-next 13/13] selftests/bpf: add IPE BPF policy integration tests

[RFC PATCH] ipe: support multiple BPF integrity verification LSMs
 2026-05-24  0:39 UTC  (3+ messages)

[PATCH] lsm,bpf: fix security_bpf_prog_load() error handling
 2026-05-23 17:44 UTC  (6+ messages)

[PATCH] crypto: pkcs7: export verify_pkcs7_message_sig() as EXPORT_SYMBOL_GPL
 2026-05-23 15:57 UTC 

[PATCH bpf v3 0/2] gen_loader fixes
 2026-05-23 15:12 UTC  (7+ messages)
` [PATCH bpf v3 1/2] libbpf: fix off-by-one in emit_signature_match jump offset
` [PATCH bpf v3 2/2] bpf, libbpf: reject non-exclusive metadata maps in the signed loader

[PATCH 0/4] firmware: arm_ffa: Move core init to platform driver probe
 2026-05-23  6:27 UTC  (7+ messages)
` [PATCH 2/4] firmware: arm_ffa: Register core as a platform driver

[PATCH 00/11] Convert moduleparams to seq_buf
 2026-05-23  0:45 UTC  (21+ messages)
` [PATCH 01/11] params: bound array element output to the caller's page buffer
` [PATCH 02/11] panic: Replace panic_print_get() with generic helper
` [PATCH 03/11] moduleparam: Add DEFINE_KERNEL_PARAM_OPS macro family
` [PATCH 04/11] treewide: Convert struct kernel_param_ops initializers to DEFINE_KERNEL_PARAM_OPS
` [PATCH 05/11] moduleparam: Rename .get field to .get_str
` [PATCH 06/11] moduleparam: Add seq_buf-based .get callback alongside .get_str
` [PATCH 07/11] moduleparam: Route DEFINE_KERNEL_PARAM_OPS get pointer via _Generic
` [PATCH 08/11] params: Convert generic kernel_param_ops .get helpers to seq_buf
` [PATCH 09/11] treewide: Convert custom kernel_param_ops .get callbacks to seq_buf via cocci
` [PATCH 10/11] treewide: Manually convert custom kernel_param_ops .get callbacks
` [PATCH 11/11] moduleparam: Drop legacy kernel_param_ops .get_str field and dispatch logic

[PATCH v4 0/7] lsm: Replace security_sb_mount with granular mount hooks
 2026-05-23  0:09 UTC  (4+ messages)
` [PATCH v4 1/7] lsm: Add granular mount hooks to replace security_sb_mount

[PATCH v2 0/2] gen_loader fixes
 2026-05-22 22:05 UTC  (8+ messages)
` [PATCH v2 1/2] libbpf: fix off-by-one in emit_signature_match jump offset
` [PATCH v2 2/2] bpf, libbpf: reject non-exclusive metadata maps in the signed loader

[PATCH v4 0/7] landlock: Add UDP access control support
 2026-05-22 21:18 UTC  (9+ messages)
` [PATCH v4 2/7] landlock: Add UDP connect() access control
` [PATCH v4 3/7] landlock: Add UDP send "
` [PATCH v4 7/7] landlock: Add documentation for UDP support

[RFC PATCH v4 00/19] Support socket access-control
 2026-05-22 15:42 UTC  (7+ messages)
` [RFC PATCH v4 01/19] landlock: "

[PATCH v3] keys/trusted_keys: move TPM-specific fields into trusted_tpm_options
 2026-05-22 12:41 UTC  (2+ messages)

[ANN] Linux Security Summit Europe 2026 CfP
 2026-05-22  5:56 UTC 

[net-next] netlabel: validate unlabeled mask attribute length
 2026-05-22  5:45 UTC 

[net-next] netlabel: fix IPv6 unlabeled address add error handling
 2026-05-22  3:50 UTC  (2+ messages)

[PATCH] tpm-buf: memory-safe allocations
 2026-05-22  1:35 UTC 

[linux-next:master] BUILD REGRESSION 550604d6c9b9efc8d068aff94dc301694a7afdee
 2026-05-22  0:33 UTC 

[bug report] keys: request_key_auth payload use-after-free in keyctl_instantiate_key_common()
 2026-05-21 23:52 UTC  (2+ messages)

[PATCH 0/6] landlock: Add scoped access bit for SysV message queues
 2026-05-21 16:06 UTC  (7+ messages)
` [PATCH 1/6] landlock: Add kern_ipc_perm credential blob structs
` [PATCH 2/6] landlock: Add LANDLOCK_SCOPE_SYSV_MSG_QUEUE
` [PATCH 3/6] landlock: Bump ABI for LANDLOCK_SCOPE_SYSV_MSG_QUEUE
` [PATCH 4/6] selftests/landlock: Test LANDLOCK_SCOPE_SYSV_MSG_QUEUE
` [PATCH 5/6] samples/landlock: Support LANDLOCK_SCOPE_SYSV_MSG_QUEUE in sandboxer
` [PATCH 6/6] landlock: Document LANDLOCK_SCOPE_SYSV_MESSAGE_QUEUE

[PATCH v5 00/13] ima: Introduce staging mechanism
 2026-05-21 16:06 UTC  (24+ messages)
` [PATCH v5 01/13] ima: Remove ima_h_table structure
` [PATCH v5 02/13] ima: Replace static htable queue with dynamically allocated array
` [PATCH v5 03/13] ima: Introduce per binary measurements list type ima_num_entries counter
` [PATCH v5 04/13] ima: Introduce per binary measurements list type binary_runtime_size value
` [PATCH v5 05/13] ima: Introduce _ima_measurements_start() and _ima_measurements_next()
` [PATCH v5 06/13] ima: Mediate open/release method of the measurements list
` [PATCH v5 07/13] ima: Use snprintf() in create_securityfs_measurement_lists
` [PATCH v5 08/13] ima: Introduce ima_dump_measurement()
` [PATCH v5 09/13] ima: Add support for staging measurements with prompt
` [PATCH v5 10/13] ima: Add support for flushing the hash table when staging measurements

[PATCH v2] apparmor: Fix inverted comparison in cache_hold_inc()
 2026-05-21 15:13 UTC 

[PATCH] apparmor: Fix inverted comparison in cache_hold_inc()
 2026-05-21  6:57 UTC 

[QUESTION] move load_uefi_certs() and keyring initcall to earlier initcall
 2026-05-20 16:02 UTC  (2+ messages)

[GIT PULL] lsm/lsm-pr-20260519
 2026-05-20 15:24 UTC  (2+ messages)

[PATCH] landlock: avoid memcpy static check warning
 2026-05-20 11:45 UTC  (3+ messages)

[PATCH 0/3] security: replace __get_free_pages() call with kmalloc()
 2026-05-20  8:18 UTC  (4+ messages)
` [PATCH 1/3] selinux: use k[mz]alloc() to allocate temporary buffers
` [PATCH 2/3] selinux: hooks: use __getname() to allocate path buffer
` [PATCH 3/3] apparmor: replace get_zeroed_page() with kzalloc()

[PATCH v2] bpf: reject NULL data/sig in bpf_verify_pkcs7_signature
 2026-05-20  3:30 UTC  (3+ messages)

[PATCH] bpf, libbpf: reject non-exclusive metadata maps in the signed loader
 2026-05-19 22:50 UTC  (2+ messages)

[PATCH] bpf: reject NULL data/sig in bpf_verify_pkcs7_signature
 2026-05-19 22:44 UTC  (3+ messages)

[RFC] TID v2.0: kernel module for cache-line zeroization against Flush+Reload (CLFLUSHOPT + LFENCE + REP STOSQ)
 2026-05-19 21:41 UTC  (2+ messages)

[PATCH] killswitch: add per-function short-circuit mitigation primitive
 2026-05-19 20:50 UTC  (7+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox