2026-08-21 9:59 [PATCH] keys: translate request_key_auth pid for the reading procfs instance
2026-08-21 2:53 [PATCH v2] keys: fix lost wakeup when reaping a dead key type
2026-08-20 9:12 [GIT PULL] Landlock update for v7.3-rc1
2026-08-20 5:45 [PATCH RFC 2/3] pidfd: Use scoped cleanup for task access 4+ messages
2026-08-19 23:45 [PATCH v2 0/2] ima: don't measure/appraise files on configfs 3+ messages
2026-08-18 19:51 [PATCH 0/3] proc,security,selinux: let SELinux block FOLL_FORCE for /proc/self/mem 14+ messages
2026-08-18 19:35 [PATCH 0/2] ima: don't measure/appraise files on configfs 6+ messages
2026-08-18 16:11 Re: [RFC PATCH 0/3] smack: add file label preserve mechanism 2+ messages
2026-08-18 2:02 IT教育で、新規事業
2026-08-17 23:16 [GIT PULL] lsm/lsm-pr-20260814 2+ messages
2026-08-17 23:16 [GIT PULL] selinux/selinux-pr-20260814 2+ messages
2026-08-17 10:23 [RFC] IMA: periodic runtime re-measurement of process .text/GOT 3+ messages
2026-08-15 11:20 [PATCH bpf-next 0/2] lsm: give BPF programs a way to query locked_down state 17+ messages
2026-08-14 8:54 [PATCH] ima: bound line scan in ima_read_policy() to fix OOB read
2026-08-13 20:48 [PATCH 1/7] net, smack: Create a function to set secmarks 8+ messages
2026-08-13 20:33 [GIT PULL] Smack patches for 7.3 2+ messages
2026-08-13 18:08 [PATCH] lsm: update the BUILD_BUG_ON() in audit_log_lsm_data() 2+ messages
2026-08-13 9:31 [PATCH v6 0/6] landlock: Restrict whiteout object creation 9+ messages
2026-08-12 16:33 [PATCH 0/3] lib/crypto: Provide a function for zeroizing hmac_sha1_ctx 7+ messages
2026-08-12 14:51 [PATCH] cred: remove RCU initializer for init_task.cred 2+ messages
2026-08-12 14:18 [PATCH] ima: reject a kexec buffer whose declared size exceeds the buffer
2026-08-12 8:03 [REGRESSION] Apparmor deadlock in 6.12.101 in complain mode 2+ messages
2026-08-11 17:52 [PATCH v2 00/13] CRASH_WIPE_SECRETS: Wipe secrets before kdump (was: CRASH_ZEROIZE) 25+ messages
2026-08-11 17:37 [PATCH] keys: fix lost wakeup when reaping a dead key type 2+ messages
2026-08-11 9:43 [PATCH v4 00/19] Landlock tracepoints 25+ messages
2026-08-10 9:51 [PATCH] apparmor: fix out-of-bounds write when null terminating a label vec 2+ messages
2026-08-09 15:45 [PATCH v4 0/5] Implement LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS 8+ messages
2026-08-09 14:29 [PATCH] apparmor: fix integer overflow in verify_tags() bounds check 3+ messages
2026-08-09 11:02 keys: request_key_auth shows a global pid in /proc/keys across pid namespaces 5+ messages
2026-08-09 0:20 [syzbot] [lsm?] [integrity?] possible deadlock in ima_file_truncate 6+ messages
2026-08-06 20:15 [PATCH] cred: clarify that task_struct::cred is only for the current task 4+ messages
2026-08-06 19:41 [PATCH] smack: fix cred UAF in smack_file_send_sigiotask() 2+ messages
2026-08-06 15:55 [PATCH v2] apparmor: fix cred UAF caused by begin_current_label_crit_section() 2+ messages
2026-08-05 20:24 [GIT PULL] selinux/selinux-pr-20260805 2+ messages
2026-08-05 17:33 [REGRESSION] apparmor: AF_UNIX datagram send slowdown after 6456ccbd2ff7 2+ messages
2026-08-05 17:02 [PATCH RESEND v3] hardening: Default randstruct off with rust for better allmodconfig support 3+ messages
2026-08-04 17:00 Re: [PATCH] fs: fix user path of nested backing files
2026-08-04 9:45 [PATCH v4 0/5] Fix quota evasion on xfs and add capable_noaudit 17+ messages
2026-08-04 0:16 Subject: [REGRESSION] selinux: ~90% throughput drop in System V IPC (msg) since commit 7edea6e8c8e8 2+ messages
2026-08-04 0:09 [syzbot] [lsm?] memory leak in prepare_creds (7)
2026-08-03 22:31 [PATCH v3 0/4] Implement LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS 11+ messages
2026-08-03 13:50 [PATCH v2] ima: fix out-of-bounds read in xattr_verify()
2026-08-01 14:03 Re: [PATCH 0/4] CRASH_ZEROIZE: Wipe secrets before kdump 11+ messages
2026-07-31 16:27 [PATCH 1/4] of/kexec: fix typo in comment (usable-memory-range) 11+ messages
2026-07-31 15:43 [PATCH v5 0/5] landlock: Restrict whiteout object creation 8+ messages
2026-07-31 14:09 [PATCH] KEYS: trusted: Fix TPM teardown ordering 2+ messages
2026-07-31 2:20 [PATCH bpf-next 00/13] BPF interface for applying Landlock rulesets 27+ messages
2026-07-30 23:45 [PATCH v6 bpf-next 0/4] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling 39+ messages
2026-07-30 3:52 Re: linux-next: Tree for Jul 29 (apparmor) 2+ messages
2026-07-30 2:04 [PATCH] ima: fix out-of-bounds read in xattr_verify() 2+ messages
2026-07-30 0:19 [syzbot] [integrity?] [lsm?] possible deadlock in process_measurement (6)
2026-07-29 9:07 [PATCH net v2] netlabel: check register_netdevice_notifier() error in netlbl_unlabel_init() 2+ messages
2026-07-28 12:33 [PATCH -next,v3] ima: add cond_resched() in ima_calc_file_hash_tfm loop 3+ messages
2026-07-28 8:45 [PATCH] landlock: Document io_uring credentials management
2026-07-28 3:10 [PATCH net] netlabel: check register_netdevice_notifier() error in netlbl_unlabel_init() 2+ messages
2026-07-27 23:08 [PATCH v2 0/6] landlock: Add scoped access bit for SysV message queues 10+ messages
2026-07-27 22:21 [PATCH v2 0/3] integrity: Return error codes in audit messages 4+ messages
2026-07-27 21:18 [PATCH v5 0/2] Add Apple T2 NHI device links 9+ messages
2026-07-26 16:13 [PATCH v3 00/12] Landlock: Namespace and capability control 20+ messages
2026-07-24 16:46 [PATCH v4 0/2] Add Apple T2 NHI device links 4+ messages
2026-07-24 16:09 [PATCH v4 0/5] landlock: Restrict whiteout object creation 16+ messages
2026-07-23 17:25 [PATCH] apparmor: switch website link to https 2+ messages
2026-07-23 16:52 [PATCH] capability: remove non-kernel-doc comments 3+ messages
2026-07-22 17:11 [PATCH v3 00/20] Landlock tracepoints 24+ messages
2026-07-22 15:13 [PATCH v1] selftests/landlock: Add tests for O_TMPFILE 2+ messages
2026-07-22 12:29 [PATCH 0/6] landlock: Add POSIX message queue scoping 17+ messages
2026-07-21 13:11 [PATCH v2 0/3] Bring includes in linux/kmod.h up to date 6+ messages
2026-07-21 11:19 [PATCH] apparmor: update website link 6+ messages
2026-07-21 6:34 [PATCH v3 0/2] Add Apple T2 NHI device links 6+ messages
2026-07-21 5:45 [PATCH v2 0/2] Add Apple T2 NHI device links 4+ messages
2026-07-20 1:41 [PATCH v4] security: Expand task_setscheduler LSM hook 3+ messages
2026-07-19 18:03 [PATCH 0/2] Add Apple T2 NHI device links 3+ messages
2026-07-19 16:15 [PATCH v3 0/3] keys: fix keyring assoc-array out-of-bounds read and index inconsistency 6+ messages
2026-07-18 13:56 Landlock: LANDLOCK_ACCESS_FS_IOCTL_DEV is bypassable via io_uring IORING_OP_URING_CMD (confirmed on real NVMe hardware) 2+ messages
2026-07-18 10:14 Landlock: mount_setattr(2) is unmediated by LSMs (ro-mount confinement bypass) 2+ messages
2026-07-17 22:03 [PATCH v2 0/3] Implement LANDLOCK_RESTRICT_SELF_NO_NEW_PRIVS 9+ messages
2026-07-17 21:52 [PATCH] apparmor: leverage audit_log_n_untrustedstring() when possible 6+ messages
2026-07-17 17:03 [GIT PULL] selinux/selinux-pr-20260717 2+ messages
2026-07-16 19:57 [GIT PULL] Landlock fix for v7.2-rc4 2+ messages
2026-07-16 19:10 [PATCH] ima: Report errno for failed hash collection to audit 3+ messages
2026-07-16 14:31 [RFC PATCH 00/24] pidfd: add a minimal process spawn builder 29+ messages
2026-07-16 0:43 障害者の就労を支援する事業 新規開業パートナー募集
2026-07-14 21:07 [BUG] Landlock denies LANDLOCK_ACCESS_FS_EXECUTE despite a correctly-anchored PathBeneath rule (contradicts selftest layout1.execute) 4+ messages
2026-07-14 15:38 [PATCH] apparmor: fix cred UAF caused by begin_current_label_crit_section() 9+ messages
2026-07-14 11:54 [PATCH v2 0/3] keys: fix keyring assoc-array out-of-bounds read and index inconsistency 10+ messages
2026-07-14 9:17 [PATCH -next,v2] ima: add cond_resched() in ima_calc_file_hash_tfm loop 4+ messages
2026-07-14 1:38 [PATCH 0/2] doc: LSM: update usage document for current LSM stacking 5+ messages
2026-07-13 11:10 [PATCH -next] ima: add cond_resched() in ima_calc_file_hash_tfm loop 3+ messages
2026-07-12 1:44 [PATCH 0/3] keys: fix keyring assoc-array out-of-bounds read and index inconsistency 10+ messages
2026-07-12 1:39 [PATCH 11/13 RFC net-next] net: cipso: guard IPv4 packet manipulation functions 3+ messages
2026-07-10 19:13 [GIT PULL] selinux/selinux-pr-20260710 2+ messages
2026-07-10 8:16 [PATCH] selftests/landlock: Skip scoped_signal subtest with MSG_OOB if not available 2+ messages
2026-07-09 19:23 [PATCH] PM: hibernate: Allow hibernation opt-in when locked down 3+ messages
2026-07-09 16:43 [PATCH] selftests/landlock: Fix screwed up pointers in the scoped_signal_test 2+ messages
2026-07-09 5:14 [RESEND][RFC/discuss] memfd_secret(): opt-in visibility for security monitoring (eBPF/audit) 3+ messages
2026-07-08 15:44 [PATCH 0/2] Bring includes in linux/kmod.h up to date 6+ messages
2026-07-08 13:39 [PATCH 0/3] Implement LANDLOCK_RESTRICT_SELF_NNP_ON_EXEC 10+ messages
2026-07-08 12:09 [RFC/discuss] memfd_secret(): opt-in visibility for security monitoring (eBPF/audit) 3+ messages
2026-07-08 11:06 [PATCH v1] landlock: Update formatting 2+ messages
2026-07-08 7:53 [PATCH bpf-next v6 5/8] bpftool: Cover loader metadata with the program signature 12+ messages
2026-07-08 0:09 [PATCH v5 bpf-next 0/3] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling 18+ messages
2026-07-07 21:03 [PATCH v1] landlock: Document the threat model 4+ messages
2026-07-07 19:30 [PATCH bpf-next v5 0/8] Verify BPF signed loader at load time 9+ messages
2026-07-07 18:48 Re: [PATCH v2] NFSv4.2: fix nfs4_listxattr size accounting 12+ messages
2026-07-07 8:06 [PATCH v2 -next 2/2] security: Fix call security_backing_file_free second time 3+ messages
2026-07-06 23:50 [PATCH v6 0/8] lsm: Replace security_sb_mount with granular mount hooks 10+ messages
2026-07-06 17:44 [PATCH v2] ipe: fix typo
2026-07-06 13:56 [PATCH bpf-next v4 7/9] selftests/bpf: Adjust bpf_map layout in verifier_map_ptr 17+ messages
2026-07-03 15:27 [PATCH v1] landlock: Harden sock_is_scoped() against file-less sockets
2026-07-03 14:17 [PATCH v1] landlock: Fix kernel-doc for the nested quiet layer flag
2026-07-03 7:39 [RFC PATCH 0/3] coredump, net: fix layer violation with direct connection 15+ messages
2026-07-03 6:57 [PATCH v5 0/2] Delete task_euid() 6+ messages
2026-07-03 2:52 [PATCH] selftests/lsm: Fix memory leak in attr_lsm_count 5+ messages
2026-07-02 19:22 [PATCH] ipe: fix bracket 2+ messages
2026-07-02 17:37 [PATCH v3] hardening: Default randstruct off with rust for better allmodconfig support 5+ messages
2026-07-02 14:35 [PATCH bpf-next v3 0/6] Verify BPF signed loader at load time 14+ messages
2026-07-02 9:33 [PATCH v3 0/5] Fix quota evasion on xfs and add capable_noaudit 16+ messages
2026-07-02 1:58 [PATCH v2] selftests/landlock: fix spelling error in fs_test comment 3+ messages
2026-07-01 12:35 [PATCH 0/6] selftests: fix multiple spelling errors across submodules 3+ messages
2026-07-01 11:46 linux-next: apparmor: ld.lld: error: undefined symbol: decompress_zstd 5+ messages
2026-06-30 18:39 [PATCH v4 bpf-next 0/3] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling 11+ messages
2026-06-29 21:01 [PATCH] lsm: cleanup repeated lsm_blob_size_update() calls in lsm_prepare() 5+ messages
2026-06-29 7:06 [PATCH stable/linux-5.10.y 0/7] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 11+ messages
2026-06-29 7:03 [PATCH v3 stable/linux-6.12.y 1/3] fs: constify file ptr in backing_file accessor helpers 5+ messages
2026-06-28 10:07 [PATCH v7] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function 3+ messages
2026-06-28 9:51 [PATCH v6] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function 4+ messages
2026-06-28 9:28 [PATCH v5] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function
2026-06-27 6:57 [PATCH v2 stable/linux-6.6.y 0/3] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 5+ messages
2026-06-27 4:28 [PATCH v2 stable/linux-6.12.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-26 11:54 [PATCH v19 8/8] rust: page: add `from_raw()` 11+ messages
2026-06-26 11:45 [RFC PATCH 0/4] Introduce capable_noaudit 24+ messages
2026-06-26 7:50 [PATCH v2 stable/linux-6.18.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-26 7:00 [PATCH] selftests/landlock: Fix snprintf truncation checks in test files
2026-06-26 2:40 [PATCH v2 stable/linux-6.18.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-26 1:17 [PATCH -next 0/2] Fix call security_backing_file_free second time 5+ messages
2026-06-25 10:15 [PATCH v18 7/8] rust: Add `OwnableRefCounted` 12+ messages
2026-06-25 9:28 [PATCH] Documentation: landlock: Document fs.resolve_unix audit blocker 4+ messages
2026-06-25 1:50 Re: [PATCH] selinux: check connect-related permissions on TCP Fast Open
2026-06-24 14:02 [PATCH bpf-next v2 1/5] bpf: Verify signed loader metadata at load time 18+ messages
2026-06-24 7:52 [GIT PULL] AppArmor updates for 7.2-rc1 2+ messages
2026-06-23 5:01 [PATCH] landlock: shrink tsync works[] on partial allocation failure 3+ messages
2026-06-23 1:50 [PATCH] apparmor: mv get_loaddata_common_ref() into CONFIG_SECURITY_APPARMOR_EXPORT_BINARY block 2+ messages
2026-06-22 23:27 [PATCH] tests: add a regression test for the TCP Fast Open connect-mediation bypass 2+ messages
2026-06-22 20:57 [PATCH] apparmor: mediate the implicit connect of TCP fast open sendmsg 2+ messages
2026-06-22 15:24 Re: [PATCH] keys: trusted: dcp: Make dcp_trusted_key_ops const
2026-06-22 3:15 [stable/linux-6.6.y 0/3] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-22 3:15 [stable/linux-6.12.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-22 3:14 [stable/linux-6.18.y 2/2] selinux: fix overlayfs mmap() and mprotect() access checks 5+ messages
2026-06-21 3:52 [PATCH v9 0/9] Implement LANDLOCK_ADD_RULE_NO_INHERIT 10+ messages
2026-06-20 12:32 [syzbot] Monthly tomoyo report (Jun 2026)
2026-06-19 17:19 [PATCH] LSM: check if lsmprop_to_secctx call is supported by LSM 5+ messages
2026-06-19 13:03 [PATCH 2/2] lsm: fix size queries for getselfattr with NULL buffer 3+ messages
2026-06-19 8:35 [GIT PULL] Landlock update for v7.2-rc1 2+ messages
2026-06-19 8:21 [PATCH] landlock: work around gcc-16 -Wuninitialized warning
2026-06-19 1:11 AppArmor: TCP Fast Open bypasses connect mediation (last unaddressed LSM) 3+ messages
2026-06-19 0:22 [PATCH] tomoyo: Enforce connect policy in TCP Fast Open 2+ messages
2026-06-18 20:34 [PATCH bpf-next v3 0/2] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling 18+ messages
2026-06-18 19:33 Re: [PATCH v5 7/8] vfs: Replace security_sb_mount/security_move_mount with granular hooks
2026-06-17 8:41 [syzbot] [tomoyo?] KMSAN: uninit-value in tomoyo_path_chown (3) 3+ messages
2026-06-16 20:16 Landlock: LANDLOCK_ACCESS_FS_IOCTL_DEV bypass via io_uring IORING_OP_URING_CMD 11+ messages
2026-06-16 20:16 Landlock: LANDLOCK_ACCESS_NET_CONNECT_TCP bypass via TCP Fast Open 14+ messages
2026-06-16 2:55 [GIT PULL] selinux/selinux-pr-20260615 4+ messages
2026-06-16 2:55 [GIT PULL] lsm/lsm-pr-20260615 2+ messages
2026-06-15 20:03 [PATCH] security: clarify task_prctl hook documentation 4+ messages
2026-06-15 15:37 Sashiko reviews for the LSM mailing list 9+ messages
2026-06-14 15:00 [PATCH] KEYS: avoid filesystem reclaim while holding keyring->sem 2+ messages
2026-06-13 13:04 [PATCH 0/2] security/keys: replace BUG() in unreachable default cases 5+ messages
2026-06-13 6:04 [PATCH] apparmor: fix use-after-free in policy replacement path 2+ messages
2026-06-12 17:27 [PATCH v2] landlock: Set audit_net.sk for socket access checks
2026-06-12 15:58 [PATCH 02/10] docs/zh_CN: add LSM/apparmor Chinese translation 15+ messages
2026-06-12 15:58 [PATCH 00/10] docs/zh_CN: add LSM admin-guide Chinese translation
2026-06-12 1:48 [PATCH v11 0/9] Implement LANDLOCK_ADD_RULE_QUIET 10+ messages
2026-06-11 18:59 [PATCH] Add LoadPin support for eBPF program loading 6+ messages
2026-06-11 16:21 [PATCH v5 0/6] landlock: Add UDP access control support 8+ messages
2026-06-11 7:00 [PATCH v2] cred: prevent slab cache merging for cred_jar
2026-06-10 23:03 [PATCH bpf-next 0/5] Verify BPF signed loader at load time 10+ messages
2026-06-10 9:23 [PATCH v3 0/3] landlock: Restrict renameat2 with RENAME_WHITEOUT 9+ messages
2026-06-07 13:49 [PATCH] keys: allow request-key path to be configured via Kconfig 10+ messages
2026-06-05 16:50 [PATCH v2] hardening: Default randstruct off with rust for better allmodconfig support 4+ messages
2026-06-05 14:43 [PATCH v6 0/4] introduce IMA_INIT_LATE_SYNC option 13+ messages
2026-06-04 20:11 [PATCH v17 02/10] rust: types: Add Ownable/Owned types 27+ messages
2026-06-01 0:00 [PATCH v10 0/9] Implement LANDLOCK_ADD_RULE_QUIET 20+ messages
2026-05-29 20:03 [PATCH] selftests/landlock: explicitly disable audit 4+ messages
2026-05-29 9:33 [PATCH v4 0/2] Delete task_euid() 10+ messages
2026-05-28 18:25 [PATCH v5 0/8] lsm: Replace security_sb_mount with granular mount hooks 15+ messages
2026-05-27 18:11 [PATCH v2 3/9] landlock: Wrap per-layer access masks in struct layer_config 22+ messages
2026-05-26 14:28 [PATCH v3] security: Expand task_setscheduler LSM hook to include CPU affinity mask 11+ messages
2026-05-26 2:48 [PATCH] keys: Pin request_key_auth payload in instantiate paths 11+ messages
2026-05-16 19:01 [PATCH] landlock: Documentation wording cleanups 4+ messages
2026-05-13 18:05 [PATCH] lsm: hold cred_guard_mutex for lsm_set_self_attr() 4+ messages
2026-05-05 9:05 [PATCH v5 02/14] lockdown: Make the relationship to MODULE_SIG a dependency 27+ messages
2026-05-03 4:12 [PATCH 1/3] apparmor: Fix return in ns_mkdir_op 3+ messages
2026-04-23 3:10 [PATCH] apparmor/lsm: Fix aa_dfa_unpack's error handling in aa_setup_dfa_engine 3+ messages
2026-04-07 20:01 [RFC PATCH 00/20] BPF interface for applying Landlock rulesets 60+ messages
2026-04-06 14:36 [PATCH v2 01/17] landlock: Prepare ruleset and domain type split 29+ messages
2026-03-27 11:58 [PATCH RESEND] apparmor: Fix string overrun due to missing termination 3+ messages
2026-02-06 2:42 [PATCH v2 v2] evm: check return values of crypto_shash functions 7+ messages
2026-01-19 9:12 [PATCH -next] lockdown: Add break in lockdown_write 5+ messages
2025-09-04 0:04 [PATCH v2 0/7] fs/9p: Reuse inode based on path (in addition to qid) 28+ messages
2025-04-28 19:50 [PATCH v2] security,fs,nfs,net: update security_inode_listsecurity() interface 30+ messages
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox