summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)Author
2018-08-13Merge branch 'work.open3' of git://git.kernel.org/pub/scm/linux/kernel/git/vi...Linus Torvalds
2018-08-11cap_inode_getsecurity: use d_find_any_alias() instead of d_find_alias()Eddie.Horng
2018-08-07selinux: cleanup dentry and inodes on error in selinuxfsnixiaoming
2018-08-03Merge git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linuxHerbert Xu
2018-07-30Merge branch 'smack-for-4.19-a' of https://github.com/cschaufler/next-smack i...James Morris
2018-07-28ima: Get rid of ima_used_chip and use ima_tpm_chip != NULL insteadStefan Berger
2018-07-28ima: Use tpm_default_chip() and call TPM functions with a tpm_chipStefan Berger
2018-07-23net: sched: introduce chain object to uapiJiri Pirko
2018-07-23Smack: Inform peer that IPv6 traffic has been blockedPiotr Sawicki
2018-07-23Smack: Check UDP-Lite and DCCP protocols during IPv6 handlingPiotr Sawicki
2018-07-23Smack: Fix handling of IPv4 traffic received by PF_INET6 socketsPiotr Sawicki
2018-07-22EVM: fix return value check in evm_write_xattrs()Wei Yongjun
2018-07-20apparmor: Fix failure to audit context info in build_change_hatJohn Johansen
2018-07-19apparmor: Fully initialize aa_perms struct when answering userspace queryTyler Hicks
2018-07-19apparmor: Check buffer bounds when mapping permissions maskTyler Hicks
2018-07-20x86/pti: Allow CONFIG_PAGE_TABLE_ISOLATION for x86_32Joerg Roedel
2018-07-18integrity: prevent deadlock during digsig verification.Mikhail Kurinnoi
2018-07-18evm: Allow non-SHA1 digital signaturesMatthew Garrett
2018-07-18evm: Don't deadlock if a crypto algorithm is unavailableMatthew Garrett
2018-07-18integrity: silence warning when CONFIG_SECURITYFS is not enabledSudeep Holla
2018-07-18ima: Differentiate auditing policy rules from "audit" actionsStefan Berger
2018-07-18ima: Do not audit if CONFIG_INTEGRITY_AUDIT is not setStefan Berger
2018-07-18ima: Use audit_log_format() rather than audit_log_string()Stefan Berger
2018-07-18ima: Call audit_log_string() rather than logging it untrustedStefan Berger
2018-07-17security: check for kstrdup() failure in lsm_append()Eric Biggers
2018-07-17security: export security_kernel_load_data functionArnd Bergmann
2018-07-17selinux: constify write_op[]Eric Biggers
2018-07-18kbuild: move bin2c back to scripts/ from scripts/basic/Masahiro Yamada
2018-07-16ima: based on policy warn about loading firmware (pre-allocated buffer)Mimi Zohar
2018-07-16module: replace the existing LSM hook in init_moduleMimi Zohar
2018-07-16ima: add build time policyMimi Zohar
2018-07-16ima: based on policy require signed firmware (sysfs fallback)Mimi Zohar
2018-07-16ima: based on policy require signed kexec kernel imagesMimi Zohar
2018-07-16security: define new LSM hook named security_kernel_load_dataMimi Zohar
2018-07-12IMA: don't propagate opened through the entire thingAl Viro
2018-07-12->file_open(): lose cred argumentAl Viro
2018-07-12security_file_open(): lose cred argumentAl Viro
2018-07-09crypto: remove redundant type flags from tfm allocationEric Biggers
2018-07-02usercopy: Do not select BUG with HARDENED_USERCOPYKamal Mostafa
2018-06-30Merge tag 'selinux-pr-20180629' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds
2018-06-28selinux: move user accesses in selinuxfs out of locked regionsJann Horn
2018-06-26dh key: fix rounding up KDF output lengthEric Biggers
2018-06-23Smack: Mark inode instant in smack_task_to_inodeCasey Schaufler
2018-06-19selinux: Cleanup printk logging in netnodepeter enderborg
2018-06-19selinux: Cleanup printk logging in avcpeter enderborg
2018-06-19selinux: Cleanup printk logging in netifpeter enderborg
2018-06-19selinux: Cleanup printk logging in netportpeter enderborg
2018-06-19selinux: Cleanup printk logging in sidtabpeter enderborg
2018-06-19selinux: Cleanup printk logging in netlinkpeter enderborg
2018-06-19selinux: Cleanup printk logging in selinuxfspeter enderborg