Gitiles
Code Review
Sign In
gerrit-public.fairphone.software
/
kernel
/
msm
/
4a9a66e9a87a8346129d557c7ec2303173318012
/
security
bcdca22
Smack: update for file capabilities
by Casey Schaufler
· 17 years ago
0949728
file capabilities: simplify signal check
by Serge E. Hallyn
· 17 years ago
4bc87e6
Smack: unlabeled outgoing ambient packets
by Casey Schaufler
· 17 years ago
44707fd
d_path: Use struct path in struct avc_audit_data
by Jan Blunck
· 17 years ago
4ac9137
Embed a struct path into struct nameidata instead of nd->{dentry,mnt}
by Jan Blunck
· 17 years ago
2e1d146
Smack: check for 'struct socket' with NULL sk
by Ahmed S. Darwish
· 17 years ago
b68e418
selinux: support 64-bit capabilities
by Stephen Smalley
· 17 years ago
e231c2e
Convert ERR_PTR(PTR_ERR(p)) instances to ERR_CAST(p)
by David Howells
· 17 years ago
394c675
SELinux: Remove security_get_policycaps()
by Paul Moore
· 17 years ago
a5ecbcb
security: allow Kconfig to set default mmap_min_addr protection
by Eric Paris
· 17 years ago
e114e47
Smack: Simplified Mandatory Access Control Kernel
by Casey Schaufler
· 17 years ago
3b7391d
capabilities: introduce per-process capability bounding set
by Serge E. Hallyn
· 17 years ago
e338d26
Add 64-bit capability support to the kernel
by Andrew Morgan
· 17 years ago
8f6936f
revert "capabilities: clean up file capability reading"
by Andrew Morton
· 17 years ago
4249259
VFS/Security: Rework inode_getsecurity and callers to return resulting buffer
by David P. Quigley
· 17 years ago
4746ec5
[AUDIT] add session id to audit messages
by Eric Paris
· 17 years ago
0c11b94
[PATCH] switch audit_get_loginuid() to task_struct *
by Al Viro
· 17 years ago
e1770d9
[SELinux]: Fix double free in selinux_netlbl_sock_setsid()
by Paul Moore
· 17 years ago
f71ea9d
security: compile capabilities by default
by sergeh@us.ibm.com
· 17 years ago
374ea01
selinux: make selinux_set_mnt_opts() static
by Adrian Bunk
· 17 years ago
71f1cb0
SELinux: Add warning messages on network denial due to error
by Paul Moore
· 17 years ago
effad8d
SELinux: Add network ingress and egress control permission checks
by Paul Moore
· 17 years ago
5dbe1eb
SELinux: Allow NetLabel to directly cache SIDs
by Paul Moore
· 17 years ago
d621d35
SELinux: Enable dynamic enable/disable of the network access checks
by Paul Moore
· 17 years ago
220deb9
SELinux: Better integration between peer labeling subsystems
by Paul Moore
· 17 years ago
f67f4f3
SELinux: Add a new peer class and permissions to the Flask definitions
by Paul Moore
· 17 years ago
3bb56b2
SELinux: Add a capabilities bitmap to SELinux policy version 22
by Paul Moore
· 17 years ago
224dfbd
SELinux: Add a network node caching mechanism similar to the sel_netif_*() functions
by Paul Moore
· 17 years ago
da5645a
SELinux: Only store the network interface's ifindex
by Paul Moore
· 17 years ago
e8bfdb9
SELinux: Convert the netif code to use ifindex values
by Paul Moore
· 17 years ago
75e2291
NetLabel: Add IP address family information to the netlbl_skbuff_getattr() function
by Paul Moore
· 17 years ago
16efd45
NetLabel: Add secid token support to the NetLabel secattr struct
by Paul Moore
· 17 years ago
6e23ae2
[NETFILTER]: Introduce NF_INET_ hook values
by Patrick McHardy
· 17 years ago
b1aa530
selinux: fix labeling of /proc/net inodes
by Stephen Smalley
· 17 years ago
b47711b
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/selinux-2.6
by Linus Torvalds
· 17 years ago
78a2d90
Kobject: convert remaining kobject_unregister() to kobject_put()
by Greg Kroah-Hartman
· 17 years ago
0ff21e4
kobject: convert kernel_kset to be a kobject
by Greg Kroah-Hartman
· 17 years ago
bd35b93
kset: convert kernel_subsys to use kset_create
by Greg Kroah-Hartman
· 17 years ago
69d8e13
kobject: convert securityfs to use kobject_create
by Greg Kroah-Hartman
· 17 years ago
3514fac
kobject: remove struct kobj_type from struct kset
by Greg Kroah-Hartman
· 17 years ago
2e08c0c
selinux: make mls_compute_sid always polyinstantiate
by Eamon Walsh
· 17 years ago
1996a10
security/selinux: constify function pointer tables and fields
by Jan Engelhardt
· 17 years ago
63cb344
security: add a secctx_to_secid() hook
by David Howells
· 17 years ago
bced952
security: remove security_sb_post_mountroot hook
by H. Peter Anvin
· 17 years ago
c9180a5
Security: add get, set, and cloning of superblock security information
by Eric Paris
· 17 years ago
19c5fc1
security/selinux: Add missing "space"
by Joe Perches
· 17 years ago
8b85eaa
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/selinux-2.6
by Linus Torvalds
· 17 years ago
a6dbb1e
Fix filesystem capability support
by Andrew G. Morgan
· 17 years ago
45c950e
selinux: fix memory leak in netlabel code
by Paul Moore
· 17 years ago
ab5a91a
Security: allow capable check to permit mmap or low vm space
by Eric Paris
· 17 years ago
d313f94
SELinux: detect dead booleans
by Stephen Smalley
· 17 years ago
0955dc0
SELinux: do not clear f_op when removing entries
by Stephen Smalley
· 17 years ago
8ec2328
file capabilities: don't prevent signaling setuid root programs
by Serge E. Hallyn
· 17 years ago
91ad997
file capabilities: allow sigcont within session
by Serge E. Hallyn
· 17 years ago
45e5421
SELinux: add more validity checks on policy load
by Stephen Smalley
· 17 years ago
6d2b685
SELinux: fix bug in new ebitmap code.
by KaiGai Kohei
· 17 years ago
57002bf
SELinux: suppress a warning for 64k pages.
by Stephen Rothwell
· 17 years ago
48d2268
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/selinux-2.6
by Linus Torvalds
· 17 years ago
8a53514
SELinux: always check SIGCHLD in selinux_task_wait
by Eric Paris
· 17 years ago
b68680e
capabilities: clean up file capability reading
by Serge E. Hallyn
· 17 years ago
b460cbc
pid namespaces: define is_global_init() and is_container_init()
by Serge E. Hallyn
· 17 years ago
c80544d
sparse pointer use of zero as null
by Stephen Hemminger
· 17 years ago
72c2d58
V3 file capabilities: alter behavior of cap_setpcap
by Andrew Morgan
· 17 years ago
cbfee34
security/ cleanups
by Adrian Bunk
· 17 years ago
b537677
Implement file posix capabilities
by Serge E. Hallyn
· 17 years ago
20510f2
security: Convert LSM into a static interface
by James Morris
· 17 years ago
76181c1
KEYS: Make request_key() and co fundamentally asynchronous
by David Howells
· 17 years ago
087feb9
SELinux: kills warnings in Improve SELinux performance when AVC misses
by KaiGai Kohei
· 17 years ago
9fe79ad
SELinux: improve performance when AVC misses.
by KaiGai Kohei
· 17 years ago
3f12070
SELinux: policy selectable handling of unknown classes and perms
by Eric Paris
· 17 years ago
788e7dd
SELinux: Improve read/write performance
by Yuichi Nakamura
· 17 years ago
3232c11
SELinux: tune avtab to reduce memory usage
by Yuichi Nakamura
· 17 years ago
a224be7
[SELINUX]: Update for netfilter ->hook() arg changes.
by David S. Miller
· 17 years ago
227b60f
[INET]: local port range robustness
by Stephen Hemminger
· 17 years ago
b4b5102
[NET]: Support multiple network namespaces with netlink
by Eric W. Biederman
· 17 years ago
e9dc865
[NET]: Make device event notification network namespace safe
by Eric W. Biederman
· 17 years ago
31e8793
SELinux: fix array out of bounds when mounting with selinux options
by Eric Paris
· 17 years ago
4ac212a
SELinux: clear parent death signal on SID transitions
by Stephen Smalley
· 17 years ago
34b4e4a
fix NULL pointer dereference in __vm_enough_memory()
by Alan Cox
· 17 years ago
3ad40d6
SELinux: correct error code in selinux_audit_rule_init
by Steve G
· 17 years ago
088999e
SELinux: remove redundant pointer checks before calling kfree()
by Paul Moore
· 17 years ago
9534f71
SELinux: restore proper NetLabel caching behavior
by Paul Moore
· 17 years ago
d133a96
Typo fixes errror -> error
by Gabriel Craciunescu
· 17 years ago
910949a
SELinux: null-terminate context string in selinux_xfrm_sec_ctx_alloc
by Venkat Yekkirala
· 17 years ago
0ec8abd
SELinux: fix memory leak in security_netlbl_cache_add()
by Jesper Juhl
· 17 years ago
4259fa0
[PATCH] get rid of AVC_PATH postponed treatment
by Al Viro
· 17 years ago
20c2df8
mm: Remove slab destructors from kmem_cache_create().
by Paul Mundt
· 17 years ago
721e262
Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/selinux-2.6
by Linus Torvalds
· 17 years ago
6c5d523
coredump masking: reimplementation of dumpable using two flags
by Kawai, Hidehiro
· 17 years ago
f36158c
SELinux: use SECINITSID_NETMSG instead of SECINITSID_UNLABELED for NetLabel
by Paul Moore
· 17 years ago
23bcdc1
SELinux: enable dynamic activation/deactivation of NetLabel/SELinux enforcement
by Paul Moore
· 17 years ago
86313c4
usermodehelper: Tidy up waiting
by Jeremy Fitzhardinge
· 17 years ago
3bd858a
Introduce is_owner_or_cap() to wrap CAP_FOWNER use with fsuid check
by Satyam Sharma
· 17 years ago
522ed77
Audit: add TTY input auditing
by Miloslav Trmac
· 17 years ago
8d9107e
Revert "SELinux: use SECINITSID_NETMSG instead of SECINITSID_UNLABELED for NetLabel"
by Linus Torvalds
· 17 years ago
d4cf291
security: unexport mmap_min_addr
by Adrian Bunk
· 17 years ago
9faf65f
SELinux: use SECINITSID_NETMSG instead of SECINITSID_UNLABELED for NetLabel
by Paul Moore
· 17 years ago
ed03218
security: Protection for exploiting null dereference using mmap
by Eric Paris
· 17 years ago
13bddc2
SELinux: Use %lu for inode->i_no when printing avc
by Tobias Oed
· 17 years ago
2c3c05d
SELinux: allow preemption between transition permission checks
by Stephen Smalley
· 17 years ago
Next »