1/n
Oh yeah, I already mentioned this a while ago but I also added support for pidfds in Linux coredumps.
/proc/sys/kernel/core_pattern has been extended so userspace can instruct the kernel to install a pidfd for the
crashing process into the usermode helper process, e.g., systemd-coredump.
I released a new version of the #Landlock crate: https://github.com/landlock-lsm/rust-landlock/blob/HEAD/CHANGELOG.md#v042
We can now easily restrict signal sending and connections to abstract UNIX sockets for #rustlang programs. The documentation and tests have also been improved. Last but not least, a few new features will be useful for the upcoming Landlock configuration format.
$ cat /etc/almalinux-release && getenforce AlmaLinux Kitten release 10 (Lion Cub) EnforcingNice. Very nice. @almalinux
Well folks, I'm on vacation again, and you know I could not resist...
A quick summary of the LSM, SELinux, and audit changes merged during the first part of the Linux v6.14 merge window.
https://paul-moore.com/blog/d/2025/01/linux_v614_merge_window.html