SELinux Security Module development
 help / color / mirror / Atom feed
- recent:[subjects (threaded)|topics (new)|topics (active)]
2026-06-17  1:44 SELinux kernel code and clang-format
2026-06-17  1:38 [PATCH] selinux: use bool instead of int in ss/services.c
2026-06-16 19:46 [PATCH v4] python/semanage: do not leak an audit fd per logger instance
2026-06-16 19:41 [PATCH v3] python/semanage: do not leak an audit fd per logger instance
2026-06-16 19:33 [PATCH v2] python/semanage: do not leak an audit fd per logger instance
2026-06-16 18:14 ANN: Reference Policy 2.20260616
2026-06-16 17:53 About SELinux userspace AVC 5+ messages
2026-06-16 16:41 [PATCH] secilc: Use fstat instead of stat to avoid TOCTOU issues 3+ messages
2026-06-16 16:14 [PATCH] libsepol: Add missing comment to context.h
2026-06-16 15:07 [PATCH v3] libsepol: Check for proper length of addr and mask buffers 3+ messages
2026-06-16 14:43 [PATCH 2/2] secilc/docs: mention nlmsg extended permissions 4+ messages
2026-06-16 14:34 [PATCH v2] libselinux: Add EXTRA_LD_FLAGS for musl+llvm builds
2026-06-16 14:18 [PATCH v2] libsepol: Check for proper length of addr and mask buffers 2+ messages
2026-06-16 12:38 [PATCH] libsepol: null-terminate temporary buffer in mls_to_string 3+ messages
2026-06-16  2:55 [GIT PULL] selinux/selinux-pr-20260615
2026-06-15 19:45 Should verify_shell() be in a library? 2+ messages
2026-06-15 18:01 [PATCH] libsepol: Check for proper length of addr and mask buffers 2+ messages
2026-06-15 17:27 [PATCH] libselinux: Add EXTRA_LD_SONAME_FLAGS for musl+llvm builds 2+ messages
2026-06-15 16:39 [PATCH] mcstrans: use sig_atomic_t and bool instead of int 3+ messages
2026-06-15 16:20 [PATCH] libsepol: fix out-of-bounds typealias_lists access in module_to_cil 3+ messages
2026-06-15 13:19 [PATCH] python/semanage: do not leak an audit fd per logger instance
2026-06-15 12:28 [PATCH] libsepol: cast to unsigned char in ctype calls 3+ messages
2026-06-14 19:08 [PATCH] audit2allow: make error message more helpful 2+ messages
2026-06-14 18:23 [PATCH] sandbox: use bool instead of int 2+ messages
2026-06-14 17:48 [PATCH] mcstrans: use null character in strings 2+ messages
2026-06-14 17:41 [PATCH] mcstrans: use null character in strings 2+ messages
2026-06-14 17:15 [PATCH] mcstrans: use bool instead of int 3+ messages
2026-06-14 17:02 [PATCH] policycoreutils: use bool instead of int 2+ messages
2026-06-14 16:54 [PATCH] policycoreutils: use null character in a string 2+ messages
2026-06-14 16:23 [PATCH] policycoreutils: use bool instead of int 5+ messages
2026-06-14 15:50 [PATCH 0/2] policycoreutils: s/int/bool/ and use null character 5+ messages
2026-06-14 14:36 [PATCH 1/2] policycoreutils: use null character in strings 5+ messages
2026-06-14 12:29 [PATCH 2/2] policycoreutils: use null character in a string 5+ messages
2026-06-12 19:11 [RFC PATCH v2 0/3] Make selinux_check_access() thread-safe 4+ messages
2026-06-12 17:08 [RFC PATCH 0/3] Make selinux_check_access() thread-safe 4+ messages
2026-06-11 14:10 [RFC PATCH 0/3] userspace: use openat2 if defined 5+ messages
2026-06-11 13:03 [PATCH] libselinux: add --undefined-version to LD_SONAME_FLAGS 6+ messages
2026-06-11  8:31 ANN: SELinux userspace 3.11-rc2 release
2026-06-10 20:31 [PATCH 1/2] CI: Fix variable use in build-userspace action. 5+ messages
2026-06-10 19:39 [PATCH] libselinux: always provide matchpathcon_filespec_add64() 2+ messages
2026-06-10 15:50 SELinux userspace build fails on Fedora 44 4+ messages
2026-06-10 15:19 [PATCH] libselinux: use null character with strings 2+ messages
2026-06-10 13:31 [PATCH v2] define matchpathcon_filespec_add/add64 2+ messages
2026-06-10 12:42 [PATCH] sestatus: null-terminate process and file check entries 3+ messages
2026-06-10 12:27 [PATCH] libselinux: avoid out-of-bounds access on zero-length lines 5+ messages
2026-06-09 17:48 [PATCH v3] libselinux: Do not clobber errno of the world 3+ messages
2026-06-09 17:44 [PATCH v2] libselinux: Do not clobber errno of the world
2026-06-09 16:24 [PATCH] sandbox/sandbox: fix saving file changes 3+ messages
2026-06-09 11:40 [PATCH v2] Consistently use NULL as pointer constant 2+ messages
2026-06-08 19:15 [REGRESSION] LSM/VFS: startup latency spike during rapid library lookups (ENOENT) on x86_64 between 6.6 and 6.18 8+ messages
2026-06-08 18:36 [PATCH v2] libselinux: digest_gen_hash(): reduce the chunk size for Sha1Update() calls 2+ messages
2026-06-08 18:29 [PATCH] libselinux: digest_gen_hash(): reduce the chunk size for Sha1Update() calls
2026-06-08 17:49 [PATCH] libselinux: label_file: prevent num_specs overflow 2+ messages
2026-06-08 17:16 [PATCH] libselinux: sha1: prevent overflow in Sha1Update() 2+ messages
2026-06-08 16:44 [PATCH] libselinux: label_backends_android: fix non-anti-symmetric cmp function 2+ messages
2026-06-08 15:18 [PATCH] libsemanage: bunzip: guard against size overflow 2+ messages
2026-06-08 13:47 [PATCH] libselinux/src/se_linux_internal.c: include stdint.h 3+ messages
2026-06-08 13:30 [PATCH] libsepol: make reallocarray check more robust 4+ messages
2026-06-08 13:27 [PATCH] sepolicy: set conf.substitutions['releasever'] to empty str when releasever is None 2+ messages
2026-06-08 13:16 [PATCH] libselinux: restore: drop the obsolete LSF transitional API. 2+ messages
2026-06-05 19:45 [PATCH v2] secilc/docs: Adjusted correct statement keyword 2+ messages
2026-06-05 19:18 [PATCH] secilc/docs: Adjusted correct statement keyword.
2026-06-05 19:13 [PATCH] add test for fts_* availability 5+ messages
2026-06-05 18:45 [PATCH] libselinux: Do not clobber errno of the world 3+ messages
2026-06-05 18:14 [PATCH v2 09/11] restorecond: warn on selinux_restorecon(3) failure 2+ messages
2026-06-05 17:34 [PATCH] checkpolicy: drop fscon statement support 2+ messages
2026-06-05 17:21 [PATCH 03/11] sandbox: drop unused macro 24+ messages
2026-06-05 17:18 [PATCH 0/3] ci: Refactor build into a custom GH action.
2026-06-05 17:18 [PATCH 2/3] ci: Explicitly set bash shell in build-userspace action 5+ messages
2026-06-05 15:52 [PATCH] libsepol/cil: Need to add to the length rather assigning it 3+ messages
2026-06-05 14:02 [PATCH 2/4] libselinux: reject invalid file_kind in compiled fcontext loader 9+ messages
2026-06-05 13:33 [PATCH] Makefile: support custom clang-format binary 3+ messages
2026-06-05 13:04 [PATCH] libsemanage: genhomedircon: fix STR_COMPARATOR() passed to lfind() 3+ messages
2026-06-05 11:25 [PATCH v2 1/2] ci: install necessary build python module 6+ messages
2026-06-05 10:43 [PATCH 1/2] ci: install necessary build python module 3+ messages
2026-06-05  9:54 ANN: SELinux userspace 3.11-rc1 release
2026-06-04 20:12 [PATCH] libsepol: Ensure dst gets set when copying range transitions 3+ messages
2026-06-04 19:31 [PATCH] secilc/secil2tree: Test for stdout rather than stdin 3+ messages
2026-06-04 19:17 [PATCH v2] libsepol/cil: Add check for too large of file size 3+ messages
2026-06-04 19:08 [PATCH] secilc/secilcheck: Remove extra sepol_policydb_free(pdb) 3+ messages
2026-06-04 18:42 [PATCH] libselinux: fix REQUIRESEUSERS true/false handling 3+ messages
2026-06-04 18:28 [PATCH 1/2] restorecond: avoid clobbering last character of config line 5+ messages
2026-06-04 17:55 [PATCH] libsepol/cil: Add check for too large of file size 2+ messages
2026-06-04 17:52 [PATCH 1/2] mcstrans: fix glob() error checking 5+ messages
2026-06-04 17:42 [PATCH] libselinux: label: ensure specfile_list is NULL-terminated 3+ messages
2026-06-04 17:22 [PATCH] libsemanage: genhomdircon: handle NULL bsearch() in get_users() 3+ messages
2026-06-04 17:20 [PATCH] libselinux: audit2why: clear static variables on init failure 3+ messages
2026-06-04 17:19 [PATCH] libselinux: selabel_close: only call func_close if set 3+ messages
2026-06-04 17:18 [PATCH] libselinux: restorecon_xattr: clear dir_xattr_* after freeing 3+ messages
2026-06-04 17:17 [PATCH] libselinux: fix selinux_status_updated() for MAP_FAILED case 3+ messages
2026-06-04 16:27 [PATCH] libsepol/cil: Fix type confusion when writing policy.conf from CIL 3+ messages
2026-06-04 15:53 [PATCH v3] Have clang-format ignore auto-generated files 4+ messages
2026-06-04 15:00 [PATCH v2] Have clang-format ignore auto-generated files 2+ messages
2026-06-04 14:39 [PATCH] Have clang-format ignore auto-generated files 2+ messages
2026-06-04 13:49 [PATCH] secilc/secilcheck: Exit with an error for an assertion violation 3+ messages
2026-06-04 12:59 [PATCH] libselinux: serialize legacy compat_validate() callbacks 3+ messages
2026-06-04 12:58 [PATCH] libsemanage: fix OOB cleanup in semanage_direct_list() 3+ messages
2026-06-04 12:58 [PATCH 1/3] libselinux: selinux_restorecon: add flag to skip multilink files 5+ messages
2026-06-04 12:57 [PATCH] restorecond: avoid busy-loop when watch list is empty 3+ messages
2026-06-04 12:55 [PATCH 1/6] mcstrans: fix UAF on SIGHUP 7+ messages
2026-06-03 12:07 [PATCH] libsemanage: avoid "all" as requirement for SWIGSO/SWIGRUBYSO (bsc#1266385) 5+ messages
2026-06-03  9:33 [PATCH 1/2] Reformat all the code based on .clang-format 6+ messages
2026-06-02 15:33 [PATCH 1/3 v4] libsepol/cil: Add function to check CIL neverallows against binary policy 11+ messages
2026-06-02 14:48 [PATCH 1/3 v3] libsepol/cil: Add function to check CIL neverallows against binary policy 4+ messages
2026-06-02  9:57 [PATCH v4] libsemanage: Require LIBSO before SWIGSO and SWIGRUBYSO (bsc#1266385) 3+ messages
2026-06-01 20:29 [PATCH] libselinux: drop long deprecated `-Wstrict-overflow=5` flag 5+ messages
2026-06-01 16:44 inconsistent clang-format
2026-06-01 16:32 HEADS UP: SELinux Userspace 3.11-rc1 release coming soon and code reformat 3+ messages
2026-06-01 14:17 [PATCH v3] libsemanage: Require LIBSO before SWIGSO and SWIGRUBYSO (bsc#1266385) 3+ messages
2026-06-01 14:15 [PATCH 1/6] libselinux: read_spec_entries(): handle nread == 0 7+ messages
2026-06-01 12:42 [PATCH 1/2] libselinux: selabel_subs_init(): do not read past terminating NUL byte 3+ messages
2026-05-31 18:41 [PATCH] libsepol: cil_resolve_ast: add in a CIL_SRC_INFO for the copied data 3+ messages
2026-05-31 16:58 [PATCH v3] selinux: hooks: use kmalloc() to allocate path buffer 6+ messages
2026-05-31 16:38 [PATCH] libselinux: restorecon: add_exclude: validate directory before deref 3+ messages
2026-05-31 15:15 [PATCH RESEND] apparmor: replace get_zeroed_page() with kzalloc()
2026-05-31 15:15 [PATCH v2] selinux: hooks: use kmalloc() to allocate path buffer 3+ messages
2026-05-31  5:45 [PATCH] libsepol: cil_policy: check at least one perm exists in a classperm 3+ messages
2026-05-29 20:02 [PATCH 1/3 v2] libsepol/cil: Add function to check CIL neverallows against binary policy 4+ messages
2026-05-29 17:56 [PATCH] mcstrans: check and handle NULL returns from create_*() 2+ messages
2026-05-29 15:36 [PATCH] selinux: revert use of __getname() in selinux_genfs_get_sid() 2+ messages
2026-05-29 14:33 [PATCH v2] libsemanage: Require LIBSO before SWIGSO and SWIGRUBYSO (bsc#1266385) 2+ messages
2026-05-29 13:37 Re: PowerPC: Random memory corruption causing kernel oops on Power11 9+ messages
2026-05-29 12:50 [PATCH] libsemanage: Require LIBSO before SWIGSO and SWIGRUBYSO (bsc#1266385) 2+ messages
2026-05-28 18:38 [RFC PATCH v3] selinux: implement namespace_init and namespace_install hooks
2026-05-28 18:25 [PATCH v5 0/8] lsm: Replace security_sb_mount with granular mount hooks 10+ messages
2026-05-28 16:39 [PATCH] libsepol: check the number of elements in the avtab 3+ messages
2026-05-28 15:10 [PATCH] seclic/docs: fix statement definition of roletype 2+ messages
2026-05-28 14:53 MRE: secilc and checkpolicy backend bugs 2+ messages
2026-05-28 12:30 [PATCH 1/2] mcstrans: fix off-by-one in MAX_CATS / maxbit comparisons 4+ messages
2026-05-27 17:14 [PATCH] mcstrans: only update maxbit for categories read from config 2+ messages
2026-05-27 15:39 [PATCH 1/3] mcstrans: fix memory leak of sortable 6+ messages
2026-05-27 13:04 [PATCH] mcstrans: continue on failed accept() or add_pollfd() calls 2+ messages
2026-05-27 12:34 [PATCH] mcstrans: cap maximum category bits 2+ messages
2026-05-26 22:39 security_task_prctl: why -ENOSYS 7+ messages
2026-05-26 20:26 [PATCH] mcstrans: avoid size_t underflow 2+ messages
2026-05-26 19:59 [PATCH] mcstrans: prevent stack overflows 2+ messages
2026-05-26 19:05 [PATCH ipsec-next v9 00/16] xfrm: XFRM_MSG_MIGRATE_STATE new netlink message 18+ messages
2026-05-26 14:28 [PATCH v3] security: Expand task_setscheduler LSM hook to include CPU affinity mask 11+ messages
2026-05-26 13:59 [PATCH 5.15.y] selinux: enable genfscon labeling for securityfs
2026-05-25 16:16 [PATCH] restorecond: Do not unlink pidfile if not used 4+ messages
2026-05-21 22:38 [PATCH] selinux: add comments to smp_wmb() calls in status.c 2+ messages
2026-05-21 19:33 Minimum kernel version for SELinux userspace 7+ messages
2026-05-21 19:06 [PATCH 2/3] libsepol: In module_to_cil correctly choose tunableif or booleanif 9+ messages
2026-05-21 18:34 [PATCH] libsepol: Fix index off-by-one errors for categories 3+ messages
2026-05-21 18:01 [PATCH] libsepol: Fix double free in copy_avrule_block 3+ messages
2026-05-21 15:54 [PATCH] sandbox/seunshare: drop -k/--kill support 2+ messages
2026-05-21 15:45 [PATCH] sandbox/seunshare: fix undefined behavior for child 2+ messages
2026-05-21 15:31 [PATCH] sandbox/seunshare: check for errors from parent drop_caps() 2+ messages
2026-05-21 13:40 [PATCH 1/3] restorecond: don't set gl_offs for glob() 4+ messages
2026-05-20 15:00 [PATCH] selinux: enable genfscon labeling for securityfs 2+ messages
2026-05-20 12:10 [PATCH v2 2/2] libselinux: reset scanned file count at selinux_restorecon(3) entry 10+ messages
2026-05-20  8:18 [PATCH 0/3] security: replace __get_free_pages() call with kmalloc() 7+ messages
2026-05-19 18:35 [PATCH v2] libselinux: selinux_restorecon: write digests during traversal 2+ messages
2026-05-19 16:33 [PATCH] gitignore: add entries for coverage related files extensions 3+ messages
2026-05-19 16:31 [PATCH] libselinux: skip per-dirent fstat() when d_type is sufficient 3+ messages
2026-05-19 16:14 [PATCH] libselinux: avoid heap allocation in partial_match() leak path 3+ messages
2026-05-19 15:37 [PATCH] libselinux: selinux_restorecon: write digests during traversal
2026-05-19 14:18 [PATCH] libselinux: fix selinux_restorecon() error handling 2+ messages
2026-05-19 12:24 [PATCH] libsepol: link xperm rule permissions correctly 3+ messages
2026-05-19 12:14 [PATCH] sandbox/seunshare: fix fd_tmpdir_r check 2+ messages
2026-05-18 12:46 [PATCH v2] sandbox/seunshare: rewrite to pin directories before use 2+ messages
2026-05-18 11:57 [PATCH v3 1/2] libselinux: update pywrap targets for modern python builds 3+ messages
2026-05-16 10:15 [PATCH 0/2] selinuxfs: fix inconsistent policy state and deprecated op return value 2+ messages
2026-05-15 20:01 [PATCH v4 0/7] lsm: Replace security_sb_mount with granular mount hooks 12+ messages
2026-05-15 15:14 [PATCH] sandbox/seunshare: check owner in seunshare_mount_file() 2+ messages
2026-05-15 14:45 [PATCH] gui: do not load from cwd and properly quote inputs 3+ messages
2026-05-15 14:34 [PATCH] dbus/selinux_server.py: validate policy config value 3+ messages
2026-05-15 12:09 [PATCH] libsemanage/tests: fix const correctness for test_utilities 2+ messages
2026-05-14 20:56 [PATCH v3] libsemanage: make expand-check a proper boolean option 3+ messages
2026-05-14 20:42 [PATCH v3] libsemanage: use 'bool' for boolean options 3+ messages
2026-05-14 16:19 [PATCH v1] Improve sepolicy audit log parsing. 2+ messages
2026-05-14 16:09 [PATCH v2] semodule_package: fix wrong variable in error message 2+ messages
2026-05-14 15:05 [PATCH] sandbox/seunshare: fully check setfsuid() calls 2+ messages
2026-05-14 12:14 [PATCH v2] sandbox/seunshare: fix killall() realloc and missing type comparison 2+ messages
2026-05-13 19:13 [PATCH v3] checkpolicy: use calloc() so no need to do memset() 3+ messages
2026-05-13 18:05 [PATCH] lsm: hold cred_guard_mutex for lsm_set_self_attr() 4+ messages
2026-05-13 14:37 [PATCH] sandbox/seunshare: drop unused runuserdir_r 2+ messages
2026-05-13 14:30 [PATCH] sandbox/seunshare: verify RUNTIME_DIR before use 2+ messages
2026-05-13 14:13 [PATCH] sandbox/seunshare: prevent path traversal via -W/-P 2+ messages
2026-05-13 13:59 [PATCH] sandbox/seunshare: fix getopt flags 2+ messages
2026-05-13 13:47 [PATCH] sandbox/seunshare: prevent rsync from interpreting paths as options 2+ messages
2026-05-12 16:13 [PATCH] restorecond: NUL-terminate ut_user before use 2+ messages
2026-05-12 13:58 [PATCH] restorecond: do not follow symlinks and do not relabel hard links 2+ messages
2026-05-12  9:10 [PATCH RFC 0/5] memcg: dma-buf per-cgroup accounting via pid_fd 42+ messages
2026-05-11 16:30 [PATCH v4] libselinux: restorecon: revisit pinning files to avoid TOCTOU issues 2+ messages
2026-05-08 12:13 [PATCH 0/4] checkpolicy: minor miscellaneous code cleanups 12+ messages
2026-05-07 23:56 [PATCH v2] checkpolicy: replace malloc()+memset() with calloc() 3+ messages
2026-05-07 16:21 [PATCH] libselinux: remove useless assignment and test 3+ messages
2026-05-07 16:16 [PATCH v3] selinux: tighten type validation during policy load 5+ messages
2026-05-07  9:52 [PATCH] define matchpathcon_filespec_add/add64 5+ messages
2026-05-07  9:52 [PATCH] expose alias for stat64 and lstat64 on musl 3+ messages
2026-05-07  9:52 [PATCH] adjust audit2why map for python2 and 3 3+ messages
2026-05-05  4:31 [PATCH ipsec-next v8 00/14] xfrm: XFRM_MSG_MIGRATE_STATE new netlink message 30+ messages
2026-05-01 19:14 [PATCH] selinux: trivial typo fix 2+ messages
2026-05-01 18:59 [PATCH] selinux: trivial typo fix 2+ messages
2026-04-27 19:55 [RFC PATCH 1/3] libsepol/cil: Add function to check CIL neverallows against binary policy 9+ messages
2026-04-01  5:16 [RFC PATCH] libsepol: Add support for checking standalone CIL neverallow rules 3+ messages
2026-03-20 17:24 [PATCH v2] libselinux: correctly find partial matches 4+ messages
2026-03-12 18:10 Question about libselinux *_with_level functions 2+ messages
2026-02-19 13:21 [PATCH v2] libselinux: improve restorecon progress locking 3+ messages

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox