SELinux Security Module development
 help / color / mirror / Atom feed
 messages from 2026-08-05 13:30:03 to 2026-08-20 17:19:04 UTC [more...]

[PATCH 0/3] proc,security,selinux: let SELinux block FOLL_FORCE for /proc/self/mem
 2026-08-20 17:18 UTC  (11+ messages)
` [PATCH 1/3] proc: refactor /proc/$pid/mem to use struct as private_data
` [PATCH 2/3] proc: query LSMs for introspective mem access (if PROC_MEM_FORCE_ALWAYS)
` [PATCH 3/3] selinux: require EXECMEM or PTRACE for FOLL_FORCE introspection

[PATCH 1/2] libsepol: Validate expressions do not mix tunables and booleans
 2026-08-20 17:05 UTC  (4+ messages)
` [PATCH 2/2] libsepol: Remove assertion and comment from discard_tunables()

[RFC PATCH v2] libsepol: drop support for policy versions before xperms_ioctl/xen_devicetree
 2026-08-20 14:48 UTC 

[PATCH] selinux: preserve user SID across nested backing files
 2026-08-20 14:32 UTC  (3+ messages)

[RFC PATCH] libsepol: drop support for policy versions before xperms_ioctl/xen_devicetree
 2026-08-20 14:21 UTC 

selinux:selabel_file_text-fuzzer: Null-dereference READ in selabel_file_text-fuzzer
 2026-08-20 12:35 UTC  (3+ messages)

[GIT PULL] selinux/selinux-pr-20260814
 2026-08-20  0:55 UTC  (2+ messages)

[PATCH v2] libsepol: Check all the permissions in sepol_check_access()
 2026-08-19 16:43 UTC  (3+ messages)

[PATCH v1 0/3] setfiles: control relabeling parallelism from the environment
 2026-08-19 16:42 UTC  (10+ messages)
` [PATCH v1 1/3] policycoreutils/setfiles: reject invalid -T arguments
` [PATCH v1 2/3] policycoreutils/setfiles: use all CPU cores by default
` [PATCH v1 3/3] policycoreutils/setfiles: honor RESTORECON_THREADS

[PATCH] libsepol: Use matching integer types in scope_write()
 2026-08-19 16:41 UTC  (3+ messages)

[PATCH v2 3/3] policycoreutils/setfiles: honor RESTORECON_THREADS
 2026-08-19 14:41 UTC  (2+ messages)

[RFC/Discussion] eBPF-based runtime permission auditing tool for SELinux policies
 2026-08-19 13:15 UTC  (4+ messages)

[PATCH] libsepol: Check all the permissions in sepol_check_access()
 2026-08-18 19:45 UTC  (2+ messages)

[PATCH v2] python/sepolicy: add missing socket template attributes
 2026-08-17 20:14 UTC  (3+ messages)

[PATCH 1/2] libselinux: selinux_restorecon: fix error message on intermediate symlinks
 2026-08-17 20:13 UTC  (4+ messages)
` [PATCH 2/2] policycoreutils/setfiles: enable SELINUX_RESTORECON_REALPATH by default

[PATCH] libsemanage: treat module data as bytes in the Python bindings
 2026-08-17 20:13 UTC  (3+ messages)

[PATCH] mcstrans: escape config text spliced into build_regexps() patterns
 2026-08-17 20:12 UTC  (3+ messages)

[PATCH] libselinux: selinux_check_access: fail cleanly if avc_open() failed
 2026-08-17 20:11 UTC  (3+ messages)

[PATCH] libsepol: use bool instead of int in validation functions
 2026-08-17 16:29 UTC  (5+ messages)

[PATCH bpf-next 0/5] bpf: Introduce LOADER_LOAD_FD
 2026-08-17 16:11 UTC  (16+ messages)
` [PATCH bpf-next 1/5] fs/kernel_read_file,selinux: Add BPF_LOADER constant
` [PATCH bpf-next 2/5] bpf: Introduce BPF_LOADER_LOAD_FD command
` [PATCH bpf-next 3/5] selinux: use kernel sid in security_bpf_*
` [PATCH bpf-next 4/5] selinux: Add BPF_LOADER_LOAD_FD syscall permission
` [PATCH bpf-next 5/5] selftests/bpf: add loader_load_fd tests

[PATCH] python/sepolicy: add missing socket template attributes
 2026-08-17 14:50 UTC  (2+ messages)

[PATCH v2] [V2] selinux: restore sleepable revalidation; keep fast no-sleep check
 2026-08-16 18:20 UTC  (3+ messages)

[PATCH v2] README.md: Further elaboration on minimum policy versions
 2026-08-14 18:23 UTC  (2+ messages)

[PATCH] .github/workflows/tf_testsuite.yml: skip testing farm on pull requests
 2026-08-14 14:22 UTC  (3+ messages)

[PATCH] libselinux: fix SEGV in JIT matching of recursive patterns in partial mode
 2026-08-14 12:24 UTC  (4+ messages)

[PATCH] README.md: Further elaboration on minimum policy versions
 2026-08-14  2:39 UTC  (2+ messages)

[PATCH 0/7] Change skb secmarks to x-array indexes
 2026-08-14  2:39 UTC  (15+ messages)
  ` [PATCH 1/7] net, smack: Create a function to set secmarks
  ` [PATCH 2/7] LSM: Implement x array functions for secmarks
  ` [PATCH 3/7] LSM: Two hooks for manipulating struct lsm_prop
  ` [PATCH 4/7] SELinux: hooks for secctx_to_lsmprop and update_lsmprop
  ` [PATCH 5/7] Smack: "
  ` [PATCH 6/7] Apparmor: "
  ` [PATCH 7/7] net, lsm: Change skb secmarks to x-array indexes

Cloud & AI grants for startups
 2026-08-14  0:31 UTC 

[Discussion] systemd-run0 policy issue
 2026-08-13 13:49 UTC  (6+ messages)

[PATCH] README.md: clarify minimum supported kernel and policy versions
 2026-08-13 12:11 UTC  (3+ messages)

[PATCH] libsepol: Check that a module does not have any commons when validating
 2026-08-12 20:11 UTC  (2+ messages)

[PATCH] libsepol: Use spaceship comparison operator when comparing ibpkeys
 2026-08-12 19:38 UTC  (3+ messages)

[PATCH] libsepol: Free context on genfscon wildcard error in kernel_to_*
 2026-08-12 16:21 UTC  (3+ messages)

[PATCH] libsepol: Skip aliases when creating the type_attr_map
 2026-08-12 15:46 UTC  (3+ messages)

[PATCH] libsepol: drop support for modular policy versions < 10
 2026-08-12 12:22 UTC  (3+ messages)

[PATCH 1/2 v2] libsepol: Copy a chain of type alias references
 2026-08-12 12:22 UTC  (3+ messages)
` [PATCH 2/2 v2] libsepol: Improve the validation of type aliases

[PATCH] libsepol/cil: Output culprit rules from binary policy when CIL AST match fails
 2026-08-12 12:21 UTC  (3+ messages)

[PATCH 1/2] libsepol: Copy a chain of type alias references
 2026-08-11 16:24 UTC  (4+ messages)
` [PATCH 2/2] libsepol: Improve the validation of type aliases

[PATCH] .github/actions/build-userspace: drop duplicated make install, fix comment
 2026-08-11 13:38 UTC  (2+ messages)

[PATCH] scripts/oss-fuzz: build PCRE2 from source with sanitizer instrumentation
 2026-08-10 16:00 UTC  (5+ messages)

[PATCH] README.md: document the minimum kernel policy version
 2026-08-10 12:59 UTC  (2+ messages)

[PATCH v2] SECURITY.md: Codify the maintainer process
 2026-08-10 12:53 UTC  (4+ messages)

SECURITY: libsepol <= 3.11: NULL pointer dereference in `hierarchy_add_type_callback` via crafted binary policy (POLICY_KERN versions 20-23)
 2026-08-10 12:40 UTC 

[PATCH v2] selinux: tighten policydb_context_isvalid() checks
 2026-08-07 19:20 UTC  (2+ messages)

[PATCH] libsepol/cil: fix size truncation in cil_add_file()
 2026-08-07 18:40 UTC  (3+ messages)

[PATCH] libselinux: restorecon_xattr: reset dir_xattr_list on every call
 2026-08-07 18:39 UTC  (3+ messages)

[PATCH] selinux: tighten policydb_context_isvalid() checks
 2026-08-07 17:17 UTC  (2+ messages)

SECURITY: policycoreutils/fixfiles <= 3.11: relabel files to incorrect security context
 2026-08-07 12:52 UTC 

[PATCH] libselinux: Replace PyString_FromString with PyUnicode_FromString for SWIG 4.5.0 compatibility
 2026-08-07 12:32 UTC  (3+ messages)

[PATCH v2] checkpolicy-fuzzer: drop invalid assertion
 2026-08-06 16:57 UTC  (3+ messages)

[PATCH v2] libsepol,checkpolicy: drop support for kernel policy versions < 24
 2026-08-06 16:56 UTC  (3+ messages)

[PATCH] selinux: check level category sets once at load time
 2026-08-06 16:30 UTC  (6+ messages)

[GIT PULL] selinux/selinux-pr-20260805
 2026-08-06 16:01 UTC  (2+ messages)

[PATCH] checkpolicy-fuzzer: drop invalid assertion
 2026-08-06 14:13 UTC 

[PATCH testsuite v2] tests/io_uring/iouring.c: bump RLIMIT_MEMLOCK up to hard limit
 2026-08-06  5:00 UTC  (3+ messages)

[PATCH] libsepol,checkpolicy: drop support for kernel policy versions < 24
 2026-08-05 18:36 UTC 

[PATCH 1/2] libsepol: validate type datum value even for aliases
 2026-08-05 16:19 UTC  (4+ messages)
` [PATCH 2/2] libsepol: Prevent NULL dereference in hierarchy_add_type_callback

[PATCH v3] libsepol: Validate any levels that appear in a policy
 2026-08-05 16:19 UTC  (2+ messages)

[PATCH] README.md: add Check format badge and link
 2026-08-05 16:17 UTC  (2+ messages)

[PATCH v2] libsepol: Validate any levels that appear in a policy
 2026-08-05 15:03 UTC  (2+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox