From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mail-qk1-f195.google.com (mail-qk1-f195.google.com [209.85.222.195]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 0F8A13C3439 for ; Tue, 16 Jun 2026 02:55:48 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=209.85.222.195 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1781578550; cv=none; b=Al2+jfMzjdGevYKSoQKtchaSjHxkIi/GXwOx32QxPf1rmxlyH+TBytVCgiKcR/shZH4JP7foAIq+9lsiT9HJYj+2kUtw8NCQXlkDtioiB8a91rBLTt/p9wXd6qlmtGkKKfDdbSCqeYWdWucbT147WerhENa+fq4Oc7xC7PVhc94= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1781578550; c=relaxed/simple; bh=3FHJvZpakme4jKs8WzcGg7S3ioGeR3WKAqW1Iwgc/UU=; h=Date:Message-ID:From:To:Cc:Subject; b=b3xIVZwTLUs8cB2BO28bB2C7GJSzv4YTg+Y7jhrsYP0FJk9EbZjJaw6feqLrNYhYULTBWJvKEMYrj3AgaVFCt34CtW9b7SGZppCL4PzNIsGQog+ecVQUd0bYzXhxvvC0fm33eRF4Vwigoc0k+ZLjB6QsrtW7FalNzmBoA0Q+ETA= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dmarc=pass (p=none dis=none) header.from=paul-moore.com; spf=pass smtp.mailfrom=paul-moore.com; dkim=pass (2048-bit key) header.d=paul-moore.com header.i=@paul-moore.com header.b=aSxS/7ys; arc=none smtp.client-ip=209.85.222.195 Authentication-Results: smtp.subspace.kernel.org; dmarc=pass (p=none dis=none) header.from=paul-moore.com Authentication-Results: smtp.subspace.kernel.org; spf=pass smtp.mailfrom=paul-moore.com Authentication-Results: smtp.subspace.kernel.org; dkim=pass (2048-bit key) header.d=paul-moore.com header.i=@paul-moore.com header.b="aSxS/7ys" Received: by mail-qk1-f195.google.com with SMTP id af79cd13be357-91ae31bbaa9so134911085a.1 for ; Mon, 15 Jun 2026 19:55:48 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=paul-moore.com; s=google; t=1781578548; x=1782183348; darn=vger.kernel.org; h=subject:cc:to:from:message-id:date:from:to:cc:subject:date :message-id:reply-to; bh=RrEBHC+BEo5PUK5QESqVkHwa8uLQvrvp4i2JuZAotfY=; b=aSxS/7ysL+/AyxFYLICpOCZiuJ/gyKFGFpbMaY/MPAp/YdFgshlpENuFtQNdRICN06 seu7eEb1j63uRtDlG+ME4EPrKM1G7EFSNFMgGgBFpIFaO+GLlyBn3Y1WxThDMoHLgFp2 kfH/xyViy1syDAkJjZ7iFoKu6lek5WB4H1F0aUcBadSZm+CkjcXA9KSv6J/99uy8mb7e msDNSey/WhW7GaJscQK0Cslj56LxmNRsn3Hd2TKEHCH+LGUrAp9zgW30Jt2sWqJfSYRl BFh7n/aU/u7Tj7aRtSy9zWfcHUPDmRUHh8O5RCCnsZCNVa3zlaGt5IqigvPWE20VP/PV j54g== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1781578548; x=1782183348; h=subject:cc:to:from:message-id:date:x-gm-gg:x-gm-message-state:from :to:cc:subject:date:message-id:reply-to; bh=RrEBHC+BEo5PUK5QESqVkHwa8uLQvrvp4i2JuZAotfY=; b=n6HqYg33OTvWdRPikuXgSi5fjdRISJFJl3NOWukfZ0HqlL2pLDw2HvAf8eeQixqGvQ VU34OclPuduTM69Y7MXIKUQMoSpBy1XZ5fcpeuSKxOUlvRbm4hJIo7RdzJj2XEeKuJzY JZqaswnRH1o7fasGZ42SqaZcwcsa2Qhw3nysUk2B2yex8RHWdEO3LGkL9b637nYg1zVp OV6P+zxTFxhW9tD4PSm35K4DxL8CyZ0gAcRdxh3T5CaQUu8f2gK9bFiEBjS4DLg/cuyc T4R5SuXNOMyz7O2vEeQeJnOnL4pXQQFASogjVlAE99Jg5CcC4IYVLZlwmjE0qHoXsUnp 9zlQ== X-Forwarded-Encrypted: i=1; AFNElJ+RyX0qtWo2nQ+nVCmtKAars8RQjAUd4hblz5anZNYSwuL76HHIexU2iG1kxqSdoZE6pnJNsZ9dQrsBYW4=@vger.kernel.org X-Gm-Message-State: AOJu0Yxclx4AJS4GeJbPtzzJPn5cTR50siTrFsxdL5YoH7FXwQ7kyOX2 +lzab3iLESyClleeF0h19GkWuWUh83TeYBJ+s0JzHAsz6WDSCLILGvQoFTOHCPX2Tw== X-Gm-Gg: Acq92OFNbxfX0tDQwjtc8sIy3w2ayyXBbsBuOh1OZ4Lm8sw0z1oY7pJE3cxjGMtLos1 Lr5TGnHeenM75NGJegwVdOtMJKR9Ec7Me9jj/YKQWPUEPMZD+yeTkwH0FBB+G1i2S/ZZYQrHpu9 IUXsts6rk2N2xfv5t2NrlxfDLBEFcppRI4kKo/HvDL9+FqCs7XMcpzIp2iYMmGqdNLw9HxFlMyc Vqrizhd3yxQKLpas/uiNxN//VR7m5x3xmVF7RVG4Q07M05QeCYSEBfJ+QaWlUlJ//kwdh6u4rYd tpLw2o2RSAdClBjNHqRsM/oqRiTefZI/8W+48Q+fwPcdmA1QFoEpsqe9E0fgbaOAO3rLRoUNU7F ECz7hKujs5Yt01fBez1DrmkM+e2rq1X/uQ1/3NJwrFHgHK1YDvXd5Z8/HedlqtKs4goUEryKxlh 5NRm6uI3RVaLubuif6x/F2nAOErpC19Op+HWFSHAG4ha77agk0vlwTDIlSYlOC4KLs7ZIX X-Received: by 2002:a05:620a:8806:b0:915:c917:5584 with SMTP id af79cd13be357-9161bccc2e3mr2501470685a.35.1781578547954; Mon, 15 Jun 2026 19:55:47 -0700 (PDT) Received: from localhost (pool-71-126-255-178.bstnma.fios.verizon.net. [71.126.255.178]) by smtp.gmail.com with ESMTPSA id af79cd13be357-91619f1c5cdsm1325761985a.17.2026.06.15.19.55.47 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Mon, 15 Jun 2026 19:55:47 -0700 (PDT) Date: Mon, 15 Jun 2026 22:55:46 -0400 Message-ID: From: Paul Moore To: Linus Torvalds Cc: audit@vger.kernel.org, linux-kernel@vger.kernel.org Subject: [GIT PULL] audit/audit-pr-20260615 Precedence: bulk X-Mailing-List: linux-kernel@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: Linus, Three audit patches for Linux v7.2, the quick summary is below, but I did want to note that you will see a forced push due to a last-minute correction to the git metadata that I noticed while writing up this pull request; there was no change to the code and the tag is signed as usual. - Fix a recursive deadlock when duplicating executable file rules Avoid multiple lookups and attempted I_MUTEX_PARENT locks when moving watched files by passing the already resolved inodes through the audit code. - Fix removal of executable watch rules after the file is deleted Prior to this fix we were unable to remove an executable file watch where the file had been previously deleted due to a negative dentry check in the code that performs the lookup on the file watches. - Convert our basic "unsigned" type usage to "unsigned int". Paul -- The following changes since commit 254f49634ee16a731174d2ae34bc50bd5f45e731: Linux 7.1-rc1 (2026-04-26 14:19:00 -0700) are available in the Git repository at: https://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit.git tags/audit-pr-20260615 for you to fetch changes up to 81905b5acbe77284734438df3fbec1158e6429a3: audit: fix recursive locking deadlock in audit_dupe_exe() (2026-05-27 19:15:34 -0400) ---------------------------------------------------------------- audit/stable-7.2 PR 20260615 ---------------------------------------------------------------- Ricardo Robaina (3): audit: use 'unsigned int' instead of 'unsigned' audit: fix removal of dangling executable rules audit: fix recursive locking deadlock in audit_dupe_exe() include/linux/audit.h | 4 ++-- include/linux/audit_arch.h | 12 ++++++------ kernel/audit.c | 2 +- kernel/audit.h | 19 +++++++++++++------ kernel/audit_fsnotify.c | 34 ++++++++++++++++++++++------------ kernel/audit_tree.c | 2 +- kernel/audit_watch.c | 25 +++++++++++++++++-------- kernel/auditfilter.c | 17 +++++++++-------- kernel/auditsc.c | 2 +- lib/compat_audit.c | 12 ++++++------ 10 files changed, 78 insertions(+), 51 deletions(-) -- paul-moore.com