[GIT PULL] selinux/selinux-pr-20261005

Paul Moore paul at paul-moore.com
Mon Oct 5 10:24:05 UTC 2026


Linus,

Two SELinux patches for the next Linux v7.3-rcX release:

- Preserve SECURITY_LSM_NATIVE_LABELS when reusing superblocks

Similar to a previous fix (see the commit description of Stephen's fix)
we need to check to see if we have already mounted/setup the superblock
passed into the security_sb_set_mnt_opts() LSM hook so we don't mistakenly
unset SECURITY_LSM_NATIVE_LABELS.

- Fix a potential AVC sequence number data race

Thanks,
Paul

--
The following changes since commit 93f51579e7df248780214094418f205253383cc5:

  Linux 7.3-rc4 (2026-09-20 13:48:15 -0700)

are available in the Git repository at:

  https://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux.git
    tags/selinux-pr-20261005

for you to fetch changes up to 28b7260548af3d35773477993ad4e4de41578dd7:

  selinux: preserve NATIVE_LABELS on already-initialized sb in set_mnt_opts
    (2026-09-30 15:10:41 -0400)

----------------------------------------------------------------
selinux/stable-7.3 PR 20261005
----------------------------------------------------------------

Christian Göttsche (1):
      selinux: fix data race on AVC latest_notif

Stephen Smalley (1):
      selinux: preserve NATIVE_LABELS on already-initialized sb in
         set_mnt_opts

 security/selinux/avc.c   |    5 +++--
 security/selinux/hooks.c |    9 ++++++++-
 2 files changed, 11 insertions(+), 3 deletions(-)

--
paul-moore.com



More information about the Linux-security-module-archive mailing list