1. ae190f0 selinux: fix memory leak in policydb_init() by Ondrej Mosnacek · 5 years ago
  2. 869d1e4 selinux: never allow relabeling on context mounts by Ondrej Mosnacek · 6 years ago
  3. 992baf5 selinux: do not override context on context mounts by Ondrej Mosnacek · 6 years ago
  4. 62044cb selinux: always allow mounting submounts by Ondrej Mosnacek · 6 years ago
  5. aedbb45 selinux: fix GPF on invalid policy by Stephen Smalley · 6 years ago
  6. 47ff762 selinux: Add __GFP_NOWARN to allocation at str_read() by Tetsuo Handa · 6 years ago
  7. d1f534f selinux: use GFP_NOWAIT in the AVC kmem_caches by Michal Hocko · 7 years ago
  8. c738c80 selinux: KASAN: slab-out-of-bounds in xattr_getsecurity by Sachin Grover · 6 years ago
  9. b983b2a selinux: do not check open permission on sockets by Stephen Smalley · 8 years ago
  10. 1978d82 selinux: Remove redundant check for unknown labeling behavior by Matthias Kaehlcke · 7 years ago
  11. 00972ac selinux: Remove unnecessary check of array base in selinux_set_mapping() by Matthias Kaehlcke · 8 years ago
  12. b243aa8 selinux: check for address length in selinux_socket_bind() by Alexander Potapenko · 8 years ago
  13. 5e6f51a selinux: skip bounded transition processing if the policy isn't loaded by Paul Moore · 7 years ago
  14. fe1cb58 selinux: ensure the context is NUL terminated in security_context_to_sid_core() by Paul Moore · 7 years ago
  15. 6cbaf7b selinux: fix off-by-one in setprocattr by Stephen Smalley · 8 years ago
  16. d17af50 mm: Change vm_is_stack_for_task() to vm_is_stack_for_current() by Andy Lutomirski · 8 years ago
  17. 101105b Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  18. 97d2116 Merge branch 'work.xattr' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  19. 5638733 Merge branch 'printk-cleanups' by Linus Torvalds · 8 years ago
  20. 4bcc595 printk: reinstate KERN_CONT for printing continuation lines by Linus Torvalds · 8 years ago
  21. 5d6c319 xattr: Add __vfs_{get,set,remove}xattr helpers by Andreas Gruenbacher · 8 years ago
  22. 078cd82 fs: Replace CURRENT_TIME with current_time() for inode timestamps by Deepa Dinamani · 8 years ago
  23. 43af5de lsm,audit,selinux: Introduce a new audit data type LSM_AUDIT_DATA_FILE by Vivek Goyal · 8 years ago
  24. 9b6a9ec selinux: fix error return code in policydb_read() by Wei Yongjun · 8 years ago
  25. 7c686af selinux: fix overflow and 0 length allocations by William Roberts · 8 years ago
  26. 3bc7bcf selinux: initialize structures by William Roberts · 8 years ago
  27. 74d977b selinux: detect invalid ebitmap by William Roberts · 8 years ago
  28. 348a0db selinux: drop SECURITY_SELINUX_POLICYDB_VERSION_MAX by William Roberts · 8 years ago
  29. a518b0a selinux: Implement dentry_create_files_as() hook by Vivek Goyal · 8 years ago
  30. c957f6d selinux: Pass security pointer to determine_inode_label() by Vivek Goyal · 8 years ago
  31. 19472b6 selinux: Implementation for inode_copy_up_xattr() hook by Vivek Goyal · 8 years ago
  32. 56909eb selinux: Implementation for inode_copy_up() hook by Vivek Goyal · 8 years ago
  33. 1a93a6e security: Use IS_ENABLED() instead of checking for built-in or module by Javier Martinez Canillas · 8 years ago
  34. 835c92d Merge branch 'work.const-qstr' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  35. 7a1e8b8 Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 8 years ago
  36. 4f3ccd7 qstr: constify dentry_init_security by Al Viro · 8 years ago
  37. d011a4d Merge branch 'stable-4.8' of git://git.infradead.org/users/pcmoore/selinux into next by James Morris · 8 years ago
  38. 4fee524 calipso: Add a label cache. by Huw Davies · 8 years ago
  39. a04e71f netlabel: Pass a family parameter to netlbl_skbuff_err(). by Huw Davies · 8 years ago
  40. 2917f57 calipso: Allow the lsm to label the skbuff directly. by Huw Davies · 8 years ago
  41. e1adea9 calipso: Allow request sockets to be relabelled by the lsm. by Huw Davies · 8 years ago
  42. 1f440c9 netlabel: Prevent setsockopt() from changing the hop-by-hop option. by Huw Davies · 8 years ago
  43. ceba183 calipso: Set the calipso socket label to match the secattr. by Huw Davies · 8 years ago
  44. aad8289 selinux: Add support for unprivileged mounts from user namespaces by Seth Forshee · 9 years ago
  45. 380cf5b fs: Treat foreign mounts as nosuid by Andy Lutomirski · 8 years ago
  46. 309c5fa selinux: fix type mismatch by Heinrich Schuchardt · 8 years ago
  47. 8bebe88 selinux: import NetLabel category bitmaps correctly by Paul Moore · 8 years ago
  48. 7ea5920 selinux: Only apply bounds checking to source types by Stephen Smalley · 8 years ago
  49. f4f27d0 Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 8 years ago
  50. a7fd20d Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next by Linus Torvalds · 8 years ago
  51. c52b761 Merge branch 'work.const-path' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 8 years ago
  52. c2316dbf selinux: apply execstack check on thread stacks by Stephen Smalley · 9 years ago
  53. 8e4ff6f selinux: distinguish non-init user namespace capability checks by Stephen Smalley · 9 years ago
  54. 10c9ead rtnetlink: add new RTM_GETSTATS message to dump link stats by Roopa Prabhu · 9 years ago
  55. 1ac42476 selinux: check ss_initialized before revalidating an inode label by Paul Moore · 9 years ago
  56. 20cdef8 selinux: delay inode label lookup as long as possible by Paul Moore · 9 years ago
  57. 2c97165 selinux: don't revalidate an inode's label when explicitly setting it by Paul Moore · 9 years ago
  58. 0fd71a6 selinux: Change bool variable name to index. by Prarit Bhargava · 9 years ago
  59. ce23e64 ->getxattr(): pass dentry and inode as separate arguments by Al Viro · 9 years ago
  60. fc64005 don't bother with ->d_inode->i_sb - it's always equal to ->d_sb by Al Viro · 9 years ago
  61. 61d612e selinux: restrict kernel module loading by Jeff Vander Stoep · 9 years ago
  62. 0c6181c selinux: consolidate the ptrace parent lookup code by Paul Moore · 9 years ago
  63. 4b57d6b selinux: simply inode label states to INVALID and INITIALIZED by Paul Moore · 9 years ago
  64. 899134f selinux: don't revalidate inodes in selinux_socket_getpeersec_dgram() by Paul Moore · 9 years ago
  65. 8a04c43 constify security_sb_mount() by Al Viro · 9 years ago
  66. 96b9b1c Merge tag 'tty-4.6-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/gregkh/tty by Linus Torvalds · 9 years ago
  67. bb7aeae Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 9 years ago
  68. 5804602 Merge branch 'stable-4.6' of git://git.infradead.org/users/pcmoore/selinux into next by James Morris · 9 years ago
  69. 34d47a7 Merge branch 'stable-4.5' of git://git.infradead.org/users/pcmoore/selinux into for-linus by James Morris · 9 years ago
  70. e817c2f selinux: Don't sleep inside inode_getsecid hook by Andreas Gruenbacher · 9 years ago
  71. 249f3c4 Merge 4.5-rc4 into tty-next by Greg Kroah-Hartman · 9 years ago
  72. 08ff924 selinux: nlmsgtab: add SOCK_DESTROY to the netlink mapping tables by Lorenzo Colitti · 9 years ago
  73. 9090a2d selinux: use absolute path to include directory by Andy Shevchenko · 9 years ago
  74. 4a51096 tty: Make tty_files_lock per-tty by Peter Hurley · 9 years ago
  75. 5955102 wrappers for ->i_mutex access by Al Viro · 9 years ago
  76. 5807fca Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 9 years ago
  77. b197367 selinux: Inode label revalidation performance fix by Andreas Gruenbacher · 9 years ago
  78. 8365a71 selinuxfs: switch to memdup_user_nul() by Al Viro · 9 years ago
  79. 7631994 selinux: rate-limit netlink message warnings in selinux_nlmsg_perm() by Vladis Dronov · 9 years ago
  80. f9df645 selinux: export validatetrans decisions by Andrew Perepechko · 9 years ago
  81. 5d226df selinux: Revalidate invalid inode security labels by Andreas Gruenbacher · 9 years ago
  82. 6f3be9f security: Add hook to invalidate inode security labels by Andreas Gruenbacher · 9 years ago
  83. 83da53c5 selinux: Add accessor functions for inode->i_security by Andreas Gruenbacher · 9 years ago
  84. d6335d7 security: Make inode argument of inode_getsecid non-const by Andreas Gruenbacher · 9 years ago
  85. ea861df security: Make inode argument of inode_getsecurity non-const by Andreas Gruenbacher · 9 years ago
  86. a44ca52 selinux: Remove unused variable in selinux_inode_init_security by Andreas Gruenbacher · 9 years ago
  87. 6e37592 Merge branch 'upstream' of git://git.infradead.org/users/pcmoore/selinux into for-linus2 by James Morris · 9 years ago
  88. f3bef67 selinux: fix bug in conditional rules handling by Stephen Smalley · 9 years ago
  89. 2df4ee7 Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net by Linus Torvalds · 9 years ago
  90. 54abc68 net: add skb_to_full_sk() helper and use it in selinux_netlbl_skbuff_setsid() by Eric Dumazet · 9 years ago
  91. 1873499 Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 9 years ago
  92. 212cd08 selinux: fix random read in selinux_ip_postroute_compat() by Eric Dumazet · 9 years ago
  93. 6320565 selinux: Use a kmem_cache for allocation struct file_security_struct by Sangwoo · 9 years ago
  94. 1d2a168 selinux: ioctl_has_perm should be static by Geliang Tang · 9 years ago
  95. 9529c78 selinux: use sprintf return value by Rasmus Villemoes · 9 years ago
  96. 21b76f1 selinux: use kstrdup() in security_get_bools() by Rasmus Villemoes · 9 years ago
  97. aa736c3 selinux: use kmemdup in security_sid_to_context_core() by Rasmus Villemoes · 9 years ago
  98. 20ba96a selinux: remove pointless cast in selinux_inode_setsecurity() by Rasmus Villemoes · 9 years ago
  99. 44be2f6 selinux: introduce security_context_str_to_sid by Rasmus Villemoes · 9 years ago
  100. 44d37ad selinux: do not check open perm on ftruncate call by Jeff Vander Stoep · 9 years ago