1. 4f9dabf KEYS: DH: validate __spare field by Eric Biggers · 7 years ago
  2. 6974f0c include/linux/string.h: add the option of fortified string.h functions by Daniel Micay · 7 years ago
  3. 7114f51 Merge branch 'work.memdup_user' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 7 years ago
  4. 5518b69 Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next by Linus Torvalds · 7 years ago
  5. e24dd9e Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 7 years ago
  6. 650fc87 Merge tag 'docs-4.13' of git://git.lwn.net/linux by Linus Torvalds · 7 years ago
  7. 9bd4218 Merge branch 'sched-core-for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip by Linus Torvalds · 7 years ago
  8. 81e3e04 Merge tag 'uuid-for-4.13' of git://git.infradead.org/users/hch/uuid by Linus Torvalds · 7 years ago
  9. 02412e9 ima_write_policy(): don't open-code memdup_user_nul() by Al Viro · 7 years ago
  10. c4758fa apparmor: put back designators in struct initialisers by Stephen Rothwell · 7 years ago
  11. 5965453 Merge branch 'stable-4.13' of git://git.infradead.org/users/pcmoore/selinux into next by James Morris · 7 years ago
  12. 3d09198 Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net by David S. Miller · 7 years ago
  13. 915d9d2 ima: Log the same audit cause whenever a file has no signature by Thiago Jung Bauermann · 7 years ago
  14. 2663218 ima: Simplify policy_func_show. by Thiago Jung Bauermann · 7 years ago
  15. bb543e3 integrity: Small code improvements by Thiago Jung Bauermann · 7 years ago
  16. e4586c79 ima: fix get_binary_runtime_size() by Roberto Sassu · 7 years ago
  17. 28a8dc4 ima: use ima_parse_buf() to parse template data by Roberto Sassu · 7 years ago
  18. 47fdee6 ima: use ima_parse_buf() to parse measurements headers by Roberto Sassu · 7 years ago
  19. b17fd9e ima: introduce ima_parse_buf() by Roberto Sassu · 7 years ago
  20. 82e3bb4 ima: Add cgroups2 to the defaults list by Laura Abbott · 8 years ago
  21. b4e2803 ima: use memdup_user_nul by Geliang Tang · 8 years ago
  22. 5d659f2 ima: fix up #endif comments by Tycho Andersen · 8 years ago
  23. 38d1926 IMA: Correct Kconfig dependencies for hash selection by Ben Hutchings · 8 years ago
  24. 6f6723e ima: define is_ima_appraise_enabled() by Mimi Zohar · 8 years ago
  25. e1f5e01 ima: define Kconfig IMA_APPRAISE_BOOTPARAM option by Mimi Zohar · 8 years ago
  26. 503ceae ima: define a set of appraisal rules requiring file signatures by Mimi Zohar · 8 years ago
  27. 33ce954 ima: extend the "ima_policy" boot command line to support multiple policies by Mimi Zohar · 8 years ago
  28. 94df30a rtnetlink: add NEWCACHEREPORT message type by Julien Gomes · 7 years ago
  29. cdac74d Merge branch 'smack-for-4.13' of git://github.com/cschaufler/smack-next into next by James Morris · 7 years ago
  30. 6a39118 selinux: enable genfscon labeling for tracefs by Jeff Vander Stoep · 7 years ago
  31. 5dd43ce sched/wait: Split out the wait_bit*() APIs from <linux/wait.h> into <linux/wait_bit.h> by Ingo Molnar · 7 years ago
  32. 023f108 selinux: fix double free in selinux_parse_opts_str() by Paul Moore · 7 years ago
  33. 33f2ead apparmor: export that basic profile namespaces are supported by John Johansen · 7 years ago
  34. 6c5fc8f apparmor: add stacked domain labels interface by John Johansen · 7 years ago
  35. 40cde7f apparmor: add domain label stacking info to apparmorfs by John Johansen · 7 years ago
  36. e00b02bb apparmor: move change_profile mediation to using labels by John Johansen · 7 years ago
  37. 89dbf19 apparmor: move change_hat mediation to using labels by John Johansen · 7 years ago
  38. 93c98a4 apparmor: move exec domain mediation to using labels by John Johansen · 7 years ago
  39. 5379a33 apparmor: support v7 transition format compatible with label_parse by John Johansen · 7 years ago
  40. 064dc94 apparmor: mediate files when they are received by John Johansen · 7 years ago
  41. 496c931 apparmor: rework file permission to cache file access in file->ctx by John Johansen · 7 years ago
  42. 8014370 apparmor: move path_link mediation to using labels by John Johansen · 7 years ago
  43. aebd873 apparmor: refactor path name lookup and permission checks around labels by John Johansen · 7 years ago
  44. 98c3d18 apparmor: update aa_audit_file() to use labels by John Johansen · 7 years ago
  45. 190a951 apparmor: move aa_file_perm() to use labels by John Johansen · 7 years ago
  46. 290f458 apparmor: allow ptrace checks to be finer grained than just capability by John Johansen · 7 years ago
  47. b2d09ae apparmor: move ptrace checks to using labels by John Johansen · 7 years ago
  48. ca916e8 apparmor: add cross check permission helper macros by John Johansen · 7 years ago
  49. 86b92cb apparmor: move resource checks to using labels by John Johansen · 7 years ago
  50. c70c86c apparmor: move capability checks to using labels by John Johansen · 7 years ago
  51. 317d9a0 apparmor: update query interface to support label queries by John Johansen · 7 years ago
  52. 76a1d26 apparmor: switch getprocattr to using label_print fns() by John Johansen · 7 years ago
  53. 637f688 apparmor: switch from profiles to using labels on contexts by John Johansen · 7 years ago
  54. f1bd904 apparmor: add the base fns() for domain labels by John Johansen · 7 years ago
  55. 192ca6b apparmor: revalidate files during exec by John Johansen · 7 years ago
  56. 2835a13 apparmor: cleanup rename XXX_file_context() to XXX_file_ctx() by John Johansen · 7 years ago
  57. df8073c apparmor: convert aa_change_XXX bool parameters to flags by John Johansen · 7 years ago
  58. dca9140 apparmor: cleanup remove unused and not fully implemented profile rename by John Johansen · 7 years ago
  59. 435222b apparmor: refactor updating profiles to the newest parent by John Johansen · 7 years ago
  60. a1bd627 apparmor: share profile name on replacement by John Johansen · 7 years ago
  61. cf797c0 apparmor: convert to profile block critical sections by John Johansen · 7 years ago
  62. fe86482 apparmor: move bprm_committing_creds/committed_creds to lsm.c by John Johansen · 7 years ago
  63. d9f02d9 apparmor: fix display of ns name by John Johansen · 7 years ago
  64. 5262ef6 apparmor: fix apparmor_query data by John Johansen · 7 years ago
  65. 60285eb apparmor: fix policy load/remove semantics by John Johansen · 7 years ago
  66. 3664268 apparmor: add namespace lookup fns() by John Johansen · 7 years ago
  67. ae3b316 apparmor: cleanup __find_child() by John Johansen · 7 years ago
  68. 39d8482 apparmor: provide information about path buffer size at boot by John Johansen · 8 years ago
  69. 4f3b3f2 apparmor: add profile permission query ability by John Johansen · 7 years ago
  70. 2d679f3 apparmor: switch from file_perms to aa_perms by John Johansen · 7 years ago
  71. aa9aeea apparmor: add gerneric permissions struct and support fns by John Johansen · 7 years ago
  72. b5b2557 apparmor: add fn to test if profile supports a given mediation class by John Johansen · 7 years ago
  73. 1dea3b4 apparmor: speed up transactional queries by John Johansen · 7 years ago
  74. a83bd86 apparmor: add label data availability to the feature set by John Johansen · 7 years ago
  75. 4ae47f3 apparmor: add mkdir/rmdir interface to manage policy namespaces by John Johansen · 7 years ago
  76. d9bf2c2 apparmor: add policy revision file interface by John Johansen · 7 years ago
  77. 18e99f1 apparmor: provide finer control over policy management by John Johansen · 7 years ago
  78. 0b4d345 security/selinux: allow security_sb_clone_mnt_opts to enable/disable native labeling behavior by Scott Mayhew · 7 years ago
  79. b4958c8 selinux: use kmem_cache for ebitmap by Junil Lee · 7 years ago
  80. e53cfe6 apparmor: rework perm mapping to a slightly broader set by John Johansen · 7 years ago
  81. 92347cf KEYS: fix refcount_inc() on zero by Mark Rutland · 7 years ago
  82. 7cbe093 KEYS: Convert KEYCTL_DH_COMPUTE to use the crypto KPP API by Mat Martineau · 7 years ago
  83. 0ddd9f1 KEYS: DH: ensure the KDF counter is properly aligned by Eric Biggers · 7 years ago
  84. 281590b KEYS: DH: don't feed uninitialized "otherinfo" into KDF by Eric Biggers · 7 years ago
  85. bbe2404 KEYS: DH: forbid using digest_null as the KDF hash by Eric Biggers · 7 years ago
  86. 0620fdd KEYS: sanitize key structs before freeing by Eric Biggers · 7 years ago
  87. ee618b4 KEYS: trusted: sanitize all key material by Eric Biggers · 7 years ago
  88. a9dd74b KEYS: encrypted: sanitize all key material by Eric Biggers · 7 years ago
  89. 6966c74 KEYS: user_defined: sanitize key payloads by Eric Biggers · 7 years ago
  90. 57070c8 KEYS: sanitize add_key() and keyctl() key payloads by Eric Biggers · 7 years ago
  91. 63a0b05 KEYS: fix freeing uninitialized memory in key_update() by Eric Biggers · 7 years ago
  92. 5649645 KEYS: fix dereferencing NULL payload with nonzero length by Eric Biggers · 7 years ago
  93. 0f534e4 KEYS: encrypted: use constant-time HMAC comparison by Eric Biggers · 7 years ago
  94. 64d107d KEYS: encrypted: fix race causing incorrect HMAC calculations by Eric Biggers · 7 years ago
  95. 794b4bc KEYS: encrypted: fix buffer overread in valid_master_desc() by Eric Biggers · 7 years ago
  96. e9ff56a KEYS: encrypted: avoid encrypting/decrypting stack buffers by Eric Biggers · 7 years ago
  97. d636bd9 KEYS: put keyring if install_session_keyring_to_cred() fails by Eric Biggers · 7 years ago
  98. 41f1c53 KEYS: Delete an error message for a failed memory allocation in get_derived_key() by Markus Elfring · 7 years ago
  99. 381f20f security: use READ_ONCE instead of deprecated ACCESS_ONCE by Davidlohr Bueso · 7 years ago
  100. 47b2c3f security/keys: add CONFIG_KEYS_COMPAT to Kconfig by Bilal Amarni · 7 years ago