Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm-5.4
/
ec233ede4c8654894610ea54f4dae7adc954ac62
/
security
a302824
Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 7 years ago
ab5348c
security: fix description of values returned by cap_inode_need_killpriv
by Stefan Berger
· 7 years ago
79444df
Merge tag 'apparmor-pr-2017-09-22' of git://git.kernel.org/pub/scm/linux/kernel/git/jj/linux-apparmor
by Linus Torvalds
· 7 years ago
bf81100
apparmor: fix apparmorfs DAC access permissions
by John Johansen
· 7 years ago
b1545db
apparmor: fix build failure on sparc caused by undeclared signals
by John Johansen
· 7 years ago
bc4d82f
apparmor: fix incorrect type assignment when freeing proxies
by John Johansen
· 7 years ago
15372b9
apparmor: ensure unconfined profiles have dfas initialized
by John Johansen
· 7 years ago
290638a
apparmor: fix race condition in null profile creation
by John Johansen
· 7 years ago
d07881d
apparmor: move new_null_profile to after profile lookup fns()
by John Johansen
· 7 years ago
651e28c
apparmor: add base infastructure for socket mediation
by John Johansen
· 7 years ago
cbf2d0e
apparmor: add more debug asserts to apparmorfs
by John Johansen
· 7 years ago
2410aa9
apparmor: make policy_unpack able to audit different info messages
by John Johansen
· 7 years ago
26b7899
apparmor: add support for absolute root view based labels
by John Johansen
· 7 years ago
f872af75
apparmor: cleanup conditional check for label in label_print
by John Johansen
· 7 years ago
2ea3ffb
apparmor: add mount mediation
by John Johansen
· 7 years ago
cd1dbf7
apparmor: add the ability to mediate signals
by John Johansen
· 7 years ago
c556170
apparmor: Redundant condition: prev_ns. in [label.c:1498]
by John Johansen
· 7 years ago
5d314a8
apparmor: Fix an error code in aafs_create()
by Dan Carpenter
· 7 years ago
86aea56
apparmor: Fix logical error in verify_header()
by Christos Gkekas
· 7 years ago
19fe43a
apparmor: Fix shadowed local variable in unpack_trans_table()
by Geert Uytterhoeven
· 7 years ago
581bfce
Merge branch 'work.set_fs' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 7 years ago
7f85565
Merge tag 'selinux-pr-20170831' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux
by Linus Torvalds
· 7 years ago
dd198ce
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace
by Linus Torvalds
· 7 years ago
0fb02e71
Merge tag 'audit-pr-20170907' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit
by Linus Torvalds
· 7 years ago
828f425
Merge tag 'secureexec-v4.14-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/kees/linux
by Linus Torvalds
· 7 years ago
1912834
selinux: remove AVC init audit log message
by Richard Guy Briggs
· 7 years ago
e13ec93
fs: fix kernel_write prototype
by Christoph Hellwig
· 7 years ago
bdd1d2d
fs: fix kernel_read prototype
by Christoph Hellwig
· 7 years ago
8db6c34
Introduce v3 namespaced file capabilities
by Serge E. Hallyn
· 8 years ago
0c3014f
selinux: constify nf_hook_ops
by Arvind Yadav
· 7 years ago
901ef84
selinux: allow per-file labeling for cgroupfs
by Antonio Murdaca
· 8 years ago
5d72801
lsm_audit: update my email address
by Stephen Smalley
· 7 years ago
7efbb60
selinux: update my email address
by Stephen Smalley
· 7 years ago
476accb
selinux: use GFP_NOWAIT in the AVC kmem_caches
by Michal Hocko
· 7 years ago
af63f41
selinux: Generalize support for NNP/nosuid SELinux domain transitions
by Stephen Smalley
· 7 years ago
35b372b
smack: Remove redundant pdeath_signal clearing
by Kees Cook
· 7 years ago
2af6228
LSM: drop bprm_secureexec hook
by Kees Cook
· 7 years ago
ee67ae7
commoncap: Move cap_elevated calculation into bprm_set_creds
by Kees Cook
· 7 years ago
46d98eb
commoncap: Refactor to remove bprm_secureexec hook
by Kees Cook
· 7 years ago
ccbb6e1
smack: Refactor to remove bprm_secureexec hook
by Kees Cook
· 7 years ago
62874c3
selinux: Refactor to remove bprm_secureexec hook
by Kees Cook
· 7 years ago
993b3ab
apparmor: Refactor to remove bprm_secureexec hook
by Kees Cook
· 7 years ago
ddb4a14
exec: Rename bprm->cred_prepared to called_set_creds
by Kees Cook
· 7 years ago
591bb27
netfilter: nf_hook_ops structs can be const
by Florian Westphal
· 7 years ago
2a764b5
selinux: Assign proper class to PF_UNIX/SOCK_RAW sockets
by Luis Ressel
· 7 years ago
53a2eba
sync to Linus v4.13-rc2 for subsystem developers to work against
by James Morris
· 7 years ago
7a68ada
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
by David S. Miller
· 7 years ago
64db4c7
security: Use user_namespace::level to avoid redundant iterations in cap_capable()
by Kirill Tkhai
· 8 years ago
e06fdaf
Merge tag 'gcc-plugins-v4.13-rc2' of git://git.kernel.org/pub/scm/linux/kernel/git/kees/linux
by Linus Torvalds
· 7 years ago
09c7570
xfrm: remove flow cache
by Florian Westphal
· 7 years ago
3cf2993
LSM: Remove security_task_create() hook.
by Tetsuo Handa
· 7 years ago
4f9dabf
KEYS: DH: validate __spare field
by Eric Biggers
· 7 years ago
6974f0c
include/linux/string.h: add the option of fortified string.h functions
by Daniel Micay
· 7 years ago
7114f51
Merge branch 'work.memdup_user' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs
by Linus Torvalds
· 7 years ago
5518b69
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
by Linus Torvalds
· 7 years ago
e24dd9e
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security
by Linus Torvalds
· 7 years ago
650fc87
Merge tag 'docs-4.13' of git://git.lwn.net/linux
by Linus Torvalds
· 7 years ago
9bd4218
Merge branch 'sched-core-for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip
by Linus Torvalds
· 7 years ago
81e3e04
Merge tag 'uuid-for-4.13' of git://git.infradead.org/users/hch/uuid
by Linus Torvalds
· 7 years ago
3859a27
randstruct: Mark various structs for randomization
by Kees Cook
· 8 years ago
02412e9
ima_write_policy(): don't open-code memdup_user_nul()
by Al Viro
· 8 years ago
c4758fa
apparmor: put back designators in struct initialisers
by Stephen Rothwell
· 7 years ago
5965453
Merge branch 'stable-4.13' of git://git.infradead.org/users/pcmoore/selinux into next
by James Morris
· 7 years ago
3d09198
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
by David S. Miller
· 7 years ago
915d9d2
ima: Log the same audit cause whenever a file has no signature
by Thiago Jung Bauermann
· 7 years ago
2663218
ima: Simplify policy_func_show.
by Thiago Jung Bauermann
· 7 years ago
bb543e3
integrity: Small code improvements
by Thiago Jung Bauermann
· 7 years ago
e4586c79
ima: fix get_binary_runtime_size()
by Roberto Sassu
· 8 years ago
28a8dc4
ima: use ima_parse_buf() to parse template data
by Roberto Sassu
· 8 years ago
47fdee6
ima: use ima_parse_buf() to parse measurements headers
by Roberto Sassu
· 8 years ago
b17fd9e
ima: introduce ima_parse_buf()
by Roberto Sassu
· 8 years ago
82e3bb4
ima: Add cgroups2 to the defaults list
by Laura Abbott
· 8 years ago
b4e2803
ima: use memdup_user_nul
by Geliang Tang
· 8 years ago
5d659f2
ima: fix up #endif comments
by Tycho Andersen
· 8 years ago
38d1926
IMA: Correct Kconfig dependencies for hash selection
by Ben Hutchings
· 8 years ago
6f6723e
ima: define is_ima_appraise_enabled()
by Mimi Zohar
· 8 years ago
e1f5e01
ima: define Kconfig IMA_APPRAISE_BOOTPARAM option
by Mimi Zohar
· 8 years ago
503ceae
ima: define a set of appraisal rules requiring file signatures
by Mimi Zohar
· 8 years ago
33ce954
ima: extend the "ima_policy" boot command line to support multiple policies
by Mimi Zohar
· 8 years ago
94df30a
rtnetlink: add NEWCACHEREPORT message type
by Julien Gomes
· 7 years ago
cdac74d
Merge branch 'smack-for-4.13' of git://github.com/cschaufler/smack-next into next
by James Morris
· 7 years ago
6a39118
selinux: enable genfscon labeling for tracefs
by Jeff Vander Stoep
· 7 years ago
5dd43ce
sched/wait: Split out the wait_bit*() APIs from <linux/wait.h> into <linux/wait_bit.h>
by Ingo Molnar
· 7 years ago
023f108
selinux: fix double free in selinux_parse_opts_str()
by Paul Moore
· 7 years ago
33f2ead
apparmor: export that basic profile namespaces are supported
by John Johansen
· 7 years ago
6c5fc8f
apparmor: add stacked domain labels interface
by John Johansen
· 7 years ago
40cde7f
apparmor: add domain label stacking info to apparmorfs
by John Johansen
· 7 years ago
e00b02bb
apparmor: move change_profile mediation to using labels
by John Johansen
· 7 years ago
89dbf19
apparmor: move change_hat mediation to using labels
by John Johansen
· 7 years ago
93c98a4
apparmor: move exec domain mediation to using labels
by John Johansen
· 7 years ago
5379a33
apparmor: support v7 transition format compatible with label_parse
by John Johansen
· 7 years ago
064dc94
apparmor: mediate files when they are received
by John Johansen
· 7 years ago
496c931
apparmor: rework file permission to cache file access in file->ctx
by John Johansen
· 7 years ago
8014370
apparmor: move path_link mediation to using labels
by John Johansen
· 7 years ago
aebd873
apparmor: refactor path name lookup and permission checks around labels
by John Johansen
· 7 years ago
98c3d18
apparmor: update aa_audit_file() to use labels
by John Johansen
· 7 years ago
190a951
apparmor: move aa_file_perm() to use labels
by John Johansen
· 7 years ago
290f458
apparmor: allow ptrace checks to be finer grained than just capability
by John Johansen
· 7 years ago
b2d09ae
apparmor: move ptrace checks to using labels
by John Johansen
· 7 years ago
ca916e8
apparmor: add cross check permission helper macros
by John Johansen
· 7 years ago
Next »