Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm-5.4
/
4722a3e6b716d9d4594c3cf3856b03bbd24a59a8
/
security
d81f50b
Merge tag 'apparmor-pr-2018-11-01' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 6 years ago
566f52e
apparmor: clean an indentation issue, remove extraneous space
by Colin Ian King
· 6 years ago
76af016
apparmor: fix checkpatch error in Parse secmark policy
by John Johansen
· 6 years ago
2244798
KEYS: Move trusted.h to include/keys [ver #2]
by Denis Kenzior
· 6 years ago
e1ea9f8
KEYS: trusted: Expose common functionality [ver #2]
by Denis Kenzior
· 6 years ago
00d60fd
KEYS: Provide keyctls to drive the new key type ops for asymmetric keys [ver #2]
by David Howells
· 6 years ago
24ed334
Merge branch 'next-loadpin' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
e80bc22
Merge branch 'next-smack' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
57ce66d
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
638820d
Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
d5e4d81
Merge tag 'selinux-pr-20181022' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux
by Linus Torvalds
· 6 years ago
ba9f6f8
Merge branch 'siginfo-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace
by Linus Torvalds
· 6 years ago
85a5859
Merge tag 'loadpin-security-next' of https://git.kernel.org/pub/scm/linux/kernel/git/kees/linux into next-loadpin
by James Morris
· 6 years ago
13523be
LoadPin: Rename boot param "enabled" to "enforce"
by Kees Cook
· 6 years ago
f4b626d
LoadPin: Report friendly block device name
by Kees Cook
· 6 years ago
e1af477
apparmor: add #ifdef checks for secmark filtering
by Arnd Bergmann
· 6 years ago
3f6caaf
LSM: Don't ignore initialization failures
by Kees Cook
· 6 years ago
9b8c7c1
LSM: Provide init debugging infrastructure
by Kees Cook
· 6 years ago
07aed2f
LSM: Record LSM name in struct lsm_info
by Kees Cook
· 6 years ago
3d6e5f6
LSM: Convert security_initcall() into DEFINE_LSM()
by Kees Cook
· 6 years ago
5b89c1b
LSM: Convert from initcall to struct lsm_info
by Kees Cook
· 6 years ago
6907e37
LSM: Remove initcall tracing
by Kees Cook
· 6 years ago
b048ae6
LSM: Rename .security_initcall section to .lsm_info
by Kees Cook
· 6 years ago
98d2917
LSM: Correctly announce start of LSM initialization
by Kees Cook
· 6 years ago
a408e4a
ima: open a new file instance if no read permissions
by Goldwyn Rodrigues
· 6 years ago
1e4c8da
ima: fix showing large 'violations' or 'runtime_measurements_count'
by Eric Biggers
· 6 years ago
2ab5daf
security/integrity: remove unnecessary 'init_keyring' variable
by Eric Biggers
· 6 years ago
b2724d5
security/integrity: constify some read-only data
by Eric Biggers
· 6 years ago
ae7795b
signal: Distinguish between kernel_siginfo and siginfo
by Eric W. Biederman
· 6 years ago
250f2da
apparmor: Fix uninitialized value in aa_split_fqname
by Zubin Mithra
· 6 years ago
ca3fde5
apparmor: don't try to replace stale label in ptraceme check
by Jann Horn
· 6 years ago
0fb871c
apparmor: Replace spin_is_locked() with lockdep
by Lance Roy
· 6 years ago
ab9f211
apparmor: Allow filtering based on secmark policy
by Matthew Garrett
· 6 years ago
9caafbe
apparmor: Parse secmark policy
by Matthew Garrett
· 6 years ago
617a629
apparmor: Add a wildcard secid
by Matthew Garrett
· 6 years ago
8c0f9f5
Revert "uapi/linux/keyctl.h: don't use C++ reserved keyword as a struct member name"
by Lubomir Rintel
· 6 years ago
b1fed3e
Smack: Mark expected switch fall-through
by Gustavo A. R. Silva
· 6 years ago
dcb569c
Smack: ptrace capability use fixes
by Casey Schaufler
· 6 years ago
76c9805
Smack: remove set but not used variable 'root_inode'
by YueHaibing
· 6 years ago
61a6bd8
Revert "x86/mm/legacy: Populate the user page-table with user pgd's"
by Joerg Roedel
· 6 years ago
4458bba
selinux: Add __GFP_NOWARN to allocation at str_read()
by Tetsuo Handa
· 6 years ago
1f8266f
apparmor: don't try to replace stale label in ptrace access check
by Jann Horn
· 6 years ago
5f99758
apparmor: Fix network performance issue in aa_label_sk_perm
by Tony Jones
· 6 years ago
db44bf4
Merge tag 'apparmor-pr-2018-09-06' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 6 years ago
95ffe19
selinux: refactor mls_context_to_sid() and make it stricter
by Jann Horn
· 6 years ago
8a2336e
uapi/linux/keyctl.h: don't use C++ reserved keyword as a struct member name
by Randy Dunlap
· 6 years ago
7bb185e
selinux: fix mounting of cgroup2 under older policies
by Stephen Smalley
· 6 years ago
dbdb75b
security: tomoyo: Fix obsolete function
by Ding Xiang
· 6 years ago
e42f6f9
Merge tag 'v4.19-rc2' into next-general
by James Morris
· 6 years ago
edf4e7b
apparmor: fix bad debug check in apparmor_secid_to_secctx()
by John Johansen
· 6 years ago
4408e300a
security/capabilities: remove check for -EINVAL
by Christian Brauner
· 6 years ago
57bb8e3
Merge tag 'apparmor-pr-2018-08-23' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 6 years ago
4def196
Merge branch 'userns-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace
by Linus Torvalds
· 6 years ago
c037bd6
apparmor: remove no-op permission check in policy_unpack
by John Johansen
· 6 years ago
1b1eeca
init: allow initcall tables to be emitted using relative references
by Ard Biesheuvel
· 6 years ago
0a6b292
apparmor: fix an error code in __aa_create_ns()
by Dan Carpenter
· 6 years ago
f91e654
Merge branch 'next-integrity' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
c715ebe
Merge branch 'next-tpm' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
04743f8
Merge branch 'next-smack' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
dafa5f6
Merge branch 'linus' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/crypto-2.6
by Linus Torvalds
· 6 years ago
9a76aba
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
by Linus Torvalds
· 6 years ago
e026bcc
Merge tag 'kbuild-v4.19' of git://git.kernel.org/pub/scm/linux/kernel/git/masahiroy/linux-kbuild
by Linus Torvalds
· 6 years ago
6f7dac1
Merge tag 'selinux-pr-20180814' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux
by Linus Torvalds
· 6 years ago
92d4a03
Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 6 years ago
8c479c2
Merge tag 'hardened-usercopy-v4.19-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/kees/linux
by Linus Torvalds
· 6 years ago
a66b4cd
Merge branch 'work.open3' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 6 years ago
355139a
cap_inode_getsecurity: use d_find_any_alias() instead of d_find_alias()
by Eddie.Horng
· 6 years ago
7e4237f
selinux: cleanup dentry and inodes on error in selinuxfs
by nixiaoming
· 6 years ago
c5f5aee
Merge git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux
by Herbert Xu
· 6 years ago
df6b4e6
Merge branch 'smack-for-4.19-a' of https://github.com/cschaufler/next-smack into next-smack
by James Morris
· 6 years ago
ec403d8
ima: Get rid of ima_used_chip and use ima_tpm_chip != NULL instead
by Stefan Berger
· 6 years ago
5c2a640
ima: Use tpm_default_chip() and call TPM functions with a tpm_chip
by Stefan Berger
· 6 years ago
32a4f5e
net: sched: introduce chain object to uapi
by Jiri Pirko
· 6 years ago
d66a8ac
Smack: Inform peer that IPv6 traffic has been blocked
by Piotr Sawicki
· 6 years ago
a07ef95
Smack: Check UDP-Lite and DCCP protocols during IPv6 handling
by Piotr Sawicki
· 6 years ago
129a998
Smack: Fix handling of IPv4 traffic received by PF_INET6 sockets
by Piotr Sawicki
· 6 years ago
3dd0f18
EVM: fix return value check in evm_write_xattrs()
by Wei Yongjun
· 6 years ago
24b87a1
apparmor: Fix failure to audit context info in build_change_hat
by John Johansen
· 6 years ago
f4585bc
apparmor: Fully initialize aa_perms struct when answering userspace query
by Tyler Hicks
· 6 years ago
7f3ebcf
apparmor: Check buffer bounds when mapping permissions mask
by Tyler Hicks
· 6 years ago
7757d60
x86/pti: Allow CONFIG_PAGE_TABLE_ISOLATION for x86_32
by Joerg Roedel
· 6 years ago
6eb864c
integrity: prevent deadlock during digsig verification.
by Mikhail Kurinnoi
· 6 years ago
5feeb61
evm: Allow non-SHA1 digital signatures
by Matthew Garrett
· 6 years ago
e2861fa
evm: Don't deadlock if a crypto algorithm is unavailable
by Matthew Garrett
· 6 years ago
ac2409a
integrity: silence warning when CONFIG_SECURITYFS is not enabled
by Sudeep Holla
· 6 years ago
dba31ee
ima: Differentiate auditing policy rules from "audit" actions
by Stefan Berger
· 6 years ago
2afd020
ima: Do not audit if CONFIG_INTEGRITY_AUDIT is not set
by Stefan Berger
· 6 years ago
3d2859d
ima: Use audit_log_format() rather than audit_log_string()
by Stefan Berger
· 6 years ago
8a3bcaf
ima: Call audit_log_string() rather than logging it untrusted
by Stefan Berger
· 6 years ago
87ea584
security: check for kstrdup() failure in lsm_append()
by Eric Biggers
· 6 years ago
83a68a0
security: export security_kernel_load_data function
by Arnd Bergmann
· 6 years ago
631d2b4
selinux: constify write_op[]
by Eric Biggers
· 6 years ago
c417fbc
kbuild: move bin2c back to scripts/ from scripts/basic/
by Masahiro Yamada
· 6 years ago
4f0496d
ima: based on policy warn about loading firmware (pre-allocated buffer)
by Mimi Zohar
· 6 years ago
c77b8cd
module: replace the existing LSM hook in init_module
by Mimi Zohar
· 6 years ago
ef96837
ima: add build time policy
by Mimi Zohar
· 6 years ago
fed2512
ima: based on policy require signed firmware (sysfs fallback)
by Mimi Zohar
· 6 years ago
16c267a
ima: based on policy require signed kexec kernel images
by Mimi Zohar
· 6 years ago
377179c
security: define new LSM hook named security_kernel_load_data
by Mimi Zohar
· 6 years ago
6035a27
IMA: don't propagate opened through the entire thing
by Al Viro
· 6 years ago
Next »