July 2025 Archives by subject
Starting: Tue Jul 1 00:11:51 UTC 2025
Ending: Thu Jul 31 21:17:51 UTC 2025
Messages: 452
- -Wformat-invalid-specifier after 88fec3526e84 in -next
Nathan Chancellor
- -Wformat-invalid-specifier after 88fec3526e84 in -next
John Johansen
- [GIT PULL] capabilities update for v6.17-rc1
Serge E. Hallyn
- [GIT PULL] capabilities update for v6.17-rc1
pr-tracker-bot at kernel.org
- [GIT PULL] IPE update for 6.17
Fan Wu
- [GIT PULL] IPE update for 6.17
pr-tracker-bot at kernel.org
- [GIT PULL] Landlock update for v6.17-rc1
Mickaël Salaün
- [GIT PULL] Landlock update for v6.17-rc1
pr-tracker-bot at kernel.org
- [GIT PULL] lsm/lsm-pr-20250725
Paul Moore
- [GIT PULL] lsm/lsm-pr-20250725
pr-tracker-bot at kernel.org
- [GIT PULL] selinux/selinux-pr-20250725
Paul Moore
- [GIT PULL] selinux/selinux-pr-20250725
pr-tracker-bot at kernel.org
- [PATCH -next] apparmor: Remove the unused variable rules
Jiapeng Chong
- [PATCH -next] apparmor: Remove the unused variable rules
John Johansen
- [PATCH -next RFC 0/4] IMA Root of Trust (RoT) Framework
Mimi Zohar
- [PATCH 0/2] Secure Boot lock down
Hamza Mahfooz
- [PATCH 0/2] Secure Boot lock down
Paul Moore
- [PATCH 0/2] Secure Boot lock down
Nicolas Bouchinet
- [PATCH 0/2] Secure Boot lock down
sergeh at kernel.org
- [PATCH 0/2] Secure Boot lock down
Nicolas Bouchinet
- [PATCH 0/2] Secure Boot lock down
Paul Moore
- [PATCH 00/12] Signed BPF programs
Blaise Boscaccy
- [PATCH 00/12] Signed BPF programs
KP Singh
- [PATCH 00/19] smack: clean up xattr handling
Konstantin Andreev
- [PATCH 00/19] smack: clean up xattr handling
Casey Schaufler
- [PATCH 00/19] smack: clean up xattr handling
Konstantin Andreev
- [PATCH 01/19] smack: fix bug: changing Smack xattrs requires cap_sys_admin
Konstantin Andreev
- [PATCH 02/19] smack: fix bug: changing Smack xattrs requires cap_mac_override
Konstantin Andreev
- [PATCH 03/19] smack: fix bug: setting label-containing xattrs silently ignores input garbage
Konstantin Andreev
- [PATCH 04/19] smack: stop polling other LSMs & VFS to getxattr() unsupported SMACK64IPIN/OUT
Konstantin Andreev
- [PATCH 05/12] libbpf: Support exclusive map creation
KP Singh
- [PATCH 05/12] libbpf: Support exclusive map creation
KP Singh
- [PATCH 05/12] libbpf: Support exclusive map creation
KP Singh
- [PATCH 05/12] libbpf: Support exclusive map creation
KP Singh
- [PATCH 05/12] libbpf: Support exclusive map creation
Andrii Nakryiko
- [PATCH 05/12] libbpf: Support exclusive map creation
Andrii Nakryiko
- [PATCH 05/19] smack: restrict getxattr() SMACK64TRANSMUTE to directories
Konstantin Andreev
- [PATCH 06/19] smack: fix bug: getxattr() returns invalid SMACK64EXEC/MMAP
Konstantin Andreev
- [PATCH 07/19] smack: deduplicate task label validation
Konstantin Andreev
- [PATCH 08/19] smack: smack_inode_setsecurity: prevent setting SMACK64EXEC/MMAP in other LSMs
Konstantin Andreev
- [PATCH 09/19] smack: smack_inode_setsecurity: prevent setting SMACK64IPIN/OUT in other LSMs
Konstantin Andreev
- [PATCH 1/1] uapi: fix broken link in linux/capability.h
Paul Moore
- [PATCH 1/1] uapi: fix broken link in linux/capability.h
Serge E. Hallyn
- Re: [PATCH 1/1] uapi: fix broken link in linux/capability.h
Ariel Otilibili-Anieli
- [PATCH 1/1] uapi: fix broken link in linux/capability.h
sergeh at kernel.org
- [PATCH 10/19] smack: fix bug: smack_inode_setsecurity() imports alien xattrs as labels
Konstantin Andreev
- [PATCH 11/19] smack: fix bug: smack_inode_setsecurity() false EINVAL for alien xattrs
Konstantin Andreev
- [PATCH 12/19] smack: restrict setxattr() SMACK64IPIN/IPOUT to sockets
Konstantin Andreev
- [PATCH 13/19] smack: restrict setxattr() SMACK64EXEC/MMAP to regular files
Konstantin Andreev
- [PATCH 14/19] smack: return EOPNOTSUPP for setxattr() unsupported SMACK64(TRANSMUTE)
Konstantin Andreev
- [PATCH 15/19] smack: smack_inode_setsecurity(): skip checks for SMACK64TRANSMUTE
Konstantin Andreev
- [PATCH 16/19] smack: smack_inode_notifysecctx(): reject invalid labels
Konstantin Andreev
- [PATCH 17/19] smack: smack_inode_post_setxattr(): find label instead of import
Konstantin Andreev
- [PATCH 18/19] smack: smack_inode_setsecurity(): find label instead of import
Konstantin Andreev
- [PATCH 19/19] smack: deduplicate strcmp(name, XATTR_{,NAME_}SMACK*)
Konstantin Andreev
- [PATCH] landlock/ruleset: Minor comments improvements
Mickaël Salaün
- [PATCH] landlock/ruleset: Minor comments improvements
Mickaël Salaün
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
Blaise Boscaccy
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
kernel test robot
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
Casey Schaufler
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
Song Liu
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
Paul Moore
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
Blaise Boscaccy
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
Blaise Boscaccy
- [PATCH] lsm,selinux: Add LSM blob support for BPF objects
Blaise Boscaccy
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
Tianjia Zhang
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
Casey Schaufler
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
Paul Moore
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
tianjia.zhang
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
Paul Moore
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
tianjia.zhang
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
Casey Schaufler
- [PATCH] lsm: simplify security_inode_copy_up_xattr()
Paul Moore
- [PATCH] lsm: yama: Check for PTRACE_MODE_READ_FSCREDS access
nicolas.bouchinet at oss.cyber.gouv.fr
- [PATCH] lsm: yama: Check for PTRACE_MODE_READ_FSCREDS access
Nicolas Bouchinet
- [PATCH] lsm: yama: Check for PTRACE_MODE_READ_FSCREDS access
Jann Horn
- [PATCH] lsm: yama: Check for PTRACE_MODE_READ_FSCREDS access
Nicolas Bouchinet
- [PATCH] lsm: yama: Check for PTRACE_MODE_READ_FSCREDS access
Jann Horn
- [PATCH] lsm: yama: Check for PTRACE_MODE_READ_FSCREDS access
Nicolas Bouchinet
- [PATCH] lsm: yama: Check for PTRACE_MODE_READ_FSCREDS access
kernel test robot
- [PATCH] MAINTAINERS: Add Xiu and myself as Lockdown maintainers
Paul Moore
- [PATCH] net: ipv6: Fix spelling mistake
Chenguang Zhao
- [PATCH] net: ipv6: Fix spelling mistake
Simon Horman
- [PATCH] net: ipv6: Fix spelling mistake
Paul Moore
- [PATCH] net: ipv6: Fix spelling mistake
patchwork-bot+netdevbpf at kernel.org
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Mimi Zohar
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Lennart Poettering
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Mimi Zohar
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Lennart Poettering
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Mimi Zohar
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
GONG Ruiqi
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Lennart Poettering
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Lennart Poettering
- [PATCH] Revert "integrity: Do not load MOK and MOKx when secure boot be disabled"
Mimi Zohar
- [PATCH] selftests/landlock: Add tests for access through disconnected paths
Mickaël Salaün
- [PATCH] smack: fix kernel-doc warnings for smk_import_valid_label()
Casey Schaufler
- [PATCH] tools/certs: Make print-cert-tbs-hash.sh compatible with recent OpenSSL
Mickaël Salaün
- [PATCH] tools/certs: Make print-cert-tbs-hash.sh compatible with recent OpenSSL
Paul Moore
- [PATCH RFC 0/3] selftests/landlock: scoping abstractions
Abhinav Saxena
- [PATCH RFC 0/4] landlock: add LANDLOCK_SCOPE_MEMFD_EXEC execution
Abhinav Saxena
- [PATCH RFC 1/3] selftests/landlock: move sandbox_type to common
Abhinav Saxena
- [PATCH RFC 1/4] landlock: add LANDLOCK_SCOPE_MEMFD_EXEC scope
Abhinav Saxena
- [PATCH RFC 2/3] selftests/landlock: add cross-domain variants
Abhinav Saxena
- [PATCH RFC 2/4] landlock: implement memfd detection
Abhinav Saxena
- [PATCH RFC 2/4] landlock: implement memfd detection
Fan Wu
- [PATCH RFC 2/4] landlock: implement memfd detection
Abhinav Saxena
- [PATCH RFC 3/3] selftests/landlock: add cross-domain signal tests
Abhinav Saxena
- [PATCH RFC 3/4] landlock: add memfd exec LSM hooks and scoping
Abhinav Saxena
- [PATCH RFC 4/4] selftests/landlock: add memfd execution tests
Abhinav Saxena
- [PATCH v1 1/1] fs: Fix use of incorrect flags with splice() on pipe from/to memfd
Christian Brauner
- [PATCH v1 1/1] fs: Fix use of incorrect flags with splice() on pipe from/to memfd
Jan Polensky
- [PATCH v1] landlock: Remove warning in collect_domain_accesses()
Mickaël Salaün
- [PATCH v1] selftests/landlock: Add 9p and FUSE filesystem tests
Mickaël Salaün
- [PATCH v2 0/1] uapi: fix broken link in linux/capability.h
Ariel Otilibili
- [PATCH v2 0/3] Allow individual features to be locked down
Nikolay Borisov
- [PATCH v2 0/3] Allow individual features to be locked down
Nicolas Bouchinet
- [PATCH v2 0/3] Allow individual features to be locked down
Nikolay Borisov
- [PATCH v2 0/3] Landlock: Disconnected directory handling
Mickaël Salaün
- [PATCH v2 00/13] Signed BPF programs
KP Singh
- [PATCH v2 01/13] bpf: Update the bpf_prog_calc_tag to use SHA256
KP Singh
- [PATCH v2 02/13] bpf: Implement exclusive map creation
KP Singh
- [PATCH v2 02/13] bpf: Implement exclusive map creation
Fan Wu
- [PATCH v2 03/13] libbpf: Implement SHA256 internal helper
KP Singh
- [PATCH v2 04/13] libbpf: Support exclusive map creation
KP Singh
- [PATCH v2 04/13] libbpf: Support exclusive map creation
Alexei Starovoitov
- [PATCH v2 05/13] selftests/bpf: Add tests for exclusive maps
KP Singh
- [PATCH v2 06/13] bpf: Return hashes of maps in BPF_OBJ_GET_INFO_BY_FD
KP Singh
- [PATCH v2 07/13] bpf: Move the signature kfuncs to helpers.c
KP Singh
- [PATCH v2 07/13] bpf: Move the signature kfuncs to helpers.c
James Bottomley
- [PATCH v2 08/13] bpf: Implement signature verification for BPF programs
KP Singh
- [PATCH v2 08/13] bpf: Implement signature verification for BPF programs
James Bottomley
- [PATCH v2 08/13] bpf: Implement signature verification for BPF programs
KP Singh
- [PATCH v2 08/13] bpf: Implement signature verification for BPF programs
Dan Carpenter
- [PATCH v2 08/14] powerpc: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v2 09/13] libbpf: Update light skeleton for signing
KP Singh
- [PATCH v2 1/1] uapi: fix broken link in linux/capability.h
Ariel Otilibili
- [PATCH v2 1/3] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v2 1/3] landlock: Fix handling of disconnected directories
Tingmao Wang
- [PATCH v2 1/3] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v2 1/3] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v2 1/3] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v2 1/3] lockdown: Switch implementation to using bitmap
Nikolay Borisov
- [PATCH v2 1/3] lockdown: Switch implementation to using bitmap
Serge E. Hallyn
- [PATCH v2 1/3] lockdown: Switch implementation to using bitmap
Serge E. Hallyn
- [PATCH v2 10/13] libbpf: Embed and verify the metadata hash in the loader
KP Singh
- [PATCH v2 11/13] bpftool: Add support for signing BPF programs
KP Singh
- [PATCH v2 11/13] bpftool: Add support for signing BPF programs
Quentin Monnet
- [PATCH v2 11/13] bpftool: Add support for signing BPF programs
KP Singh
- [PATCH v2 12/13] selftests/bpf: Enable signature verification for all lskel tests
KP Singh
- [PATCH v2 12/13] selftests/bpf: Enable signature verification for all lskel tests
Alexei Starovoitov
- [PATCH v2 13/13] selftests/bpf: Add test for signed programs
KP Singh
- [PATCH v2 13/13] selftests/bpf: Add test for signed programs
Alexei Starovoitov
- [PATCH v2 2/3] lockdown/kunit: Introduce kunit tests
Nikolay Borisov
- [PATCH v2 2/3] lockdown/kunit: Introduce kunit tests
Serge E. Hallyn
- [PATCH v2 2/3] lockdown/kunit: Introduce kunit tests
kernel test robot
- [PATCH v2 2/3] lockdown/kunit: Introduce kunit tests
kernel test robot
- [PATCH v2 2/3] lockdown/kunit: Introduce kunit tests
Nikolay Borisov
- [PATCH v2 2/3] lockdown/kunit: Introduce kunit tests
Philip Li
- [PATCH v2 2/3] selftests/landlock: Add tests for access through disconnected paths
Mickaël Salaün
- [PATCH v2 3/3] lockdown: Use snprintf in lockdown_read
Nikolay Borisov
- [PATCH v2 3/3] lockdown: Use snprintf in lockdown_read
Serge E. Hallyn
- [PATCH v2 3/3] selftests/landlock: Add disconnected leafs and branch test suites
Mickaël Salaün
- [PATCH v2] lsm,selinux: Add LSM blob support for BPF objects
Blaise Boscaccy
- [PATCH v2] security, fs, nfs, net: update security_inode_listsecurity() interface
Paul Moore
- [PATCH v3 0/2] integrity: Extract secure boot enquiry function out of IMA
GONG Ruiqi
- [PATCH v3 0/4] Landlock: Disconnected directory handling
Mickaël Salaün
- [PATCH v3 00/13] stackleak: Support Clang stack depth tracking
Kees Cook
- [PATCH v3 01/13] stackleak: Rename STACKLEAK to KSTACK_ERASE
Kees Cook
- [PATCH v3 01/13] stackleak: Rename STACKLEAK to KSTACK_ERASE
Kees Cook
- [PATCH v3 02/13] stackleak: Rename stackleak_track_stack to __sanitizer_cov_stack_depth
Kees Cook
- [PATCH v3 03/13] stackleak: Split KSTACK_ERASE_CFLAGS from GCC_PLUGINS_CFLAGS
Kees Cook
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Mike Rapoport
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Ard Biesheuvel
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Will Deacon
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Ard Biesheuvel
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Mike Rapoport
- [PATCH v3 04/13] x86: Handle KCOV __init vs inline mismatches
Will Deacon
- [PATCH v3 05/13] arm: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v3 05/13] arm: Handle KCOV __init vs inline mismatches
Nishanth Menon
- [PATCH v3 05/13] arm: Handle KCOV __init vs inline mismatches
Lee Jones
- [PATCH v3 06/13] arm64: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v3 06/13] arm64: Handle KCOV __init vs inline mismatches
Will Deacon
- [PATCH v3 07/13] s390: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v3 08/13] powerpc/mm/book3s64: Move kfence and debug_pagealloc related calls to __init section
Kees Cook
- [PATCH v3 09/13] mips: Handle KCOV __init vs inline mismatch
Kees Cook
- [PATCH v3 09/13] mips: Handle KCOV __init vs inline mismatch
Huacai Chen
- [PATCH v3 1/2] x86/efi: Rename IMA-related function and macro of boot mode
GONG Ruiqi
- [PATCH v3 1/4] landlock: Fix cosmetic change
Mickaël Salaün
- [PATCH v3 10/13] init.h: Disable sanitizer coverage for __init and __head
Kees Cook
- [PATCH v3 11/13] kstack_erase: Support Clang stack depth tracking
Kees Cook
- [PATCH v3 12/13] configs/hardening: Enable CONFIG_KSTACK_ERASE
Kees Cook
- [PATCH v3 13/13] configs/hardening: Enable CONFIG_INIT_ON_FREE_DEFAULT_ON
Kees Cook
- [PATCH v3 2/2] integrity: Extract secure boot enquiry function out of IMA
GONG Ruiqi
- [PATCH v3 2/3] lsm: introduce security_lsm_config_*_policy hooks
Maxime Bélair
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Tingmao Wang
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Günther Noack
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Abhinav Saxena
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [PATCH v3 2/4] landlock: Fix handling of disconnected directories
Tingmao Wang
- [PATCH v3 3/3] AppArmor: add support for lsm_config_self_policy and lsm_config_system_policy
Maxime Bélair
- [PATCH v3 3/4] selftests/landlock: Add tests for access through disconnected paths
Mickaël Salaün
- [PATCH v3 4/4] selftests/landlock: Add disconnected leafs and branch test suites
Mickaël Salaün
- [PATCH V3] fs: generalize anon_inode_make_secure_inode() and fix secretmem LSM bypass
Christian Brauner
- [PATCH v3] fs: generalize anon_inode_make_secure_inode() and fix secretmem LSM bypass
Paul Moore
- [PATCH v3] fs: generalize anon_inode_make_secure_inode() and fix secretmem LSM bypass
Shivank Garg
- [PATCH V3] fs: generalize anon_inode_make_secure_inode() and fix secretmem LSM bypass
Shivank Garg
- [PATCH v3] fs: generalize anon_inode_make_secure_inode() and fix secretmem LSM bypass
Paul Moore
- [PATCH v3] fs: generalize anon_inode_make_secure_inode() and fix secretmem LSM bypass
Chris PeBenito
- [PATCH v3] fs: generalize anon_inode_make_secure_inode() and fix secretmem LSM bypass
Paul Moore
- [PATCH v3] tpm: Repeal and replace tpm_buf_init*() and tpm_buf_destroy()
Jarkko Sakkinen
- [PATCH v3] tpm: Repeal and replace tpm_buf_init*() and tpm_buf_destroy()
Jarkko Sakkinen
- [PATCH v3 bpf-next 0/4] Introduce bpf_cgroup_read_xattr
Christian Brauner
- [PATCH v3 bpf-next 0/4] Introduce bpf_cgroup_read_xattr
Christian Brauner
- [PATCH v3 bpf-next 0/4] Introduce bpf_cgroup_read_xattr
Alexei Starovoitov
- [PATCH v3 bpf-next 0/4] Introduce bpf_cgroup_read_xattr
Song Liu
- [PATCH v3 bpf-next 0/4] Introduce bpf_cgroup_read_xattr
Christian Brauner
- [PATCH v3 bpf-next 0/4] Introduce bpf_cgroup_read_xattr
Christian Brauner
- [PATCH v3 bpf-next 1/4] kernfs: remove iattr_mutex
André Draszik
- [PATCH v3 bpf-next 1/4] kernfs: remove iattr_mutex
Christian Brauner
- [PATCH v3 bpf-next 1/4] kernfs: remove iattr_mutex
André Draszik
- [PATCH v4 0/2] integrity: Extract secure boot enquiry function out of IMA
GONG Ruiqi
- [PATCH v4 0/3] lsm: introduce lsm_config_self_policy() and lsm_config_system_policy() syscalls
Maxime Bélair
- [PATCH v4 0/4] stackleak: Support Clang stack depth tracking
Kees Cook
- [PATCH v4 0/4] stackleak: Support Clang stack depth tracking
Nathan Chancellor
- [PATCH v4 0/4] stackleak: Support Clang stack depth tracking
Kees Cook
- [PATCH v4 0/4] stackleak: Support Clang stack depth tracking
Kees Cook
- [PATCH v4 1/2] x86/efi: Rename IMA-related function and macro of boot mode
GONG Ruiqi
- [PATCH v4 1/3] Wire up lsm_config_self_policy and lsm_config_system_policy syscalls
Maxime Bélair
- [PATCH v4 1/4] arm64: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v4 1/4] arm64: Handle KCOV __init vs inline mismatches
Will Deacon
- [PATCH v4 2/2] integrity: Extract secure boot enquiry function out of IMA
GONG Ruiqi
- [PATCH v4 2/3] lsm: introduce security_lsm_config_*_policy hooks
Maxime Bélair
- [PATCH v4 2/4] x86: Handle KCOV __init vs inline mismatches
Kees Cook
- [PATCH v4 2/4] x86: Handle KCOV __init vs inline mismatches
Mike Rapoport
- [PATCH v4 2/4] x86: Handle KCOV __init vs inline mismatches
Arnd Bergmann
- [PATCH v4 3/3] AppArmor: add support for lsm_config_self_policy and lsm_config_system_policy
Maxime Bélair
- [PATCH v4 3/3] AppArmor: add support for lsm_config_self_policy and lsm_config_system_policy
Tetsuo Handa
- [PATCH v4 3/4] init.h: Disable sanitizer coverage for __init and __head
Kees Cook
- [PATCH v4 4/4] Audit: Add record for multiple object contexts
Casey Schaufler
- [PATCH v4 4/4] Audit: Add record for multiple object contexts
Casey Schaufler
- [PATCH v4 4/4] kstack_erase: Support Clang stack depth tracking
Kees Cook
- [PATCH v4 4/4] kstack_erase: Support Clang stack depth tracking
Nicolas Schier
- [PATCH v4] tpm: Managed allocations for tpm_buf instances
Jarkko Sakkinen
- [PATCH v4] tpm: Managed allocations for tpm_buf instances
Stefan Berger
- [PATCH v4] tpm: Managed allocations for tpm_buf instances
James Bottomley
- [PATCH v4] tpm: Managed allocations for tpm_buf instances
Jason Gunthorpe
- [PATCH v4] tpm: Managed allocations for tpm_buf instances
Jarkko Sakkinen
- [PATCH v4] tpm: Managed allocations for tpm_buf instances
Jarkko Sakkinen
- [PATCH v4] tpm: Managed allocations for tpm_buf instances
Jarkko Sakkinen
- [PATCH v5 0/3] lsm: introduce lsm_config_self_policy() and lsm_config_system_policy() syscalls
Maxime Bélair
- [PATCH v5 0/3] lsm: introduce lsm_config_self_policy() and lsm_config_system_policy() syscalls
Casey Schaufler
- [PATCH v5 0/5] Audit: Records for multiple security contexts
Casey Schaufler
- [PATCH v5 1/3] Wire up lsm_config_self_policy and lsm_config_system_policy syscalls
Maxime Bélair
- [PATCH v5 1/5] Audit: Create audit_stamp structure
Casey Schaufler
- [PATCH v5 2/3] lsm: introduce security_lsm_config_*_policy hooks
Maxime Bélair
- [PATCH v5 2/5] LSM: security_lsmblob_to_secctx module selection
Casey Schaufler
- [PATCH v5 3/3] AppArmor: add support for lsm_config_self_policy and lsm_config_system_policy
Maxime Bélair
- [PATCH v5 3/3] AppArmor: add support for lsm_config_self_policy and lsm_config_system_policy
Tetsuo Handa
- [PATCH v5 3/3] AppArmor: add support for lsm_config_self_policy and lsm_config_system_policy
kernel test robot
- [PATCH v5 3/5] Audit: Add record for multiple task security contexts
Casey Schaufler
- [PATCH v5 4/5] Audit: Fix indentation in audit_log_exit
Casey Schaufler
- [PATCH v5 5/5] Audit: Add record for multiple object contexts
Casey Schaufler
- [PATCH v5] tpm: Managed allocations for tpm_buf instances
Jarkko Sakkinen
- [PATCH v5] tpm: Managed allocations for tpm_buf instances
Stefan Berger
- [PATCH v5] tpm: Managed allocations for tpm_buf instances
Jarkko Sakkinen
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 0/5] bpf path iterator
Christian Brauner
- [PATCH v5 bpf-next 0/5] bpf path iterator
Christian Brauner
- [PATCH v5 bpf-next 0/5] bpf path iterator
Christian Brauner
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 0/5] bpf path iterator
Mickaël Salaün
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 0/5] bpf path iterator
NeilBrown
- [PATCH v5 bpf-next 0/5] bpf path iterator
NeilBrown
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 0/5] bpf path iterator
NeilBrown
- [PATCH v5 bpf-next 0/5] bpf path iterator
NeilBrown
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 0/5] bpf path iterator
Mickaël Salaün
- [PATCH v5 bpf-next 0/5] bpf path iterator
Song Liu
- [PATCH v5 bpf-next 1/5] namei: Introduce new helper function path_walk_parent()
Yonghong Song
- [PATCH v5 bpf-next 1/5] namei: Introduce new helper function path_walk_parent()
Song Liu
- [PATCH v5 bpf-next 1/5] namei: Introduce new helper function path_walk_parent()
Yonghong Song
- [PATCH v5 bpf-next 2/5] landlock: Use path_walk_parent()
Mickaël Salaün
- [PATCH v5 bpf-next 2/5] landlock: Use path_walk_parent()
Song Liu
- [PATCH v5 bpf-next 2/5] landlock: Use path_walk_parent()
Mickaël Salaün
- [PATCH v5 bpf-next 2/5] landlock: Use path_walk_parent()
Song Liu
- [PATCH v5 bpf-next 2/5] landlock: Use path_walk_parent()
Christian Brauner
- [PATCH V9 0/7] Add NUMA mempolicy support for KVM guest-memfd
Shivank Garg
- [PATCH V9 0/7] Add NUMA mempolicy support for KVM guest-memfd
David Hildenbrand
- [PATCH V9 0/7] Add NUMA mempolicy support for KVM guest-memfd
Sean Christopherson
- [PATCH V9 0/7] Add NUMA mempolicy support for KVM guest-memfd
Shivank Garg
- [PATCH V9 0/7] Add NUMA mempolicy support for KVM guest-memfd
David Hildenbrand
- [PATCH V9 0/7] Add NUMA mempolicy support for KVM guest-memfd
Sean Christopherson
- [PATCH V9 0/7] Add NUMA mempolicy support for KVM guest-memfd
David Hildenbrand
- [PATCH V9 1/7] KVM: guest_memfd: Use guest mem inodes instead of anonymous inodes
Shivank Garg
- [PATCH V9 1/7] KVM: guest_memfd: Use guest mem inodes instead of anonymous inodes
David Hildenbrand
- [PATCH V9 2/7] mm/filemap: Add NUMA mempolicy support to filemap_alloc_folio()
Shivank Garg
- [PATCH V9 2/7] mm/filemap: Add NUMA mempolicy support to filemap_alloc_folio()
David Hildenbrand
- [PATCH V9 3/7] mm/filemap: Extend __filemap_get_folio() to support NUMA memory policies
Shivank Garg
- [PATCH V9 3/7] mm/filemap: Extend __filemap_get_folio() to support NUMA memory policies
David Hildenbrand
- [PATCH V9 4/7] mm/mempolicy: Export memory policy symbols
Shivank Garg
- [PATCH V9 5/7] KVM: guest_memfd: Add slab-allocated inode cache
Shivank Garg
- [PATCH V9 5/7] KVM: guest_memfd: Add slab-allocated inode cache
Vlastimil Babka
- [PATCH V9 5/7] KVM: guest_memfd: Add slab-allocated inode cache
Shivank Garg
- [PATCH V9 6/7] KVM: guest_memfd: Enforce NUMA mempolicy using shared policy
Shivank Garg
- [PATCH V9 6/7] KVM: guest_memfd: Enforce NUMA mempolicy using shared policy
Vlastimil Babka
- [PATCH V9 6/7] KVM: guest_memfd: Enforce NUMA mempolicy using shared policy
David Hildenbrand
- [PATCH V9 7/7] KVM: guest_memfd: selftests: Add tests for mmap and NUMA policy support
Shivank Garg
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Al Viro
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Paul Moore
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Christian Brauner
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Paul Moore
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Christian Brauner
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Christian Brauner
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Christian Brauner
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Christian Brauner
- [RFC] vfs: security: Parse dev_name before calling security_sb_mount
Song Liu
- [RFC PATCH 0/6] fs/9p: Reuse inode based on path (in addition to qid)
Mickaël Salaün
- [RFC PATCH 1/6] fs/9p: Add ability to identify inode by path for .L
Al Viro
- [RFC PATCH 1/6] fs/9p: Add ability to identify inode by path for .L
Al Viro
- [RFC PATCH 1/6] fs/9p: Add ability to identify inode by path for .L
Tingmao Wang
- [RFC PATCH 1/6] fs/9p: Add ability to identify inode by path for .L
Tingmao Wang
- [RFC PATCH 25/29] ima,evm: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH 4/6] fs/9p: Add ability to identify inode by path for non-.L
Tingmao Wang
- [RFC PATCH] samples/landlock: Fix building on musl libc
Mickaël Salaün
- [RFC PATCH v1 1/2] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [RFC PATCH v1 1/2] landlock: Fix handling of disconnected directories
Christian Brauner
- [RFC PATCH v1 1/2] landlock: Fix handling of disconnected directories
Mickaël Salaün
- [RFC PATCH v1 2/2] selftests/landlock: Add layout4_disconnected test suite
Mickaël Salaün
- [RFC PATCH v1 2/2] selftests/landlock: Add layout4_disconnected test suite
Tingmao Wang
- [RFC PATCH v2 0/34] Rework the LSM initialization
Paul Moore
- [RFC PATCH v2 00/12] landlock: Use coalesced hashtable for merged domains
Tingmao Wang
- [RFC PATCH v2 01/12] landlock: Set the max rules limit in a domain to U16_MAX.
Tingmao Wang
- [RFC PATCH v2 01/34] lsm: split the notifier code out into lsm_notifier.c
Paul Moore
- [RFC PATCH v2 01/34] lsm: split the notifier code out into lsm_notifier.c
Casey Schaufler
- [RFC PATCH v2 02/12] landlock/domain: Define structure and macros for flat-array domains
Tingmao Wang
- [RFC PATCH v2 02/34] lsm: split the init code out into lsm_init.c
Paul Moore
- [RFC PATCH v2 02/34] lsm: split the init code out into lsm_init.c
Casey Schaufler
- [RFC PATCH v2 03/12] landlock: Define coalesced hashtable and implement finding
Tingmao Wang
- [RFC PATCH v2 03/34] lsm: consolidate lsm_allowed() and prepare_lsm() into lsm_prepare()
Paul Moore
- [RFC PATCH v2 03/34] lsm: consolidate lsm_allowed() and prepare_lsm() into lsm_prepare()
Casey Schaufler
- [RFC PATCH v2 04/12] landlock/domain: Implement finding rules
Tingmao Wang
- [RFC PATCH v2 04/34] lsm: introduce looping macros for the initialization code
Paul Moore
- [RFC PATCH v2 04/34] lsm: introduce looping macros for the initialization code
Casey Schaufler
- [RFC PATCH v2 05/12] landlock/coalesced_hash: Implement insert
Tingmao Wang
- [RFC PATCH v2 05/34] lsm: integrate report_lsm_order() code into caller
Paul Moore
- [RFC PATCH v2 05/34] lsm: integrate report_lsm_order() code into caller
Casey Schaufler
- [RFC PATCH v2 06/12] landlock/domain: Implement merging of a parent domain and a ruleset
Tingmao Wang
- [RFC PATCH v2 06/34] lsm: integrate lsm_early_cred() and lsm_early_task() into caller
Paul Moore
- [RFC PATCH v2 06/34] lsm: integrate lsm_early_cred() and lsm_early_task() into caller
Casey Schaufler
- [RFC PATCH v2 07/12] landlock/domain: Define alloc and free
Tingmao Wang
- [RFC PATCH v2 07/34] lsm: rename ordered_lsm_init() to lsm_init_ordered()
Paul Moore
- [RFC PATCH v2 07/34] lsm: rename ordered_lsm_init() to lsm_init_ordered()
Casey Schaufler
- [RFC PATCH v2 08/12] landlock/domain: Add landlock_domain_merge_ruleset
Tingmao Wang
- [RFC PATCH v2 08/34] lsm: replace the name field with a pointer to the lsm_id struct
Paul Moore
- [RFC PATCH v2 08/34] lsm: replace the name field with a pointer to the lsm_id struct
Casey Schaufler
- [RFC PATCH v2 09/12] landlock: Update various code to use landlock_domain
Tingmao Wang
- [RFC PATCH v2 09/34] lsm: rename the lsm order variables for consistency
Paul Moore
- [RFC PATCH v2 09/34] lsm: rename the lsm order variables for consistency
Casey Schaufler
- [RFC PATCH v2 10/12] landlock: Remove unused code
Tingmao Wang
- [RFC PATCH v2 10/34] lsm: rework lsm_active_cnt and lsm_idlist[]
Paul Moore
- [RFC PATCH v2 10/34] lsm: rework lsm_active_cnt and lsm_idlist[]
Casey Schaufler
- [RFC PATCH v2 10/34] lsm: rework lsm_active_cnt and lsm_idlist[]
Paul Moore
- [RFC PATCH v2 11/12] landlock/task: Fix incorrect BUILD_BUG_ON() in domain_is_scoped
Tingmao Wang
- [RFC PATCH v2 11/34] lsm: get rid of the lsm_names list and do some cleanup
Paul Moore
- [RFC PATCH v2 11/34] lsm: get rid of the lsm_names list and do some cleanup
Casey Schaufler
- [RFC PATCH v2 11/34] lsm: get rid of the lsm_names list and do some cleanup
Paul Moore
- [RFC PATCH v2 11/34] lsm: get rid of the lsm_names list and do some cleanup
Casey Schaufler
- [RFC PATCH v2 11/34] lsm: get rid of the lsm_names list and do some cleanup
Paul Moore
- [RFC PATCH v2 12/12] landlock: Use a hash function that does not involve division
Tingmao Wang
- [RFC PATCH v2 12/34] lsm: rework the LSM enable/disable setter/getter functions
Paul Moore
- [RFC PATCH v2 12/34] lsm: rework the LSM enable/disable setter/getter functions
Casey Schaufler
- [RFC PATCH v2 13/34] lsm: rename exists_ordered_lsm() to lsm_order_exists()
Paul Moore
- [RFC PATCH v2 13/34] lsm: rename exists_ordered_lsm() to lsm_order_exists()
Casey Schaufler
- [RFC PATCH v2 14/34] lsm: rename/rework append_ordered_lsm() into lsm_order_append()
Paul Moore
- [RFC PATCH v2 14/34] lsm: rename/rework append_ordered_lsm() into lsm_order_append()
Casey Schaufler
- [RFC PATCH v2 15/34] lsm: rename/rework ordered_lsm_parse() to lsm_order_parse()
Paul Moore
- [RFC PATCH v2 15/34] lsm: rename/rework ordered_lsm_parse() to lsm_order_parse()
Casey Schaufler
- [RFC PATCH v2 16/34] lsm: cleanup the LSM blob size code
Paul Moore
- [RFC PATCH v2 16/34] lsm: cleanup the LSM blob size code
Casey Schaufler
- [RFC PATCH v2 17/34] lsm: cleanup initialize_lsm() and rename to lsm_init_single()
Paul Moore
- [RFC PATCH v2 17/34] lsm: cleanup initialize_lsm() and rename to lsm_init_single()
Casey Schaufler
- [RFC PATCH v2 18/34] lsm: fold lsm_init_ordered() into security_init()
Paul Moore
- [RFC PATCH v2 18/34] lsm: fold lsm_init_ordered() into security_init()
Casey Schaufler
- [RFC PATCH v2 19/34] lsm: add/tweak function header comment blocks in lsm_init.c
Paul Moore
- [RFC PATCH v2 19/34] lsm: add/tweak function header comment blocks in lsm_init.c
Casey Schaufler
- [RFC PATCH v2 20/34] lsm: cleanup the debug and console output in lsm_init.c
Paul Moore
- [RFC PATCH v2 20/34] lsm: cleanup the debug and console output in lsm_init.c
Casey Schaufler
- [RFC PATCH v2 21/34] lsm: output available LSMs when debugging
Paul Moore
- [RFC PATCH v2 21/34] lsm: output available LSMs when debugging
Casey Schaufler
- [RFC PATCH v2 22/34] lsm: group lsm_order_parse() with the other lsm_order_*() functions
Paul Moore
- [RFC PATCH v2 22/34] lsm: group lsm_order_parse() with the other lsm_order_*() functions
Casey Schaufler
- [RFC PATCH v2 23/34] lsm: introduce an initcall mechanism into the LSM framework
Paul Moore
- [RFC PATCH v2 23/34] lsm: introduce an initcall mechanism into the LSM framework
Casey Schaufler
- [RFC PATCH v2 24/34] loadpin: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 25/34] ipe: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 26/34] smack: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 26/34] smack: move initcalls to the LSM framework
Casey Schaufler
- [RFC PATCH v2 26/34] smack: move initcalls to the LSM framework
Roberto Sassu
- [RFC PATCH v2 26/34] smack: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 26/34] smack: move initcalls to the LSM framework
Casey Schaufler
- [RFC PATCH v2 27/34] tomoyo: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 28/34] safesetid: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 29/34] apparmor: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 30/34] lockdown: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 30/34] lockdown: move initcalls to the LSM framework
Xiu Jianfeng
- [RFC PATCH v2 30/34] lockdown: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 30/34] lockdown: move initcalls to the LSM framework
xiujianfeng
- [RFC PATCH v2 30/34] lockdown: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 31/34] ima,evm: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 31/34] ima, evm: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 31/34] ima, evm: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 31/34] ima, evm: move initcalls to the LSM framework
Nicolas Bouchinet
- [RFC PATCH v2 31/34] ima,evm: move initcalls to the LSM framework
Roberto Sassu
- [RFC PATCH v2 31/34] ima, evm: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 32/34] selinux: move initcalls to the LSM framework
Paul Moore
- [RFC PATCH v2 33/34] lsm: consolidate all of the LSM framework initcalls
Paul Moore
- [RFC PATCH v2 33/34] lsm: consolidate all of the LSM framework initcalls
Casey Schaufler
- [RFC PATCH v2 34/34] lsm: add a LSM_STARTED_ALL notification event
Paul Moore
- [RFC PATCH v2 34/34] lsm: add a LSM_STARTED_ALL notification event
Casey Schaufler
- [syzbot] [apparmor?] linux-next test error: WARNING in apparmor_unix_stream_connect
syzbot
- [syzbot] [apparmor?] linux-next test error: WARNING in apparmor_unix_stream_connect
Alexander Potapenko
- [syzbot] [apparmor?] linux-next test error: WARNING in apparmor_unix_stream_connect
John Johansen
- [syzbot] [lsm?] [net?] Unable to handle kernel write to read-only memory at virtual address ADDR (2)
syzbot
- [syzbot] [lsm?] [net?] WARNING in kvfree_call_rcu
syzbot
- [syzbot] [lsm?] [net?] WARNING in kvfree_call_rcu
Kuniyuki Iwashima
- [syzbot] [lsm?] [net?] WARNING in kvfree_call_rcu
syzbot
- [syzbot] [lsm?] [net?] WARNING in kvfree_call_rcu
Kuniyuki Iwashima
- [syzbot] [lsm?] [net?] WARNING in kvfree_call_rcu
syzbot
- [syzbot] [lsm?] [net?] WARNING in kvfree_call_rcu
Paolo Abeni
- [syzbot] [lsm?] INFO: rcu detected stall in msr_read (2)
syzbot
- apparmor: WARNING: suspicious RCU usage
Breno Leitao
- uprobes are destructive but exposed by perf under CAP_PERFMON
Jann Horn
- uprobes are destructive but exposed by perf under CAP_PERFMON
Mark Rutland
- uprobes are destructive but exposed by perf under CAP_PERFMON
Peter Zijlstra
Last message date:
Thu Jul 31 21:17:51 UTC 2025
Archived on: Thu Jul 31 21:18:17 UTC 2025
This archive was generated by
Pipermail 0.09 (Mailman edition).