2026-06-29 21:01 [PATCH] lsm: cleanup repeated lsm_blob_size_update() calls in lsm_prepare()
2026-06-29 7:06 [PATCH stable/linux-5.10.y 0/7] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 9+ messages
2026-06-29 7:03 [PATCH v3 stable/linux-6.12.y 1/3] fs: constify file ptr in backing_file accessor helpers 4+ messages
2026-06-28 10:07 [PATCH v7] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function 2+ messages
2026-06-28 9:51 [PATCH v6] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function 2+ messages
2026-06-28 9:28 [PATCH v5] rust: aref: make `AlwaysRefCounted::inc_ref` an associated function
2026-06-27 6:57 [PATCH v2 stable/linux-6.6.y 0/3] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 5+ messages
2026-06-27 4:28 [PATCH v2 stable/linux-6.12.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-26 11:54 [PATCH v19 8/8] rust: page: add `from_raw()` 9+ messages
2026-06-26 11:45 [RFC PATCH 0/4] Introduce capable_noaudit 17+ messages
2026-06-26 7:50 [PATCH v2 stable/linux-6.18.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-26 7:00 [PATCH] selftests/landlock: Fix snprintf truncation checks in test files
2026-06-26 2:40 [PATCH v2 stable/linux-6.18.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-26 1:17 [PATCH -next 0/2] Fix call security_backing_file_free second time 3+ messages
2026-06-25 10:15 [PATCH v18 7/8] rust: Add `OwnableRefCounted` 12+ messages
2026-06-25 9:28 [PATCH] Documentation: landlock: Document fs.resolve_unix audit blocker 2+ messages
2026-06-25 1:50 Re: [PATCH] selinux: check connect-related permissions on TCP Fast Open
2026-06-24 14:02 [PATCH bpf-next v2 1/5] bpf: Verify signed loader metadata at load time 18+ messages
2026-06-24 7:52 [GIT PULL] AppArmor updates for 7.2-rc1 2+ messages
2026-06-23 5:01 [PATCH] landlock: shrink tsync works[] on partial allocation failure 3+ messages
2026-06-23 1:50 [PATCH] apparmor: mv get_loaddata_common_ref() into CONFIG_SECURITY_APPARMOR_EXPORT_BINARY block 2+ messages
2026-06-22 23:27 [PATCH] tests: add a regression test for the TCP Fast Open connect-mediation bypass 2+ messages
2026-06-22 20:57 [PATCH] apparmor: mediate the implicit connect of TCP fast open sendmsg 2+ messages
2026-06-22 15:24 Re: [PATCH] keys: trusted: dcp: Make dcp_trusted_key_ops const
2026-06-22 3:15 [stable/linux-6.6.y 0/3] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-22 3:15 [stable/linux-6.12.y 0/2] Backport Fix incorrect overlayfs mmap() and mprotect() LSM access controls 4+ messages
2026-06-22 3:14 [stable/linux-6.18.y 2/2] selinux: fix overlayfs mmap() and mprotect() access checks 5+ messages
2026-06-21 3:52 [PATCH v9 0/9] Implement LANDLOCK_ADD_RULE_NO_INHERIT 10+ messages
2026-06-20 12:32 [syzbot] Monthly tomoyo report (Jun 2026)
2026-06-19 17:19 [PATCH] LSM: check if lsmprop_to_secctx call is supported by LSM 5+ messages
2026-06-19 13:03 [PATCH 2/2] lsm: fix size queries for getselfattr with NULL buffer 3+ messages
2026-06-19 8:35 [GIT PULL] Landlock update for v7.2-rc1 2+ messages
2026-06-19 8:21 [PATCH] landlock: work around gcc-16 -Wuninitialized warning
2026-06-19 1:11 AppArmor: TCP Fast Open bypasses connect mediation (last unaddressed LSM) 3+ messages
2026-06-19 0:22 [PATCH] tomoyo: Enforce connect policy in TCP Fast Open 2+ messages
2026-06-18 20:34 [PATCH bpf-next v3 0/2] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling 18+ messages
2026-06-18 19:33 Re: [PATCH v5 7/8] vfs: Replace security_sb_mount/security_move_mount with granular hooks
2026-06-17 8:41 [syzbot] [tomoyo?] KMSAN: uninit-value in tomoyo_path_chown (3) 3+ messages
2026-06-16 20:16 Landlock: LANDLOCK_ACCESS_FS_IOCTL_DEV bypass via io_uring IORING_OP_URING_CMD 11+ messages
2026-06-16 20:16 Landlock: LANDLOCK_ACCESS_NET_CONNECT_TCP bypass via TCP Fast Open 10+ messages
2026-06-16 2:55 [GIT PULL] selinux/selinux-pr-20260615 4+ messages
2026-06-16 2:55 [GIT PULL] lsm/lsm-pr-20260615 2+ messages
2026-06-15 20:03 [PATCH] security: clarify task_prctl hook documentation 3+ messages
2026-06-15 15:37 Sashiko reviews for the LSM mailing list 9+ messages
2026-06-14 15:00 [PATCH] KEYS: avoid filesystem reclaim while holding keyring->sem 2+ messages
2026-06-13 13:04 [PATCH 0/2] security/keys: replace BUG() in unreachable default cases 5+ messages
2026-06-13 6:04 [PATCH] apparmor: fix use-after-free in policy replacement path 2+ messages
2026-06-12 17:27 [PATCH v2] landlock: Set audit_net.sk for socket access checks
2026-06-12 15:58 [PATCH 02/10] docs/zh_CN: add LSM/apparmor Chinese translation 13+ messages
2026-06-12 15:58 [PATCH 00/10] docs/zh_CN: add LSM admin-guide Chinese translation
2026-06-12 1:48 [PATCH v11 0/9] Implement LANDLOCK_ADD_RULE_QUIET 10+ messages
2026-06-11 18:59 [PATCH] Add LoadPin support for eBPF program loading 6+ messages
2026-06-11 16:21 [PATCH v5 0/6] landlock: Add UDP access control support 8+ messages
2026-06-11 7:00 [PATCH v2] cred: prevent slab cache merging for cred_jar
2026-06-10 23:03 [PATCH bpf-next 0/5] Verify BPF signed loader at load time 10+ messages
2026-06-10 9:23 [PATCH v3 0/3] landlock: Restrict renameat2 with RENAME_WHITEOUT 6+ messages
2026-06-10 6:50 [PATCH v2] keys: prevent slab cache merging for key_jar 2+ messages
2026-06-08 6:36 [PATCH] apparmor: check label build before no_new_privs test
2026-06-08 5:31 security_inode_follow_link: KASAN UAF localization report
2026-06-07 13:49 [PATCH] keys: allow request-key path to be configured via Kconfig 10+ messages
2026-06-06 20:26 [PATCH next] keys: Replace strcpy(derived_buf, "AUTH_KEY") with strscpy(..., HASH_SIZE) 2+ messages
2026-06-06 14:25 [PATCH] cred: prevent slab cache merging for cred_jar 5+ messages
2026-06-05 17:22 [PATCH v7 00/12] ima: Exporting and deleting IMA measurement records from kernel memory 15+ messages
2026-06-05 16:50 [PATCH v2] hardening: Default randstruct off with rust for better allmodconfig support 4+ messages
2026-06-05 16:01 [PATCH] hardening: Default randstruct off with rust for better allmodconfig support 3+ messages
2026-06-05 14:43 [PATCH v6 0/4] introduce IMA_INIT_LATE_SYNC option 11+ messages
2026-06-04 23:16 [PATCH v5 0/2] landlock: fix SCOPE_SIGNAL bypass on the SIGIO/fowner path 5+ messages
2026-06-04 20:11 [PATCH v17 02/10] rust: types: Add Ownable/Owned types 27+ messages
2026-06-04 12:50 [PATCH] keys: prevent slab cache merging for key_jar 8+ messages
2026-06-04 0:04 Re: -next status as at v7.1-rc6 8+ messages
2026-06-03 1:13 [net v3] netlabel: validate unlabeled address and mask attribute lengths 2+ messages
2026-06-02 20:23 [PATCH 0/3] hornet: post-TOCTOU-fix cleanup and observability 4+ messages
2026-06-02 18:36 [RFC PATCH] hornet: adjustments for the updated bpf_map_ops::map_get_hash() API 2+ messages
2026-06-02 11:13 [PATCH v6 00/12] ima: Exporting and deleting IMA measurement records from kernel memory 18+ messages
2026-06-02 1:42 Landstrip
2026-06-01 14:27 [PATCH v5 0/4] introduce IMA_INIT_LATE_SYNC option 13+ messages
2026-06-01 3:06 [PATCH] fork: Ensure copy_process() returns a valid error pointer on failure 3+ messages
2026-06-01 0:00 [PATCH v10 0/9] Implement LANDLOCK_ADD_RULE_QUIET 20+ messages
2026-05-31 2:49 [PATCH] KEYS: fix overflow in keyctl_pkey_params_get_2() 3+ messages
2026-05-29 20:03 [PATCH] selftests/landlock: explicitly disable audit 4+ messages
2026-05-29 20:01 [syzbot] [lsm?] KASAN: slab-use-after-free Read in security_inode_follow_link
2026-05-29 19:08 [PATCH v3 2/2] selftests/landlock: test SCOPE_SIGNAL on the SIGIO/fowner pgid path
2026-05-29 19:07 [PATCH v3 1/2] landlock: fix LANDLOCK_SCOPE_SIGNAL bypass via F_SETOWN to invoker's pgid 9+ messages
2026-05-29 9:33 [PATCH v4 0/2] Delete task_euid() 8+ messages
2026-05-29 4:43 Re: [REPORT] landlock: SCOPE_SIGNAL bypass via F_SETOWN to invoker pgid -> SIGIO/SIGKILL to non-sandboxed targets 3+ messages
2026-05-29 3:34 [PATCH] KEYS: Use acquire when reading state in keyring search 4+ messages
2026-05-29 3:32 [BUG] apparmor: AA_BUG aa_policy_destroy on aa_alloc_profile error path
2026-05-29 1:51 [PATCH v8 00/10] Implement LANDLOCK_ADD_RULE_NO_INHERIT 12+ messages
2026-05-28 21:21 [PATCH] landlock: fix LANDLOCK_SCOPE_SIGNAL bypass via F_SETOWN to invoker's pgid 2+ messages
2026-05-28 18:25 [PATCH v5 0/8] lsm: Replace security_sb_mount with granular mount hooks 15+ messages
2026-05-28 12:14 [PATCH 6.12.y] landlock: Fix TCP handling of short AF_UNSPEC addresses
2026-05-28 3:08 [PATCH 00/11] hornet: security, tooling and selftest fixes 23+ messages
2026-05-28 1:59 [PATCH net v2] netlabel: validate unlabeled mask attribute length 4+ messages
2026-05-27 18:11 [PATCH v2 3/9] landlock: Wrap per-layer access masks in struct layer_config 13+ messages
2026-05-27 4:32 [syzbot] Monthly lsm report (May 2026)
2026-05-27 1:01 [PATCH v9 0/9] Implement LANDLOCK_ADD_RULE_QUIET 12+ messages
2026-05-26 22:39 security_task_prctl: why -ENOSYS 7+ messages
2026-05-26 15:35 [PATCH RESEND 0/1] yama: clean-up ptrace relations upon activating YAMA_SCOPE_NO_ATTACH 3+ messages
2026-05-26 14:28 [PATCH v3] security: Expand task_setscheduler LSM hook to include CPU affinity mask 11+ messages
2026-05-26 10:36 [PATCH] firmware: arm_ffa: Treat missing FF-A feature on a platform as a probe miss 5+ messages
2026-05-26 2:48 [PATCH] keys: Pin request_key_auth payload in instantiate paths 11+ messages
2026-05-26 1:38 [PATCH v2 2/2] security: smack: fix spelling mistake 2+ messages
2026-05-26 1:38 [PATCH v2 1/2] security: apparmor: fix two spelling mistakes
2026-05-26 1:23 [PATCH] tomoyo: Fix NULL pointer dereference in tomoyo_init_request_info() when domain is NULL 5+ messages
2026-05-25 22:04 [PATCH] apparmor: fix use-after-free in rawdata dedup loop
2026-05-25 7:54 [PATCH v4 0/3] introduce IMA_INIT_LATE_SYNC option 15+ messages
2026-05-25 2:15 [PATCH] Fix various spelling mistakes 2+ messages
2026-05-24 22:37 [PATCH 0/2] smack: restrict smackfs/{direct,mapped} values to 0-255 3+ messages
2026-05-24 11:34 [PATCH] apparmor: Constify 'nulldfa_src' and 'stacksplitdfa_src' arrays 2+ messages
2026-05-24 5:15 [PATCH v8 0/3] 7+ messages
2026-05-24 4:14 [PATCH net v2 0/4] net: trust-after-modification fixes for IPv4 options + netlabel 5+ messages
2026-05-23 20:09 [RFC PATCH] ipe: support multiple BPF integrity verification LSMs 3+ messages
2026-05-23 16:00 [PATCH] lsm,bpf: fix security_bpf_prog_load() error handling 7+ messages
2026-05-23 15:57 [PATCH] crypto: pkcs7: export verify_pkcs7_message_sig() as EXPORT_SYMBOL_GPL
2026-05-22 21:53 [PATCH bpf v3 0/2] gen_loader fixes 9+ messages
2026-05-22 8:16 [PATCH v3] keys/trusted_keys: move TPM-specific fields into trusted_tpm_options 2+ messages
2026-05-22 5:56 [ANN] Linux Security Summit Europe 2026 CfP
2026-05-22 5:45 [net-next] netlabel: validate unlabeled mask attribute length 2+ messages
2026-05-22 2:32 [PATCH bpf-next 00/13] Signed BPF + IPE Policies 27+ messages
2026-05-22 2:29 [net-next] netlabel: fix IPv6 unlabeled address add error handling 3+ messages
2026-05-22 1:35 [PATCH] tpm-buf: memory-safe allocations 7+ messages
2026-05-22 0:33 [linux-next:master] BUILD REGRESSION 550604d6c9b9efc8d068aff94dc301694a7afdee
2026-05-21 16:06 [PATCH 0/6] landlock: Add scoped access bit for SysV message queues 7+ messages
2026-05-21 15:22 [PATCH v2 0/2] gen_loader fixes 8+ messages
2026-05-21 15:13 [PATCH v2] apparmor: Fix inverted comparison in cache_hold_inc()
2026-05-21 13:33 [PATCH 01/11] params: bound array element output to the caller's page buffer 33+ messages
2026-05-21 6:57 [PATCH] apparmor: Fix inverted comparison in cache_hold_inc()
2026-05-20 8:18 [PATCH 0/3] security: replace __get_free_pages() call with kmalloc() 7+ messages
2026-05-20 2:40 [PATCH v2] bpf: reject NULL data/sig in bpf_verify_pkcs7_signature 3+ messages
2026-05-19 21:53 [PATCH] bpf, libbpf: reject non-exclusive metadata maps in the signed loader 2+ messages
2026-05-19 20:30 [PATCH] landlock: avoid memcpy static check warning 3+ messages
2026-05-19 20:09 [PATCH] bpf: reject NULL data/sig in bpf_verify_pkcs7_signature 4+ messages
2026-05-19 20:05 [GIT PULL] lsm/lsm-pr-20260519 2+ messages
2026-05-19 16:47 Re: [RFC] TID v2.0: kernel module for cache-line zeroization against Flush+Reload (CLFLUSHOPT + LFENCE + REP STOSQ) 2+ messages
2026-05-19 14:44 [bug report] keys: request_key_auth payload use-after-free in keyctl_instantiate_key_common() 3+ messages
2026-05-17 23:05 [PATCH v2 00/16] Bump minimum version of LLVM for building the kernel to 17.0.1 7+ messages
2026-05-16 19:01 [PATCH] landlock: Documentation wording cleanups 3+ messages
2026-05-16 15:22 [PATCH] keys/trusted_keys: mark 'migratable' as __ro_after_init 2+ messages
2026-05-15 20:01 [PATCH v4 0/7] lsm: Replace security_sb_mount with granular mount hooks 12+ messages
2026-05-15 19:07 Re: [PATCH] rust: cred: add safe abstractions for capable() and ns_capable()
2026-05-15 5:01 [PATCH] apparmor: hold peer path references in aa_unix_file_perm()
2026-05-15 3:48 Re: [PATCH] killswitch: add per-function short-circuit mitigation primitive 14+ messages
2026-05-14 16:51 [PATCH net 4/4] netlabel: validate CIPSO option against skb tail in netlbl_skbuff_getattr 3+ messages
2026-05-14 16:51 [PATCH net 3/4] netlabel: validate CALIPSO option against skb tail in netlbl_skbuff_getattr 5+ messages
2026-05-14 16:51 [PATCH net 0/4] net: trust-after-modification fixes for IPv4 options + netlabel 2+ messages
2026-05-14 13:36 [QUESTION] move load_uefi_certs() and keyring initcall to earlier initcall 2+ messages
2026-05-14 2:36 [PATCH] ipe: restore the kdoc comments for evaluate_property() 3+ messages
2026-05-14 1:14 [PATCH] hornet: depend on CONFIG_SECURITY and CONFIG_BPF_SYSCALL 3+ messages
2026-05-13 18:05 [PATCH] lsm: hold cred_guard_mutex for lsm_set_self_attr() 4+ messages
2026-05-13 18:03 [PATCH v1] landlock: Account all audit data allocations to user space
2026-05-13 16:05 [PATCH v2 0/3] landlock: Restrict renameat2 with RENAME_WHITEOUT 6+ messages
2026-05-13 15:18 [PATCH v1] landlock: Demonstrate best-effort allowed_access filtering 2+ messages
2026-05-13 10:51 [PATCH v1 2/2] selftests/landlock: Increase default audit socket timeout 4+ messages
2026-05-12 9:27 Re: [linus:master] [selftests] 465b05bae5: kernel-selftests.landlock.audit_test.audit.tsync_override_log_subdomains_off.fail 5+ messages
2026-05-12 9:10 [PATCH RFC 0/5] memcg: dma-buf per-cgroup accounting via pid_fd 42+ messages
2026-05-11 0:17 [PATCH 0/2] smack: fix incorrect task context in smack_msg_queue_msgrcv 3+ messages
2026-05-10 21:17 [BUG] lsm= with bpf before selinux breaks fscreate with EINVAL 7+ messages
2026-05-09 21:37 [PATCH v2 0/3] security, sched: Expand task_setscheduler LSM hook and related fixes 9+ messages
2026-05-09 16:48 [PATCH 0/3] security, sched: Expand task_setscheduler LSM hook and related fixes 10+ messages
2026-05-09 1:52 [PATCH v3 0/7] lsm: Replace security_sb_mount with granular mount hooks 17+ messages
2026-05-08 17:54 [PATCH 0/4] firmware: arm_ffa: Move core init to platform driver probe 17+ messages
2026-05-07 22:16 [GIT PULL] selinux/selinux-pr-20260507 2+ messages
2026-05-07 19:13 [PATCH v7 00/10] Reintroduce Hornet LSM 25+ messages
2026-05-07 9:48 [PATCH v3 0/2] Delete task_euid() 5+ messages
2026-05-06 22:59 [PATCH] Documentation: fix typo and formattting in security/credentials.rst 6+ messages
2026-05-06 20:49 [PATCH] rust: cred: add safe abstractions for capable() and ns_capable() 5+ messages
2026-05-06 5:49 [PATCH] Documentation: fix typo and formattting in security/credentials.rst 2+ messages
2026-05-05 9:54 [RFC PATCH 0/3] initalise ff-a after finalising pKVM 22+ messages
2026-05-05 9:05 [PATCH v5 02/14] lockdown: Make the relationship to MODULE_SIG a dependency 25+ messages
2026-05-04 9:31 [PATCH RESEND] keys: use kmalloc_flex in user_preparse 2+ messages
2026-05-03 21:18 [PATCH v2 1/2] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling 11+ messages
2026-05-03 4:12 [PATCH 1/3] apparmor: Fix return in ns_mkdir_op 3+ messages
2026-05-02 12:43 [PATCH v4 2/7] landlock: Add UDP connect() access control 25+ messages
2026-05-01 20:05 [GIT PULL] selinux/selinux-pr-20260501 2+ messages
2026-05-01 17:44 [PATCH] lockdown: remove useless decrement operation 4+ messages
2026-04-30 2:51 [linus:master] [landlock] 874c8f8382: kernel-selftests.landlock.audit_test.audit.thread.fail 2+ messages
2026-04-30 0:03 [PATCH v2 0/7] lsm: Replace security_sb_mount with granular mount hooks 12+ messages
2026-04-29 19:14 [v6 00/10] Reintroduce Hornet LSM 14+ messages
2026-04-29 16:03 [PATCH v5 00/13] ima: Introduce staging mechanism 42+ messages
2026-04-29 8:26 [linus:master] [proc] 599bbba5a3: kernel-selftests.mm.ksft_mkdirty.sh.mkdirty.fail
2026-04-29 2:59 [PATCH 00/14] Bump minimum version of LLVM for building the kernel to 17.0.1 7+ messages
2026-04-28 19:28 [PATCH 0/1] yama: clean-up ptrace relations upon activating YAMA_SCOPE_NO_ATTACH 2+ messages
2026-04-27 0:15 [PATCH bpf-next 1/2] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling 14+ messages
2026-04-26 23:23 [PATCH] selinux: don't reserve xattr slot when we won't fill it 2+ messages
2026-04-24 13:23 [RFC PATCH v3 0/4] Fix IMA + TPM initialisation ordering issue 45+ messages
2026-04-23 3:10 [PATCH] apparmor/lsm: Fix aa_dfa_unpack's error handling in aa_setup_dfa_engine 3+ messages
2026-04-22 16:24 [RFC PATCH v2 0/4] fix FF-A call failed with pKVM when ff-a driver is built-in 43+ messages
2026-04-20 21:26 [PATCH v5 00/10] Reintroduce Hornet LSM 17+ messages
2026-04-14 6:40 [syzbot] Monthly lsm report (Apr 2026) 7+ messages
2026-04-10 10:16 [bug report] apparmor: add support loading per permission tagging 2+ messages
2026-04-09 12:27 Re: [PATCH v2 0/4] Firmware LSM hook 34+ messages
2026-04-06 15:52 [PATCH v8 0/9] Implement LANDLOCK_ADD_RULE_QUIET 20+ messages
2026-04-06 14:36 [PATCH v2 01/17] landlock: Prepare ruleset and domain type split 25+ messages
2026-03-27 11:58 [PATCH RESEND] apparmor: Fix string overrun due to missing termination 3+ messages
2026-03-12 10:04 [RFC PATCH v1 07/11] selftests/landlock: Drain stale audit records on init 50+ messages
2026-02-06 2:42 [PATCH v2 v2] evm: check return values of crypto_shash functions 7+ messages
2025-11-18 13:46 [RFC PATCH v4 14/19] selftests/landlock: Test that accept(2) is not restricted 35+ messages
2025-09-18 19:30 [PATCH v2] tpm: use a map for tpm2_calc_ordinal_duration() 7+ messages
2025-09-16 4:47 [PATCH v3 00/14] Remove redundant rcu_read_lock/unlock() in spin_lock 24+ messages
2025-04-28 19:50 [PATCH v2] security,fs,nfs,net: update security_inode_listsecurity() interface 23+ messages
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox