<?xml version="1.0"?>
<?xml-stylesheet type="text/xsl" href="/rss.xsl.xml"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
    <title>Changes in Makefile</title>
    <description></description>
    <language>en</language>
    <copyright>Copyright 2015</copyright>
    <generator>Java</generator><item>
        <title>aeca4e2c - LSM: add SafeSetID module that gates setid calls</title>
        <link>http://172.16.0.5:8080/history/linux-6.15/security/safesetid/Makefile#aeca4e2c</link>
        <description>LSM: add SafeSetID module that gates setid callsSafeSetID gates the setid family of syscalls to restrict UID/GIDtransitions from a given UID/GID to only those approved by asystem-wide whitelist. These restrictions also prohibit the givenUIDs/GIDs from obtaining auxiliary privileges associated withCAP_SET{U/G}ID, such as allowing a user to set up user namespace UIDmappings. For now, only gating the set*uid family of syscalls issupported, with support for set*gid coming in a future patch set.Signed-off-by: Micah Morton &lt;mortonm@chromium.org&gt;Acked-by: Kees Cook &lt;keescook@chromium.org&gt;Signed-off-by: James Morris &lt;james.morris@microsoft.com&gt;

            List of files:
            /linux-6.15/security/safesetid/Makefile</description>
        <pubDate>Wed, 16 Jan 2019 15:46:06 +0000</pubDate>
        <dc:creator>Micah Morton &lt;mortonm@chromium.org&gt;</dc:creator>
    </item>
</channel>
</rss>
