SELinux Security Module development
 help / color / mirror / Atom feed
 messages from 2026-09-15 17:04:08 to 2026-09-23 17:07:40 UTC [more...]

[PATCH v3 00/40] mm: make VMA flag semantics explicit, eliminate VM_SPECIAL
 2026-09-23 17:07 UTC  (93+ messages)
` [PATCH v3 01/40] mm/vma: fix mmap_prepare file handling, remove file_doesnt_need_get
` [PATCH v3 02/40] mm/vma: predicate setting mmap_prepare VMA fields on new vma alloc
` [PATCH v3 03/40] mm/vma: introduce and use vma_[flags_]can_merge()
` [PATCH v3 04/40] mm: consistently validate VMA state after mmap[_prepare] hooks
` [PATCH v3 05/40] mm/vma: ensure mmap_prepare doesn't set actions on a mergeable vma
` [PATCH v3 06/40] mm: make map_kernel_pages_[prepare,complete] internal and unexported
` [PATCH v3 07/40] mm/vma: tidy up map kernel pages enum values
` [PATCH v3 08/40] mm: add mmap action for discontiguous kernel page mapping
` [PATCH v3 09/40] docs: filesystems: update mmap_prepare docs for discontig kernel pgs
` [PATCH v3 10/40] drivers/usb/mon: update to use mmap_prepare + map kernel pages
` [PATCH v3 11/40] infiniband: update hfi1 to use remap_vmalloc_range()
` [PATCH v3 12/40] selinux: reject writable opens of policy file, drop mmap shared/write check
` [PATCH v3 13/40] ALSA: pcm: use vm_insert_page() to map PCM status page
` [PATCH v3 14/40] bpf: arena: mark arena_map_mmap() mappings VM_MIXEDMAP
` [PATCH v3 15/40] mm/vma: add vma[_flags]_is_kernel_owned() predicates
` [PATCH v3 16/40] mm/vma: only allow mmap to clear VMA_MAYWRITE_BIT if kernel-owned
` [PATCH v3 17/40] mm/vma: add and use vma_[flags]_is_fixed_mapping
` [PATCH v3 18/40] scsi: sg: convert mmap hook to mmap_prepare and rework
` [PATCH v3 19/40] fbdev: defio: assert FBINFO_VIRTFB, drop VM_IO, add VM_MIXEDMAP
` [PATCH v3 20/40] HSI: cmt_speech: convert mmap hook to mmap_prepare, refactor
` [PATCH v3 21/40] mm/gup: error out early on !VMA_MAYREAD_BIT VMAs
` [PATCH v3 22/40] uprobes: remove VM_IO, set VM_MIXEDMAP for mapped kernel pages
` [PATCH v3 23/40] mm/mlock: clear VMA_LOCKED_MASK over mmap callback
` [PATCH v3 24/40] mm/mlock: eliminate weird VMA_IO_BIT abuse and simplify
` [PATCH v3 25/40] mm/vma: enforce that only kernel-owned mappings may set VMA_IO_BIT
` [PATCH v3 26/40] mm: remove VMA_IO_BIT check in vma[_flags]_is_kernel_owned()
` [PATCH v3 27/40] mm: remove hugetlb_inline.h
` [PATCH v3 28/40] mm: rename is_vm_hugetlb_page() to vma_is_hugetlb()
` [PATCH v3 29/40] mm: drop some redundant checks around hugetlb VMAs
` [PATCH v3 30/40] mm/madvise: update is_valid_guard_vma() to use vma_can_merge()
` [PATCH v3 31/40] mm/vma: introduce vma[_flags]_is_persistent()
` [PATCH v3 32/40] mm/uffd: use predicates for userfaultfd checks
` [PATCH v3 33/40] mm/madvise: use predicates for madvise(..., MADV_DOFORK)
` [PATCH v3 34/40] mm: eliminate VMA_SPECIAL_FLAGS usage when hugetlb explicitly tested
` [PATCH v3 35/40] mm: eliminate VMA_SPECIAL_FLAGS check in lru_gen_look_around()
` [PATCH v3 36/40] mm: avoid use of VMA_SPECIAL_FLAGS in migrate_vma_setup()
` [PATCH v3 37/40] mm: eliminate VM_SPECIAL, VMA_SPECIAL_FLAGS
` [PATCH v3 38/40] fuse: dax: do not set VM_MIXEDMAP
` [PATCH v3 39/40] mm/huge_memory: remove vma_is_special_huge()
` [PATCH v3 40/40] mm/vma: introduce and use vma[_flags]_can_gup()

[PATCH] SECURITY.md: update to reflect our current disclosure practice
 2026-09-23 16:52 UTC 

[PATCH] policycoreutils/scripts/fixfiles: search fallback configuration roots
 2026-09-23 15:56 UTC 

[PATCH v2 00/40] mm: make VMA flag semantics explicit, eliminate VM_SPECIAL
 2026-09-23 14:31 UTC  (16+ messages)
` [PATCH v2 01/40] mm/vma: fix mmap_prepare file handling, remove file_doesnt_need_get

[PATCH] CIL: misc doc updates
 2026-09-23 13:42 UTC  (2+ messages)

[PATCH] libsepol,checkpolicy: add --multiple-decls option
 2026-09-23 13:38 UTC  (2+ messages)

[PATCH v2] selinux: fix data race on AVC latest_notif
 2026-09-23 13:21 UTC  (3+ messages)

[PATCH v2 1/2] restorecond: search fallback configuration roots for the watch lists
 2026-09-22 19:44 UTC  (3+ messages)
` [PATCH v2 2/2] policycoreutils/newrole: search fallback location for newrole_pam.conf

[PATCH v2 1/3] libselinux: export selinux_policy_open()
 2026-09-22 19:43 UTC  (4+ messages)
` [PATCH v2 2/3] mcstrans: search fallback configuration roots for setrans.conf and secolor.conf
` [PATCH v2 3/3] policycoreutils/run_init: search fallback configuration roots for initrc_context

ANN: Reference Policy 2.20260922
 2026-09-22 18:55 UTC 

[PATCH 1/5] libsepol: consolidate IPPROTO_DCCP/SCTP fallbacks into kernel_to_common.h
 2026-09-22 15:20 UTC  (6+ messages)
` [PATCH 2/5] libsemanage: reject out-of-range ports when parsing the store
` [PATCH 3/5] checkpolicy: preserve policy type when reading a binary module
` [PATCH 4/5] secilc: drop stale integration.cil test, exercise bounds in policy.cil
` [PATCH 5/5] libsepol: emit userbounds and fix rolebounds order when writing CIL

[PATCH 1/2] restorecond: search fallback configuration roots for the watch lists
 2026-09-22 15:17 UTC  (2+ messages)
` [PATCH 2/2] policycoreutils/newrole: search fallback location for newrole_pam.conf

[PATCH 1/3] libselinux: export selinux_policy_open()
 2026-09-22 14:33 UTC  (3+ messages)
` [PATCH 2/3] mcstrans: search fallback configuration roots for setrans.conf and secolor.conf
` [PATCH 3/3] policycoreutils/run_init: search fallback configuration roots for initrc_context

[PATCH v5] selinux: implement namespace_init and namespace_install hooks
 2026-09-21 13:48 UTC  (2+ messages)

[PATCH v4] selinux: implement namespace_init and namespace_install hooks
 2026-09-21 13:45 UTC  (2+ messages)

[PATCH] selinux: constify avc function parameters
 2026-09-21 13:15 UTC  (6+ messages)
` [PATCH 1/2] selinux: check neveraudit in avc_xperms_audit_required()

[PATCH v2] policycoreutils/scripts/fixfiles: pass -I/-D through to setfiles/restorecon
 2026-09-21 12:27 UTC  (2+ messages)

[PATCH v3 0/3] proc,security,selinux: let SELinux block FOLL_FORCE for /proc/self/mem
 2026-09-21  2:33 UTC  (12+ messages)
` [PATCH v3 2/3] proc: query LSMs for introspective mem access (if PROC_MEM_FORCE_ALWAYS)

[GIT PULL] selinux/selinux-pr-20260919
 2026-09-20 15:10 UTC  (2+ messages)

[RFC PATCH v3] selinux: implement namespace_init and namespace_install hooks
 2026-09-18 20:09 UTC  (9+ messages)
` [PATCH RFC "

[PATCH] python/semanage: update semanage-fcontext.8 for fixed regex anchoring
 2026-09-18 20:03 UTC  (2+ messages)

[PATCH] libsepol: skip unrequired class slots in is_decl_requires_met()
 2026-09-18 20:02 UTC  (2+ messages)

[PATCH] policycoreutils/scripts/fixfiles: pass -I/-D through to setfiles/restorecon
 2026-09-18 16:58 UTC 

selinux_kernfs_init_security() ignores genfscon-resolved parent label, breaks type_transition on cgroup2/sysfs
 2026-09-18 15:46 UTC  (2+ messages)

[PATCH v3] lsm,nscommon: initialize the security blob for the initial namespaces
 2026-09-18 14:47 UTC  (2+ messages)

[PATCH] selinux: reject a policy that both rejects and allows unknown classes
 2026-09-18 14:12 UTC  (3+ messages)

[PATCH v2] lsm,nscommon: initialize the security blob for the initial namespaces
 2026-09-18 13:55 UTC  (2+ messages)

[PATCH] lsm: initialize the security blob for the initial namespaces
 2026-09-18 13:55 UTC  (5+ messages)

[PATCH v7] libselinux: fix incorrect regexp anchoring
 2026-09-18 12:37 UTC  (2+ messages)

kernel oops on recent policy with older kernel
 2026-09-17 12:33 UTC  (4+ messages)

[PATCH v6] libselinux: fix incorrect regexp anchoring
 2026-09-16 17:58 UTC 

[PATCH v5] libselinux: fix incorrect regexp anchoring
 2026-09-16 17:26 UTC 

[PATCH v4] libselinux: fix incorrect regexp anchoring
 2026-09-16 17:02 UTC 

[PATCH] selinux: avoid 64-bit division of inode numbers
 2026-09-16  3:32 UTC  (3+ messages)

[PATCH v3 2/2] selinux: recheck intermediate backing files on mprotect
 2026-09-16  3:30 UTC  (2+ messages)

[PATCH v3 1/2] selinux: preserve user SID across nested backing files
 2026-09-16  3:30 UTC  (2+ messages)

[PATCH] selinux: always fill AVC decision in avc_has_perm_noaudit()
 2026-09-15 21:51 UTC  (2+ messages)

[PATCH] selinux: use explicit 64-bit division
 2026-09-15 21:40 UTC  (5+ messages)

[PATCH v3] selinux: mark status and policy inodes as immutable, drop status mmap write checks
 2026-09-15 21:28 UTC  (4+ messages)

[PATCH] libsepol: drop dead store in ocontext_read_xen()
 2026-09-15 19:31 UTC  (2+ messages)

[PATCH 1/4] libsepol: reject out-of-range OCON_PORT field at read time
 2026-09-15 18:48 UTC  (2+ messages)

[PATCH v3] libselinux: fix incorrect regexp anchoring
 2026-09-15 17:50 UTC  (2+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox