Linux Security Modules development
 help / color / mirror / Atom feed
 messages from 2026-07-27 21:18:34 to 2026-08-07 10:48:25 UTC [more...]

[PATCH v3 0/4] Implement LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
 2026-08-07 10:48 UTC  (6+ messages)
` [PATCH v3 1/4] landlock: Add LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
` [PATCH v3 2/4] selftests/landlock: Test LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
` [PATCH v3 3/4] landlock: Document LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
` [PATCH v3 4/4] samples/landlock: Add LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS to sampler

[PATCH v4 0/5] Fix quota evasion on xfs and add capable_noaudit
 2026-08-07 10:04 UTC  (15+ messages)
` [PATCH v4 1/5] xfs: fix capability check in xfs
` [PATCH v4 2/5] capability: Add new capable_noaudit
` [PATCH v4 3/5] quota: Don't issue audit messages on quota enforcing
` [PATCH v4 4/5] xfs: replace ns_capable_noaudit
` [PATCH v4 5/5] capability: unexport has_capability_noaudit

[PATCH v5 0/2] Add Apple T2 NHI device links
 2026-08-07  1:31 UTC  (9+ messages)
` [PATCH v5 1/2] treewide: Add a flag to detect the Apple T2 chip
` [PATCH v5 2/2] thunderbolt: Add device links for Apple T2 NHI

[PATCH v2] apparmor: fix cred UAF caused by begin_current_label_crit_section()
 2026-08-07  1:11 UTC  (2+ messages)

[PATCH] cred: clarify that task_struct::cred is only for the current task
 2026-08-06 20:15 UTC 

[PATCH] smack: fix cred UAF in smack_file_send_sigiotask()
 2026-08-06 19:46 UTC  (2+ messages)

[PATCH v2 00/17] Landlock tracepoints
 2026-08-06 18:22 UTC  (11+ messages)
` [PATCH v2 01/17] landlock: Prepare ruleset and domain type split
` [PATCH v2 03/17] landlock: Split struct landlock_domain from struct landlock_ruleset
` [PATCH v2 06/17] landlock: Add create_ruleset and free_ruleset tracepoints

[PATCH v3 00/20] Landlock tracepoints
 2026-08-06 17:41 UTC  (6+ messages)
` [PATCH v3 03/20] landlock: Split struct landlock_domain from struct landlock_ruleset
` [PATCH v3 07/20] tracing: Add __print_untrusted_str()

[GIT PULL] selinux/selinux-pr-20260805
 2026-08-06 16:01 UTC  (2+ messages)

[PATCH] apparmor: fix cred UAF caused by begin_current_label_crit_section()
 2026-08-06 13:14 UTC  (8+ messages)

[PATCH bpf-next 00/13] BPF interface for applying Landlock rulesets
 2026-08-06  0:32 UTC  (23+ messages)
` [PATCH bpf-next 01/13] lsm: Add LSM hook security_policy_kptr_from_fd
` [PATCH bpf-next 02/13] lsm: Add LSM hook security_policy_kptr_put
` [PATCH bpf-next 03/13] lsm: Add LSM hook security_bprm_enforce_policy_kptr
` [PATCH bpf-next 04/13] landlock: Expose the ruleset fd lookup to the rest of Landlock
` [PATCH bpf-next 05/13] landlock: Factor the credential restriction out of landlock_restrict_self()
` [PATCH bpf-next 06/13] landlock: Implement the LSM policy kptr hooks
` [PATCH bpf-next 07/13] bpf: Add the LSM policy kfunc infrastructure
` [PATCH bpf-next 08/13] bpf: Add the bpf_landlock_put_ruleset kfunc and ruleset destructor
` [PATCH bpf-next 09/13] bpf: Add the bpf_landlock_get_ruleset_from_fd kfunc
` [PATCH bpf-next 10/13] bpf: Add the bpf_landlock_restrict_binprm kfunc
` [PATCH bpf-next 11/13] selftests/bpf: Add tests for the Landlock policy kfuncs
` [PATCH bpf-next 12/13] landlock: Document the BPF kfunc interface
` [PATCH bpf-next 13/13] lsm: Document the LSM policy kptr hooks

[REGRESSION] apparmor: AF_UNIX datagram send slowdown after 6456ccbd2ff7
 2026-08-05 23:45 UTC  (2+ messages)

[PATCH v7] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function
 2026-08-05 18:29 UTC  (2+ messages)

[PATCH RESEND v3] hardening: Default randstruct off with rust for better allmodconfig support
 2026-08-05 17:24 UTC  (2+ messages)

[PATCH v6] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function
 2026-08-05 17:20 UTC  (3+ messages)

[PATCH v4] security: Expand task_setscheduler LSM hook
 2026-08-05 12:32 UTC  (3+ messages)

[RFC PATCH 00/24] pidfd: add a minimal process spawn builder
 2026-08-04 20:25 UTC  (2+ messages)

[PATCH] fs: fix user path of nested backing files
 2026-08-04 17:00 UTC 

Subject: [REGRESSION] selinux: ~90% throughput drop in System V IPC (msg) since commit 7edea6e8c8e8
 2026-08-04 14:08 UTC  (2+ messages)

[PATCH v5 00/14] module: Introduce hash-based integrity checking
 2026-08-04 12:44 UTC  (5+ messages)
` [PATCH v5 13/14] kbuild: move handling of module stripping to Makefile.lib
` [PATCH v5 14/14] kbuild: make CONFIG_MODULE_HASHES compatible with module stripping

[syzbot] [lsm?] memory leak in prepare_creds (7)
 2026-08-04  0:09 UTC 

[PATCH net v2] netlabel: check register_netdevice_notifier() error in netlbl_unlabel_init()
 2026-08-03 23:32 UTC  (2+ messages)

[PATCH v2] ima: fix out-of-bounds read in xattr_verify()
 2026-08-03 13:50 UTC 

[PATCH 0/4] CRASH_ZEROIZE: Wipe secrets before kdump
 2026-08-03 12:54 UTC  (8+ messages)

[PATCH] ima: fix out-of-bounds read in xattr_verify()
 2026-08-03 12:36 UTC  (2+ messages)

[PATCH v6 bpf-next 0/4] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling
 2026-08-02 14:50 UTC  (39+ messages)
` [PATCH v6 bpf-next 1/4] security: introduce struct lsm_xattrs
` [PATCH v6 bpf-next 2/4] security: add security_lsmxattr_add()
` [PATCH v6 bpf-next 3/4] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling
` [PATCH v6 bpf-next 4/4] selftests/bpf: add tests for bpf_init_inode_xattr kfunc

[PATCH -next,v3] ima: add cond_resched() in ima_calc_file_hash_tfm loop
 2026-08-01 10:50 UTC  (3+ messages)

[PATCH v2 0/3] Implement LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
 2026-07-31 22:43 UTC  (9+ messages)
` [PATCH v2 1/3] landlock: Add LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
` [PATCH v2 2/3] selftests/landlock: Test LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
` [PATCH v2 3/3] landlock: Document LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS

[PATCH 0/3] Implement LANDLOCK_RESTRICT_SELF_NNP_ON_EXEC
 2026-07-31 21:28 UTC  (7+ messages)

[PATCH v5 0/5] landlock: Restrict whiteout object creation
 2026-07-31 21:35 UTC  (7+ messages)
` [PATCH v5 1/5] selftests/landlock: Use an actual chardev for MAKE_CHAR audit test
` [PATCH v5 2/5] landlock: Require LANDLOCK_ACCESS_FS_MAKE_REG for whiteout creation
` [PATCH v5 3/5] selftests/landlock: Add tests for whiteout object creation
` [PATCH v5 4/5] selftests/landlock: Test whiteout object behaviour in OverlayFS renames
` [PATCH v5 5/5] landlock: Link the erratum documentation for whiteout objects

[PATCH v2] security,fs,nfs,net: update security_inode_listsecurity() interface
 2026-07-31 20:24 UTC  (7+ messages)

[PATCH 0/4] CRASH_ZEROIZE: Wipe secrets before kdump
 2026-07-31 16:27 UTC  (5+ messages)
` [PATCH 1/4] of/kexec: fix typo in comment (usable-memory-range)
` [PATCH 2/4] kexec: add CRASH_ZEROIZE to wipe secrets before kdump
` [PATCH 3/4] mm/secretmem: zeroize secret pages "
` [PATCH 4/4] security/keys: zeroize key payloads "

[PATCH v4 0/5] landlock: Restrict whiteout object creation
 2026-07-31 15:14 UTC  (13+ messages)
` [PATCH v4 2/5] landlock: Require LANDLOCK_ACCESS_FS_MAKE_REG for whiteout creation
` [PATCH v4 3/5] selftests/landlock: Add tests for whiteout object creation
` [PATCH v4 4/5] selftests/landlock: Test whiteout object behaviour in OverlayFS renames

[PATCH] KEYS: trusted: Fix TPM teardown ordering
 2026-07-31 14:09 UTC 

Landlock: mount_setattr(2) is unmediated by LSMs (ro-mount confinement bypass)
 2026-07-31 13:46 UTC  (2+ messages)

linux-next: Tree for Jul 29 (apparmor)
 2026-07-30 13:47 UTC  (2+ messages)

[PATCH v3 00/12] Landlock: Namespace and capability control
 2026-07-30 10:44 UTC  (3+ messages)
` [PATCH v3 01/12] ns: Free anonymous mount namespaces via ns_common_free()

[syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (6)
 2026-07-30  0:19 UTC 

[PATCH 0/6] landlock: Add POSIX message queue scoping
 2026-07-29 12:43 UTC  (11+ messages)
` [PATCH 2/6] landlock: Scope POSIX message queue opens
` [PATCH 3/6] landlock: Bump ABI for LANDLOCK_SCOPE_POSIX_MSG_QUEUE
` [PATCH 4/6] selftests/landlock: Test POSIX message queue scoping
` [PATCH 5/6] samples/landlock: Support "

[PATCH net] netlabel: check register_netdevice_notifier() error in netlbl_unlabel_init()
 2026-07-28 22:36 UTC  (2+ messages)

[PATCH] landlock: Document io_uring credentials management
 2026-07-28  8:45 UTC 

[PATCH v2 0/6] landlock: Add scoped access bit for SysV message queues
 2026-07-27 23:08 UTC  (7+ messages)
` [PATCH v2 1/6] landlock: Add kern_ipc_perm credential blob structs
` [PATCH v2 2/6] landlock: Add LANDLOCK_SCOPE_SYSV_MSG_QUEUE
` [PATCH v2 3/6] landlock: Bump ABI for LANDLOCK_SCOPE_SYSV_MSG_QUEUE
` [PATCH v2 4/6] selftests/landlock: Test LANDLOCK_SCOPE_SYSV_MSG_QUEUE
` [PATCH v2 5/6] samples/landlock: Support LANDLOCK_SCOPE_SYSV_MSG_QUEUE in sandboxer
` [PATCH v2 6/6] landlock: Document LANDLOCK_SCOPE_SYSV_MSG_QUEUE

[PATCH v2 0/3] integrity: Return error codes in audit messages
 2026-07-27 22:21 UTC  (4+ messages)
` [PATCH v2 1/3] integrity: Replace all uses of integrity_audit_msg() with integrity_audit_message()
` [PATCH v2 2/3] integrity: Remove integrity_audit_msg()
` [PATCH v2 3/3] integrity: Report error code in integrity_audit_message() call sites


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox