- fe1219a apparmor: ensure that dfa state tables have entries by John Johansen · 4 years, 6 months ago
- 3f9a54c apparmor: don't try to replace stale label in ptraceme check by Jann Horn · 6 years ago
- 3cc2aec apparmor: fix nnp subset test for unconfined by John Johansen · 5 years ago
- 70fa599 apparmor: check/put label on apparmor_sk_clone_security() by Mauricio Faria de Oliveira · 4 years, 4 months ago
- 86396a4 apparmor: fix introspection of of task mode for unconfined tasks by John Johansen · 4 years, 3 months ago
- c701849 apparmor: Fix aa_label refcnt leak in policy_update by Xiyu Yang · 4 years, 5 months ago
- dd73adb apparmor: fix potential label refcnt leak in aa_change_profile by Xiyu Yang · 4 years, 6 months ago
- f1738ae apparmor: Fix use-after-free in aa_audit_rule_init by Navid Emamdoost · 5 years ago
- e58f543 apparmor: don't try to replace stale label in ptrace access check by Jann Horn · 6 years ago
- 451830a apparmor: Fix network performance issue in aa_label_sk_perm by Tony Jones · 6 years ago
- 87ca9aa LSM: generalize flag passing to security_capable by Micah Morton · 6 years ago
- f3248d6 apparmor: fix aa_xattrs_match() may sleep while holding a RCU lock by John Johansen · 4 years, 9 months ago
- 79a1eae apparmor: fix unsigned len comparison with less than zero by Colin Ian King · 5 years ago
- d8a89c3 apparmor: delete the dentry in aafs_remove() to avoid a leak by Chris Coulson · 6 years ago
- 1711103 apparmor: reset pos on failure to unpack for various functions by Mike Salvatore · 5 years ago
- 31c9958 apparmor: enforce nullbyte at end of tag string by Jann Horn · 5 years ago
- eb2b0bf apparmor: fix PROFILE_MEDIATES for untrusted input by John Johansen · 5 years ago
- b21ca27 apparmorfs: fix use-after-free on symlink traversal by Al Viro · 5 years ago
- d7807b6 apparmor: Fix aa_label_build() error handling for failed merges by John Johansen · 6 years ago
- c8a1685 apparmor: Fix uninitialized value in aa_split_fqname by Zubin Mithra · 6 years ago
- edf4e7b apparmor: fix bad debug check in apparmor_secid_to_secctx() by John Johansen · 6 years ago
- 57bb8e3 Merge tag 'apparmor-pr-2018-08-23' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 6 years ago
- c037bd6 apparmor: remove no-op permission check in policy_unpack by John Johansen · 6 years ago
- 0a6b292 apparmor: fix an error code in __aa_create_ns() by Dan Carpenter · 6 years ago
- 24b87a1 apparmor: Fix failure to audit context info in build_change_hat by John Johansen · 6 years ago
- f4585bc apparmor: Fully initialize aa_perms struct when answering userspace query by Tyler Hicks · 6 years ago
- 7f3ebcf apparmor: Check buffer bounds when mapping permissions mask by Tyler Hicks · 6 years ago
- 9481769 ->file_open(): lose cred argument by Al Viro · 6 years ago
- 463f202 Merge tag 'apparmor-pr-2018-06-13' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 6 years ago
- 6396bb2 treewide: kzalloc() -> kcalloc() by Kees Cook · 6 years ago
- 338d0be apparmor: fix ptrace read check by John Johansen · 6 years ago
- 3ddae98 apparmor: fix memory leak when deduping profile load by John Johansen · 6 years ago
- 11c92f1 apparmor: fix mediation of prlimit by John Johansen · 6 years ago
- a4c3f89 apparmor: fixup secid map conversion to using IDR by John Johansen · 6 years ago
- 99cc45e apparmor: Use an IDR to allocate apparmor secids by Matthew Wilcox · 6 years ago
- 52e8c38 apparmor: Fix memory leak of rule on error exit path by Tyler Hicks · 6 years ago
- 2ab47da apparmor: modify audit rule support to support profile stacks by John Johansen · 6 years ago
- e79c26d apparmor: Add support for audit rule filtering by Matthew Garrett · 6 years ago
- 5d8779a apparmor: Convert to use match_string() helper by Andy Shevchenko · 6 years ago
- 38125c2 apparmor: improve get_buffers macro by using get_cpu_ptr by John Johansen · 6 years ago
- 52e7128e apparmor: fix '*seclen' is never less than zero by John Johansen · 6 years ago
- 3107e8c apparmor: fix typo "preconfinement" by Zygmunt Krynicki · 6 years ago
- 68a1a0c apparmor: fix typo "independent" by Zygmunt Krynicki · 6 years ago
- 5d2371e apparmor: fix typo "traverse" by Zygmunt Krynicki · 6 years ago
- 69ad4a4 apparmor: fix typo "type" by Zygmunt Krynicki · 6 years ago
- b62fb22 apparmor: fix typo "replace" by Zygmunt Krynicki · 6 years ago
- a18f902 apparmor: fix typo "comparison" by Zygmunt Krynicki · 6 years ago
- b2c2086 apparmor: fix typo "loosen" by Zygmunt Krynicki · 6 years ago
- a7ae364 apparmor: add the ability to get a task's secid by John Johansen · 7 years ago
- c092921 apparmor: add support for mapping secids and using secctxes by John Johansen · 7 years ago
- 80a17a5 Merge tag 'apparmor-pr-2018-04-10' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 6 years ago
- 3612605 Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 6 years ago
- 514c603 headers: untangle kmemleak.h from mm.h by Randy Dunlap · 6 years ago
- 588558e apparmor: fix memory leak on buffer on error exit path by Colin Ian King · 6 years ago
- cf14f27 macro: introduce COUNT_ARGS() macro by Alexei Starovoitov · 6 years ago
- 1180b4c apparmor: fix dangling symlinks to policy rawdata after replacement by John Johansen · 7 years ago
- d53c9f4 apparmor: Fix an error code in verify_table_headers() by Dan Carpenter · 7 years ago
- a61ecd3 apparmor: fix error returns checks by making size a ssize_t by Colin Ian King · 6 years ago
- b9590ad apparmor: remove POLICY_MEDIATES_SAFE by John Johansen · 7 years ago
- 56974a6 apparmor: add base infastructure for socket mediation by John Johansen · 7 years ago
- 6b4f3d0 usb, signal, security: only pass the cred, not the secid, to kill_pid_info_as_cred and security_task_kill by Stephen Smalley · 7 years ago
- a9a0884 vfs: do bulk POLL* -> EPOLL* replacement by Linus Torvalds · 7 years ago
- 21f6066 apparmor: improve overlapping domain attachment resolution by John Johansen · 7 years ago
- 73f488c apparmor: convert attaching profiles via xattrs to use dfa matching by John Johansen · 7 years ago
- 8e51f90 apparmor: Add support for attaching profiles via xattr, presence and value by Matthew Garrett · 7 years ago
- a078120 apparmor: cleanup: simplify code to get ns symlink name by John Johansen · 7 years ago
- cf91600 apparmor: cleanup create_aafs() error path by John Johansen · 7 years ago
- d901d6a apparmor: dfa split verification of table headers by John Johansen · 7 years ago
- 031dcc8 apparmor: dfa add support for state differential encoding by John Johansen · 7 years ago
- 074c1cd apparmor: dfa move character match into a macro by John Johansen · 7 years ago
- 9fcf78c apparmor: update domain transitions that are subsets of confinement at nnp by John Johansen · 7 years ago
- d8889d4 apparmor: move context.h to cred.h by John Johansen · 7 years ago
- de62de5 apparmor: move task related defines and fns to task.X files by John Johansen · 7 years ago
- d065f2f apparmor: cleanup, drop unused fn __aa_task_is_confined() by John Johansen · 7 years ago
- e1a03f6 apparmor: cleanup fixup description of aa_replace_profiles by John Johansen · 8 years ago
- f175221 apparmor: rename tctx to ctx by John Johansen · 8 years ago
- d9087c4 apparmor: drop cred_ctx and reference the label directly by John Johansen · 8 years ago
- 3b529a7 apparmor: move task domain change info to task security by John Johansen · 8 years ago
- 4d2f8ba apparmor: rename task_ctx to the more accurate cred_ctx by John Johansen · 8 years ago
- 3acfd5f apparmor: audit unknown signal numbers by John Johansen · 7 years ago
- 3dc6b1c apparmor: make signal label match work when matching stacked labels by John Johansen · 7 years ago
- 1d6583d security: apparmor: remove duplicate includes by Pravin Shedge · 7 years ago
- 475bdda apparmor: root view labels should not be under user control by John Johansen · 7 years ago
- 71fa373 apparmor: cleanup add proper line wrapping to nulldfa.in by John Johansen · 7 years ago
- 95652ca apparmor: provide a bounded version of label_parse by John Johansen · 7 years ago
- 6e0654d apparmor: use the dfa to do label parse string splitting by John Johansen · 7 years ago
- cf65fab apparmor: add first substr match to dfa by John Johansen · 7 years ago
- a6a5257 apparmor: split load data into management struct and data blob by John Johansen · 7 years ago
- 98cf5bb apparmor: fix logging of the existence test for signals by John Johansen · 7 years ago
- b5beb07 apparmor: fix resource audit messages when auditing peer by John Johansen · 7 years ago
- 040d9e2 apparmor: fix display of .ns_name for containers by John Johansen · 7 years ago
- 168fe32 Merge branch 'misc.poll' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 7 years ago
- 1a3881d apparmor: Fix regression in profile conflict logic by Matthew Garrett · 7 years ago
- 0dda0b3 apparmor: fix ptrace label match when matching stacked labels by John Johansen · 7 years ago
- 5b9f57c apparmor: fix regression in mount mediation when feature set is pinned by John Johansen · 7 years ago
- df8ba95 Merge tag 'apparmor-pr-2017-11-30' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 7 years ago
- b12cbb2 apparmor: fix oops in audit_signal_cb hook by John Johansen · 7 years ago
- e6c5a7d apparmor: annotate ->poll() instances by Al Viro · 7 years ago
- 1751e8a Rename superblock flags (MS_xyz -> SB_xyz) by Linus Torvalds · 7 years ago
- 26064de Merge tag 'apparmor-pr-2017-11-21' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor by Linus Torvalds · 7 years ago