Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm-4.19
/
ffb01e73737b4d3e66734c901ee666ae8a23a857
/
security
3962e78
selinux: Add __GFP_NOWARN to allocation at str_read()
by Tetsuo Handa
· 6 years ago
c8a1685
apparmor: Fix uninitialized value in aa_split_fqname
by Zubin Mithra
· 6 years ago
c75e3cb
selinux: check length properly in SCTP bind hook
by Ondrej Mosnacek
· 6 years ago
8b259b9
ima: open a new file instance if no read permissions
by Goldwyn Rodrigues
· 6 years ago
13d3c98
ima: fix showing large 'violations' or 'runtime_measurements_count'
by Eric Biggers
· 6 years ago
f77c846
selinux: fix mounting of cgroup2 under older policies
by Stephen Smalley
· 6 years ago
7a47855
Smack: ptrace capability use fixes
by Casey Schaufler
· 6 years ago
8c0f9f5
Revert "uapi/linux/keyctl.h: don't use C++ reserved keyword as a struct member name"
by Lubomir Rintel
· 6 years ago
61a6bd8
Revert "x86/mm/legacy: Populate the user page-table with user pgd's"
by Joerg Roedel
· 6 years ago
db44bf4
Merge tag 'apparmor-pr-2018-09-06' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 6 years ago
8a2336e
uapi/linux/keyctl.h: don't use C++ reserved keyword as a struct member name
by Randy Dunlap
· 6 years ago
edf4e7b
apparmor: fix bad debug check in apparmor_secid_to_secctx()
by John Johansen
· 6 years ago
57bb8e3
Merge tag 'apparmor-pr-2018-08-23' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 6 years ago
4def196
Merge branch 'userns-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace
by Linus Torvalds
· 6 years ago
c037bd6
apparmor: remove no-op permission check in policy_unpack
by John Johansen
· 6 years ago
1b1eeca
init: allow initcall tables to be emitted using relative references
by Ard Biesheuvel
· 6 years ago
0a6b292
apparmor: fix an error code in __aa_create_ns()
by Dan Carpenter
· 6 years ago
f91e654
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
c715ebe
Merge branch 'next-tpm' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
04743f8
Merge branch 'next-smack' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
dafa5f6
Merge branch 'linus' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/crypto-2.6
by Linus Torvalds
· 6 years ago
9a76aba
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
by Linus Torvalds
· 6 years ago
e026bcc
Merge tag 'kbuild-v4.19' of git://git.kernel.org/pub/scm/linux/kernel/git/masahiroy/linux-kbuild
by Linus Torvalds
· 6 years ago
6f7dac1
Merge tag 'selinux-pr-20180814' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux
by Linus Torvalds
· 6 years ago
92d4a03
Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
8c479c2
Merge tag 'hardened-usercopy-v4.19-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/kees/linux
by Linus Torvalds
· 6 years ago
a66b4cd
Merge branch 'work.open3' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 6 years ago
355139a
cap_inode_getsecurity: use d_find_any_alias() instead of d_find_alias()
by Eddie.Horng
· 6 years ago
7e4237f
selinux: cleanup dentry and inodes on error in selinuxfs
by nixiaoming
· 6 years ago
c5f5aee
Merge git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux
by Herbert Xu
· 6 years ago
df6b4e6
Merge branch 'smack-for-4.19-a' of https://github.com/cschaufler/next-smack into next-smack
by James Morris
· 6 years ago
ec403d8
ima: Get rid of ima_used_chip and use ima_tpm_chip != NULL instead
by Stefan Berger
· 7 years ago
5c2a640
ima: Use tpm_default_chip() and call TPM functions with a tpm_chip
by Stefan Berger
· 7 years ago
32a4f5e
net: sched: introduce chain object to uapi
by Jiri Pirko
· 6 years ago
d66a8ac
Smack: Inform peer that IPv6 traffic has been blocked
by Piotr Sawicki
· 6 years ago
a07ef95
Smack: Check UDP-Lite and DCCP protocols during IPv6 handling
by Piotr Sawicki
· 6 years ago
129a998
Smack: Fix handling of IPv4 traffic received by PF_INET6 sockets
by Piotr Sawicki
· 6 years ago
3dd0f18
EVM: fix return value check in evm_write_xattrs()
by Wei Yongjun
· 6 years ago
24b87a1
apparmor: Fix failure to audit context info in build_change_hat
by John Johansen
· 6 years ago
f4585bc
apparmor: Fully initialize aa_perms struct when answering userspace query
by Tyler Hicks
· 6 years ago
7f3ebcf
apparmor: Check buffer bounds when mapping permissions mask
by Tyler Hicks
· 6 years ago
7757d60
x86/pti: Allow CONFIG_PAGE_TABLE_ISOLATION for x86_32
by Joerg Roedel
· 6 years ago
6eb864c
integrity: prevent deadlock during digsig verification.
by Mikhail Kurinnoi
· 7 years ago
5feeb61
evm: Allow non-SHA1 digital signatures
by Matthew Garrett
· 7 years ago
e2861fa
evm: Don't deadlock if a crypto algorithm is unavailable
by Matthew Garrett
· 7 years ago
ac2409a
integrity: silence warning when CONFIG_SECURITYFS is not enabled
by Sudeep Holla
· 7 years ago
dba31ee
ima: Differentiate auditing policy rules from "audit" actions
by Stefan Berger
· 7 years ago
2afd020
ima: Do not audit if CONFIG_INTEGRITY_AUDIT is not set
by Stefan Berger
· 7 years ago
3d2859d
ima: Use audit_log_format() rather than audit_log_string()
by Stefan Berger
· 7 years ago
8a3bcaf
ima: Call audit_log_string() rather than logging it untrusted
by Stefan Berger
· 7 years ago
87ea584
security: check for kstrdup() failure in lsm_append()
by Eric Biggers
· 6 years ago
83a68a0
security: export security_kernel_load_data function
by Arnd Bergmann
· 6 years ago
631d2b4
selinux: constify write_op[]
by Eric Biggers
· 6 years ago
c417fbc
kbuild: move bin2c back to scripts/ from scripts/basic/
by Masahiro Yamada
· 7 years ago
4f0496d
ima: based on policy warn about loading firmware (pre-allocated buffer)
by Mimi Zohar
· 6 years ago
c77b8cd
module: replace the existing LSM hook in init_module
by Mimi Zohar
· 6 years ago
ef96837
ima: add build time policy
by Mimi Zohar
· 6 years ago
fed2512
ima: based on policy require signed firmware (sysfs fallback)
by Mimi Zohar
· 6 years ago
16c267a
ima: based on policy require signed kexec kernel images
by Mimi Zohar
· 6 years ago
377179c
security: define new LSM hook named security_kernel_load_data
by Mimi Zohar
· 6 years ago
6035a27
IMA: don't propagate opened through the entire thing
by Al Viro
· 7 years ago
9481769
->file_open(): lose cred argument
by Al Viro
· 6 years ago
e3f20ae
security_file_open(): lose cred argument
by Al Viro
· 6 years ago
85d7311
crypto: remove redundant type flags from tfm allocation
by Eric Biggers
· 6 years ago
6aa56f4
usercopy: Do not select BUG with HARDENED_USERCOPY
by Kamal Mostafa
· 7 years ago
34a484d
Merge tag 'selinux-pr-20180629' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux
by Linus Torvalds
· 6 years ago
0da7412
selinux: move user accesses in selinuxfs out of locked regions
by Jann Horn
· 7 years ago
3619dec
dh key: fix rounding up KDF output length
by Eric Biggers
· 7 years ago
7b4e884
Smack: Mark inode instant in smack_task_to_inode
by Casey Schaufler
· 7 years ago
67b0b4e
selinux: Cleanup printk logging in netnode
by peter enderborg
· 7 years ago
07c81ac
selinux: Cleanup printk logging in avc
by peter enderborg
· 7 years ago
0d3a115
selinux: Cleanup printk logging in netif
by peter enderborg
· 7 years ago
d006469
selinux: Cleanup printk logging in netport
by peter enderborg
· 7 years ago
b21a695
selinux: Cleanup printk logging in sidtab
by peter enderborg
· 7 years ago
d85a783
selinux: Cleanup printk logging in netlink
by peter enderborg
· 7 years ago
f8b69a5
selinux: Cleanup printk logging in selinuxfs
by peter enderborg
· 7 years ago
b54c85c15
selinux: Cleanup printk logging in services
by peter enderborg
· 7 years ago
c87a7e7
selinux: Cleanup printk logging in avtab
by peter enderborg
· 7 years ago
c103a91
selinux: Cleanup printk logging in hooks
by peter enderborg
· 7 years ago
9ffdd49
selinux: Cleanup printk logging in policydb
by peter enderborg
· 7 years ago
180cfc5
selinux: Cleanup printk logging in ebitmap
by peter enderborg
· 7 years ago
ab48576
selinux: Cleanup printk logging in conditional
by peter enderborg
· 7 years ago
5fb94e9
docs: Fix some broken references
by Mauro Carvalho Chehab
· 7 years ago
ec15872
docs: fix broken references with multiple hints
by Mauro Carvalho Chehab
· 7 years ago
463f202
Merge tag 'apparmor-pr-2018-06-13' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 7 years ago
6396bb2
treewide: kzalloc() -> kcalloc()
by Kees Cook
· 7 years ago
6da2ec5
treewide: kmalloc() -> kmalloc_array()
by Kees Cook
· 7 years ago
ba1b730
Merge branch 'next-smack' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 7 years ago
00d535a
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 7 years ago
338d0be
apparmor: fix ptrace read check
by John Johansen
· 7 years ago
3ddae98
apparmor: fix memory leak when deduping profile load
by John Johansen
· 7 years ago
11c92f1
apparmor: fix mediation of prlimit
by John Johansen
· 7 years ago
a4c3f89
apparmor: fixup secid map conversion to using IDR
by John Johansen
· 7 years ago
99cc45e
apparmor: Use an IDR to allocate apparmor secids
by Matthew Wilcox
· 7 years ago
52e8c38
apparmor: Fix memory leak of rule on error exit path
by Tyler Hicks
· 7 years ago
2ab47da
apparmor: modify audit rule support to support profile stacks
by John Johansen
· 7 years ago
e79c26d
apparmor: Add support for audit rule filtering
by Matthew Garrett
· 7 years ago
5d8779a
apparmor: Convert to use match_string() helper
by Andy Shevchenko
· 7 years ago
38125c2
apparmor: improve get_buffers macro by using get_cpu_ptr
by John Johansen
· 7 years ago
1c8c5a9
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
by Linus Torvalds
· 7 years ago
Next »