Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm-4.9
/
ac82d16f334316179826c93cd61abe838812b7db
/
security
« Previous
725de7f
ima: extend ima_get_action() to return the policy pcr
by Eric Richter
· 8 years ago
0260643
ima: add policy support for extending different pcrs
by Eric Richter
· 8 years ago
96d450b
integrity: add measured_pcrs field to integrity cache
by Eric Richter
· 8 years ago
4fee524
calipso: Add a label cache.
by Huw Davies
· 8 years ago
a04e71f
netlabel: Pass a family parameter to netlbl_skbuff_err().
by Huw Davies
· 8 years ago
2917f57
calipso: Allow the lsm to label the skbuff directly.
by Huw Davies
· 8 years ago
e1adea9
calipso: Allow request sockets to be relabelled by the lsm.
by Huw Davies
· 8 years ago
1f440c9
netlabel: Prevent setsockopt() from changing the hop-by-hop option.
by Huw Davies
· 8 years ago
ceba183
calipso: Set the calipso socket label to match the secattr.
by Huw Davies
· 8 years ago
aad8289
selinux: Add support for unprivileged mounts from user namespaces
by Seth Forshee
· 9 years ago
809c02e
Smack: Handle labels consistently in untrusted mounts
by Seth Forshee
· 9 years ago
9f50eda
Smack: Add support for unprivileged mounts from user namespaces
by Seth Forshee
· 9 years ago
380cf5b
fs: Treat foreign mounts as nosuid
by Andy Lutomirski
· 8 years ago
d07b846
fs: Limit file caps to the user namespace of the super block
by Seth Forshee
· 9 years ago
d56d72c
KEYS: Use skcipher for big keys
by Herbert Xu
· 8 years ago
3832742
KEYS: potential uninitialized variable
by Dan Carpenter
· 8 years ago
309c5fa
selinux: fix type mismatch
by Heinrich Schuchardt
· 8 years ago
965475a
KEYS: Strip trailing spaces
by David Howells
· 8 years ago
8387ff2
vfs: make the string hashes salt the hash
by Linus Torvalds
· 8 years ago
8bebe88
selinux: import NetLabel category bitmaps correctly
by Paul Moore
· 8 years ago
18d872f
Smack: ignore null signal in smack_task_kill
by Rafal Krypa
· 9 years ago
40d2737
security: tomoyo: simplify the gc kthread creation
by Mike Danese
· 8 years ago
2885c1e
LSM: Fix for security_inode_getsecurity and -EOPNOTSUPP
by Casey Schaufler
· 8 years ago
4693fc7
KEYS: Add placeholder for KDF usage with DH
by Stephan Mueller
· 8 years ago
7ea5920
selinux: Only apply bounds checking to source types
by Stephen Smalley
· 8 years ago
4093d30
securityfs: ->d_parent is never NULL or negative
by Al Viro
· 8 years ago
07a8e62
drbd: ->d_parent is never NULL or negative
by Al Viro
· 8 years ago
d102a56
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 8 years ago
3767e25
switch ->setxattr() to passing dentry and inode separately
by Al Viro
· 8 years ago
dca6b41
Yama: fix double-spinlock and user access in atomic context
by Jann Horn
· 8 years ago
b8b5727
security/integrity/ima/ima_policy.c: use %pU to output UUID in printable format
by Andy Shevchenko
· 8 years ago
f4f27d0
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 8 years ago
a7fd20d
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
by Linus Torvalds
· 9 years ago
c52b761
Merge branch 'work.const-path' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 9 years ago
7f427d3
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 9 years ago
91e8d0cb
Merge branch 'timers-core-for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip
by Linus Torvalds
· 9 years ago
b937190
LSM: LoadPin: provide enablement CONFIG
by Kees Cook
· 9 years ago
0e0162b
Merge branch 'ovl-fixes' into for-linus
by Al Viro
· 9 years ago
e800072
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
by David S. Miller
· 9 years ago
a6926cc
Merge branch 'stable-4.7' of git://git.infradead.org/users/pcmoore/selinux into next
by James Morris
· 9 years ago
0250abc
Merge tag 'keys-next-20160505' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs into next
by James Morris
· 9 years ago
74f430c
Yama: use atomic allocations when reporting
by Sasha Levin
· 9 years ago
d55201c
Merge branch 'keys-trust' into keys-next
by David Howells
· 9 years ago
cf90ea9
ima: fix the string representation of the LSM/IMA hook enumeration ordering
by Mimi Zohar
· 9 years ago
05d1a71
ima: add support for creating files using the mknodat syscall
by Mimi Zohar
· 9 years ago
42a4c60
ima: fix ima_inode_post_setattr
by Mimi Zohar
· 9 years ago
c2316dbf
selinux: apply execstack check on thread stacks
by Stephen Smalley
· 9 years ago
8e4ff6f
selinux: distinguish non-init user namespace capability checks
by Stephen Smalley
· 9 years ago
457db29
security: Introduce security_settime64()
by Baolin Wang
· 9 years ago
9b09155
LSM: LoadPin for kernel file loading restrictions
by Kees Cook
· 9 years ago
8a56038
Yama: consolidate error reporting
by Kees Cook
· 9 years ago
10c9ead
rtnetlink: add new RTM_GETSTATS message to dump link stats
by Roopa Prabhu
· 9 years ago
1ac42476
selinux: check ss_initialized before revalidating an inode label
by Paul Moore
· 9 years ago
20cdef8
selinux: delay inode label lookup as long as possible
by Paul Moore
· 9 years ago
2c97165
selinux: don't revalidate an inode's label when explicitly setting it
by Paul Moore
· 9 years ago
0fd71a6
selinux: Change bool variable name to index.
by Prarit Bhargava
· 9 years ago
ddbb411
KEYS: Add KEYCTL_DH_COMPUTE command
by Mat Martineau
· 9 years ago
13100a7
Security: Keys: Big keys stored encrypted
by Kirill Marinushkin
· 9 years ago
898de7d
KEYS: user_update should use copy of payload made during preparsing
by David Howells
· 9 years ago
93da17b
security: integrity: Remove select to deleted option PUBLIC_KEY_ALGO_RSA
by Andreas Ziegler
· 9 years ago
56104cf
IMA: Use the the system trusted keyrings instead of .ima_mok
by David Howells
· 9 years ago
77f68ba
KEYS: Remove KEY_FLAG_TRUSTED and KEY_ALLOC_TRUSTED
by David Howells
· 9 years ago
a511e1a
KEYS: Move the point of trust determination to __key_link()
by David Howells
· 9 years ago
5ac7eac
KEYS: Add a facility to restrict new links into a keyring
by David Howells
· 9 years ago
ce23e64
->getxattr(): pass dentry and inode as separate arguments
by Al Viro
· 9 years ago
3c9d629
security: drop the unused hook skb_owned_by
by Paolo Abeni
· 9 years ago
fc64005
don't bother with ->d_inode->i_sb - it's always equal to ->d_sb
by Al Viro
· 9 years ago
61d612e
selinux: restrict kernel module loading
by Jeff Vander Stoep
· 9 years ago
0c6181c
selinux: consolidate the ptrace parent lookup code
by Paul Moore
· 9 years ago
4b57d6b
selinux: simply inode label states to INVALID and INITIALIZED
by Paul Moore
· 9 years ago
899134f
selinux: don't revalidate inodes in selinux_socket_getpeersec_dgram()
by Paul Moore
· 9 years ago
81cd889
constify ima_d_path()
by Al Viro
· 9 years ago
3b73b68
constify security_sb_pivotroot()
by Al Viro
· 9 years ago
77b286c
constify security_path_chroot()
by Al Viro
· 9 years ago
3ccee46
constify security_path_{link,rename}
by Al Viro
· 9 years ago
8db0185
apparmor: remove useless checks for NULL ->mnt
by Al Viro
· 9 years ago
d360775
constify security_path_{mkdir,mknod,symlink}
by Al Viro
· 9 years ago
989f74e
constify security_path_{unlink,rmdir}
by Al Viro
· 9 years ago
d6b49f7
apparmor: constify common_perm_...()
by Al Viro
· 9 years ago
3539aaf
apparmor: constify aa_path_link()
by Al Viro
· 9 years ago
741aca7
apparmor: new helper - common_path_perm()
by Al Viro
· 9 years ago
be01f9f
constify chmod_common/security_path_chmod
by Al Viro
· 9 years ago
8a04c43
constify security_sb_mount()
by Al Viro
· 9 years ago
7fd25da
constify chown_common/security_path_chown
by Al Viro
· 9 years ago
e6641ed
tomoyo: constify assorted struct path *
by Al Viro
· 9 years ago
928e1eb
apparmor_path_truncate(): path->mnt is never NULL
by Al Viro
· 9 years ago
81f4c50
constify security_path_truncate()
by Al Viro
· 9 years ago
2c7661f
[apparmor] constify struct path * in a bunch of helpers
by Al Viro
· 9 years ago
643ad15
Merge branch 'mm-pkeys-for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip
by Linus Torvalds
· 9 years ago
96b9b1c
Merge tag 'tty-4.6-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/gregkh/tty
by Linus Torvalds
· 9 years ago
bb7aeae
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 9 years ago
7047737
Merge branch 'linus' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/crypto-2.6
by Linus Torvalds
· 9 years ago
88a1b56
Merge tag 'keys-next-20160303' of git://git.kernel.org/pub/scm/linux/kernel/git/dhowells/linux-fs into next
by James Morris
· 9 years ago
5804602
Merge branch 'stable-4.6' of git://git.infradead.org/users/pcmoore/selinux into next
by James Morris
· 9 years ago
4e8ae72
X.509: Make algo identifiers text instead of enum
by David Howells
· 9 years ago
d43de6c
akcipher: Move the RSA DER encoding check to the crypto layer
by David Howells
· 9 years ago
34d47a7
Merge branch 'stable-4.5' of git://git.infradead.org/users/pcmoore/selinux into for-linus
by James Morris
· 9 years ago
481873d
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity into next
by James Morris
· 9 years ago
6020944
Merge branch 'smack-for-4.6' of https://github.com/cschaufler/smack-next into next
by James Morris
· 9 years ago
95ee08f
ima: require signed IMA policy
by Mimi Zohar
· 9 years ago
Next »