Linux Security Modules development
 help / color / mirror / Atom feed
 messages from 2026-08-20 00:56:05 to 2026-08-31 02:59:12 UTC [more...]

[PATCH v2 0/3] pidfd: add task path ioctls
 2026-08-31  2:59 UTC  (4+ messages)
` [PATCH v2 1/3] fs: Introduce task path helpers
` [PATCH v2 2/3] pidfd: Use scoped cleanup for task access
` [PATCH v2 3/3] pidfd: Add task path ioctls

[PATCH 0/6] landlock: Support MPTCP bind and connect restrictions
 2026-08-30 20:16 UTC  (7+ messages)
` [PATCH 1/6] samples/landlock: Implement best-effort fallback for network rules
` [PATCH 2/6] selftests/landlock: Generalize net test helpers for multiple socket types
` [PATCH 3/6] landlock: Add MPTCP bind and connect access rights
` [PATCH 4/6] selftests/landlock: Add MPTCP network access tests
` [PATCH 5/6] samples/landlock: Support MPTCP access rights
` [PATCH 6/6] landlock: Document "

[PATCH] keys: set persistent keyring timeout before destination linking
 2026-08-30 18:20 UTC 

SafeSetID: GID transition policy lookup uses RUID as source, allowlist can be bypassed (setgid to any group including 0)
 2026-08-30 16:18 UTC 

[syzbot] [audit?] BUG: unable to handle kernel paging request in integrity_audit_message
 2026-08-29 18:27 UTC  (3+ messages)

[PATCH v4] security: Expand task_setscheduler LSM hook
 2026-08-29 15:55 UTC  (2+ messages)

[PATCH v4] keys/trusted_keys: move TPM-specific fields into trusted_tpm_options
 2026-08-29 13:09 UTC 

[PATCH v2 0/3] proc,security,selinux: let SELinux block FOLL_FORCE for /proc/self/mem
 2026-08-28 21:10 UTC  (15+ messages)
` [PATCH v2 1/3] proc: refactor /proc/$pid/mem to use struct as private_data
` [PATCH v2 2/3] proc: query LSMs for introspective mem access (if PROC_MEM_FORCE_ALWAYS)
` [PATCH v2 3/3] selinux: require PROCESS__PTRACE for FOLL_FORCE introspection

[PATCH v1] selftests/landlock: Test abstract socket trace name limits
 2026-08-28 19:00 UTC 

[Bug] landlock: sun_path length underflow to SIZE_MAX in landlock_deny_scope_abstract_unix_socket TP_printk -> unbounded OOB read in trace reader
 2026-08-28 19:12 UTC  (2+ messages)

[BUG] general protection fault in security_path_post_mknod
 2026-08-28 18:48 UTC  (2+ messages)

[PATCH bpf-next 00/13] BPF interface for applying Landlock rulesets
 2026-08-28 18:28 UTC  (9+ messages)

[PATCH] keys: Pin request_key_auth payload in instantiate paths
 2026-08-28 16:23 UTC  (2+ messages)

[PATCH v6 0/6] landlock: Restrict whiteout object creation
 2026-08-28 15:45 UTC  (3+ messages)
` [PATCH v6 2/6] landlock: Require LANDLOCK_ACCESS_FS_MAKE_REG for whiteout creation

[PATCH v1] landlock: Demonstrate best-effort allowed_access filtering
 2026-08-28 15:43 UTC  (3+ messages)

[PATCH v4 0/5] Implement LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS
 2026-08-28 15:40 UTC  (3+ messages)
` [PATCH v4 4/5] landlock: Document LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS

[PATCH v11 0/9] Implement LANDLOCK_ADD_RULE_QUIET
 2026-08-28 15:38 UTC  (3+ messages)
` [PATCH v11 2/9] landlock: Add API support and docs for the quiet flags

[PATCH v5 0/6] landlock: Add UDP access control support
 2026-08-28 15:35 UTC  (3+ messages)
` [PATCH v5 6/6] landlock: Add documentation for UDP support

[PATCH] selftests/landlock: prevent mount propagation from test namespaces
 2026-08-28 12:13 UTC 

[PATCH] keys: reject descriptions that exceed the index length
 2026-08-28 10:12 UTC  (5+ messages)
    ` [PATCH v2] "

[PATCH] rust: security: replace `core::mem::zeroed` with `pin_init::zeroed`
 2026-08-28  6:15 UTC  (2+ messages)

[BUG] security/keys: out-of-bounds in tpm2_unseal_trusted()
 2026-08-28  5:17 UTC  (2+ messages)

[PATCH v2] KEYS: encrypted: fix integer overflow of datablob_len
 2026-08-28  1:59 UTC  (4+ messages)

[PATCH] keys: Fix key_user use-after-free during ownership changes
 2026-08-27 22:05 UTC  (2+ messages)

[PATCH] ima: select the SHA384 PCR bank for the boot aggregate
 2026-08-27 20:03 UTC  (8+ messages)

[PATCH] ima: Check for ERR_PTR from dentry_path() in validate_hash_algo()
 2026-08-27 17:43 UTC 

[PATCH v2 -next 2/2] security: Fix call security_backing_file_free second time
 2026-08-27 16:30 UTC  (2+ messages)
` [PATCH v2 "

[PATCH v2 -next 1/2] security: Delete dumplicate assignment
 2026-08-27 16:30 UTC  (2+ messages)
` [PATCH v2 "

[PATCH 0/8] Extend PKWM to support user-created wrapping keys
 2026-08-27  6:23 UTC  (9+ messages)
` [PATCH 1/8] pseries/plpks: update PKS documentation and maintainer entry
` [PATCH 2/8] pseries/plpks: fix error handling in plpks_read_var()
` [PATCH 3/8] pseries/plpks: improve type consistency and parameter validation
` [PATCH 4/8] pseries/plpks: rename the default wrapping key macro
` [PATCH 5/8] pseries/plpks: hide wrapping_features when unsupported
` [PATCH 6/8] pseries/plpks: add HCALLs for PKWM wrapping key life cycle management
` [PATCH 7/8] keys/trusted_keys: enable PKWM wrapping key selection by label
` [PATCH 8/8] pseries/plpks/wrapkey: expose PKWM wrapping key management to userspace via sysfs

[GIT PULL] AppArmor updates for v7.3
 2026-08-26 18:40 UTC  (2+ messages)

[PATCH 0/3] proc,security,selinux: let SELinux block FOLL_FORCE for /proc/self/mem
 2026-08-26 16:17 UTC  (37+ messages)
` [PATCH 1/3] proc: refactor /proc/$pid/mem to use struct as private_data
` [PATCH 2/3] proc: query LSMs for introspective mem access (if PROC_MEM_FORCE_ALWAYS)
` [PATCH 3/3] selinux: require EXECMEM or PTRACE for FOLL_FORCE introspection

[PATCH] selftests/landlock: Fix snprintf truncation checks in test files
 2026-08-26 10:44 UTC  (3+ messages)

[PATCH] ima: bound line scan in ima_read_policy() to fix OOB read
 2026-08-26  9:51 UTC  (2+ messages)

[PATCH v20 0/8] rust: add `Ownable` trait and `Owned` type
 2026-08-26  9:29 UTC  (17+ messages)
` [PATCH v20 1/8] rust: alloc: add `KBox::into_non_null`
` [PATCH v20 2/8] rust: types: Add Ownable/Owned types
` [PATCH v20 3/8] rust: implement `ForeignOwnable` for `Owned`
` [PATCH v20 4/8] rust: page: convert to `Ownable`
  ` [PATCH v20 4/8] rust: page: convert to `Ownable`'
` [PATCH v20 5/8] rust: rename `AlwaysRefCounted` to `RefCounted`
` [PATCH v20 6/8] rust: Add missing SAFETY documentation for `ARef` example
` [PATCH v20 7/8] rust: Add `OwnableRefCounted`
` [PATCH v20 8/8] rust: page: add `from_raw()`

[PATCH v2 0/2] ima: don't measure/appraise files on configfs
 2026-08-26  8:07 UTC  (6+ messages)
` [PATCH v2 1/2] configfs: move CONFIGFS_MAGIC definition to magic.h

[RFC PATCH] smack: preserve low-integrity labels on copy via whitelist
 2026-08-26  3:33 UTC 

[RFC PATCH 00/24] pidfd: add a minimal process spawn builder
 2026-08-25 21:27 UTC  (4+ messages)

[PATCH] keys: translate request_key_auth pid for the reading procfs instance
 2026-08-25 14:10 UTC  (2+ messages)

[PATCH v2] keys: fix lost wakeup when reaping a dead key type
 2026-08-25 14:07 UTC  (2+ messages)

[PATCH] apparmor: fix NULL ctx->peer derefs in unix socket ctx updates
 2026-08-24 21:32 UTC  (2+ messages)

[RFC PATCH 0/3] smack: add file label preserve mechanism
 2026-08-24 17:57 UTC  (3+ messages)
    ` 回复: "
        ` 回复: "

[PATCH] ima: allow users to specify the pcr index with IMA_MEASURE_PCR_IDX
 2026-08-24 16:22 UTC 

[PATCH v2 0/6] landlock: Add scoped access bit for SysV message queues
 2026-08-24 16:03 UTC  (14+ messages)
` [PATCH v2 3/6] landlock: Bump ABI for LANDLOCK_SCOPE_SYSV_MSG_QUEUE
` [PATCH v2 4/6] selftests/landlock: Test LANDLOCK_SCOPE_SYSV_MSG_QUEUE

[PATCH] ima: reject modsig if detached data cannot be supplied
 2026-08-24 16:00 UTC  (2+ messages)

[PATCH] ima: clean up IMA_MEASURE_PCR_IDX in Kconfig
 2026-08-24 15:54 UTC  (3+ messages)

[RFC] IMA: periodic runtime re-measurement of process .text/GOT
 2026-08-24 14:22 UTC  (6+ messages)

[PATCH 0/2] lsm: expose mount idmaps to inode hooks
 2026-08-24 13:28 UTC  (3+ messages)
` [PATCH 1/2] "
` [PATCH 2/2] selftests/bpf: verify mount idmaps reach "

[syzbot] [apparmor?] WARNING in aa_policy_destroy
 2026-08-24  6:07 UTC 

[PATCH] keys: Fix key_user use-after-free during ownership changes
 2026-08-23 17:08 UTC  (2+ messages)

[GIT PULL] capabilities update for v7.3
 2026-08-22 21:06 UTC  (4+ messages)

[PATCH] landlock: Fix use-after-free of the source's parent directory
 2026-08-22 12:29 UTC 

[GIT PULL] Landlock update for v7.3-rc1
 2026-08-21 20:26 UTC  (2+ messages)

[PATCH RESEND v3] hardening: Default randstruct off with rust for better allmodconfig support
 2026-08-21 19:48 UTC  (3+ messages)

[PATCH 0/4] CRASH_ZEROIZE: Wipe secrets before kdump
 2026-08-21 14:28 UTC  (7+ messages)
` [PATCH 3/4] mm/secretmem: zeroize secret pages "

[PATCH 0/6] landlock: Add POSIX message queue scoping
 2026-08-21  8:46 UTC  (2+ messages)

[PATCH v4 0/5] Fix quota evasion on xfs and add capable_noaudit
 2026-08-21  7:35 UTC  (2+ messages)

[PATCH 0/3] lib/crypto: Provide a function for zeroizing hmac_sha1_ctx
 2026-08-21  0:03 UTC  (2+ messages)

[PATCH] keys: fix lost wakeup when reaping a dead key type
 2026-08-20 23:28 UTC  (2+ messages)

keys: request_key_auth shows a global pid in /proc/keys across pid namespaces
 2026-08-20 21:57 UTC  (2+ messages)

[PATCH v4 00/19] Landlock tracepoints
 2026-08-20 10:45 UTC  (5+ messages)
` [PATCH v4 03/19] landlock: Split struct landlock_domain from struct landlock_ruleset
` [PATCH v4 09/19] landlock: Add create_domain and free_domain tracepoints

[PATCH RFC 0/3] pidfd: add task path ioctls
 2026-08-20  5:45 UTC  (4+ messages)
` [PATCH RFC 1/3] fs: Introduce task path helpers
` [PATCH RFC 2/3] pidfd: Use scoped cleanup for task access
` [PATCH RFC 3/3] pidfd: Add task path ioctls

[GIT PULL] lsm/lsm-pr-20260814
 2026-08-20  0:55 UTC  (2+ messages)

[GIT PULL] Smack patches for 7.3
 2026-08-20  0:55 UTC  (2+ messages)

[GIT PULL] selinux/selinux-pr-20260814
 2026-08-20  0:55 UTC  (2+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox