summaryrefslogtreecommitdiffstats
path: root/security (follow)
Commit message (Expand)AuthorAgeFilesLines
* KEYS: Add KEYCTL_RESTRICT_KEYRINGMat Martineau2017-04-044-0/+170
* KEYS: Consistent ordering for __key_link_begin and restrict checkMat Martineau2017-04-041-11/+13
* KEYS: Use structure to capture key restriction function and dataMat Martineau2017-04-046-16/+108
* KEYS: Split role of the keyring pointer for keyring restrict functionsMat Martineau2017-04-032-4/+7
* KEYS: Use a typedef for restrict_link function pointersMat Martineau2017-04-032-9/+3
* security, keys: convert key_user.usage from atomic_t to refcount_tElena Reshetova2017-04-034-6/+7
* security, keys: convert key.usage from atomic_t to refcount_tElena Reshetova2017-04-035-10/+10
* TOMOYO: Use designated initializersKees Cook2017-03-302-16/+16
* LSM: Revive security_task_alloc() hook and per "struct task_struct" security ...Tetsuo Handa2017-03-281-0/+5
* LSM: Initialize security_hook_heads upon registration.Tetsuo Handa2017-03-241-354/+7
* security: mark LSM hooks as __ro_after_initJames Morris2017-03-068-8/+8
* security: introduce CONFIG_SECURITY_WRITABLE_HOOKSJames Morris2017-03-062-0/+11
* selinux: fix kernel BUG on prlimit(..., NULL, NULL)Stephen Smalley2017-03-061-0/+2
* prlimit,security,selinux: add a security hook for prlimitStephen Smalley2017-03-063-1/+23
* Merge branch 'WIP.sched-core-for-linus' of git://git.kernel.org/pub/scm/linux...Linus Torvalds2017-03-0310-1/+18
|\
| * sched/headers: Prepare to remove the <linux/magic.h> include from <linux/sche...Ingo Molnar2017-03-021-0/+2
| * sched/headers: Prepare to use <linux/rcuupdate.h> instead of <linux/rculist.h...Ingo Molnar2017-03-024-0/+7
| * sched/headers: Prepare for new header dependencies before moving code to <lin...Ingo Molnar2017-03-022-0/+2
| * sched/headers: Prepare to remove <linux/cred.h> inclusion from <linux/sched.h>Ingo Molnar2017-03-024-0/+5
| * sched/headers: Prepare for new header dependencies before moving code to <lin...Ingo Molnar2017-03-021-0/+1
| * sched/headers: Prepare for new header dependencies before moving code to <lin...Ingo Molnar2017-03-021-1/+1
* | selinux: wrap cgroup seclabel support with its own policy capabilityStephen Smalley2017-03-024-4/+12
* | KEYS: Differentiate uses of rcu_dereference_key() and user_key_payload()David Howells2017-03-024-8/+8
|/
* lib/vsprintf.c: remove %Z supportAlexey Dobriyan2017-02-282-2/+2
* mm, fs: reduce fault, page_mkwrite, and pfn_mkwrite to take only vmfDave Jiang2017-02-251-3/+2
* Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebi...Linus Torvalds2017-02-244-6/+6
|\
| * exec: Remove LSM_UNSAFE_PTRACE_CAPEric W. Biederman2017-01-244-5/+4
| * exec: Test the ptracer's saved cred to see if the tracee can gain capsEric W. Biederman2017-01-241-1/+2
| * exec: Don't reset euid and egid when the tracee has CAP_SETUIDEric W. Biederman2017-01-241-1/+1
* | Merge tag 'driver-core-4.11-rc1' of git://git.kernel.org/pub/scm/linux/kernel...Linus Torvalds2017-02-222-3/+39
|\ \
| * | Introduce STATIC_USERMODEHELPER to mediate call_usermodehelper()Greg Kroah-Hartman2017-01-191-0/+35
| * | Make static usermode helper binaries constantGreg Kroah-Hartman2017-01-191-3/+4
| |/
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-nextLinus Torvalds2017-02-222-3/+8
|\ \
| * \ Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2017-02-111-1/+1
| |\ \
| * | | Introduce a sysctl that modifies the value of PROT_SOCK.Krister Johansen2017-01-241-1/+2
| | |/ | |/|
* | | Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...Linus Torvalds2017-02-2154-1839/+3314
|\ \ \
| * | | KEYS: Use memzero_explicit() for secret dataDan Carpenter2017-02-101-1/+1
| * | | KEYS: Fix an error code in request_master_key()Dan Carpenter2017-02-101-1/+1
| * | | Merge branch 'stable-4.11' of git://git.infradead.org/users/pcmoore/selinux i...James Morris2017-02-109-276/+327
| |\ \ \
| | * | | selinux: allow changing labels for cgroupfsAntonio Murdaca2017-02-081-0/+2
| | * | | security,selinux,smack: kill security_task_wait hookStephen Smalley2017-01-123-33/+0
| | * | | selinux: drop unused socket security classesStephen Smalley2017-01-122-12/+0
| | * | | selinux: default to security isid in sel_make_bools() if no sid is foundGary Tierney2017-01-091-3/+3
| | * | | selinux: log errors when loading new policyGary Tierney2017-01-091-5/+16
| | * | | proc,security: move restriction on writing /proc/pid/attr nodes to procStephen Smalley2017-01-094-29/+6
| | * | | selinux: clean up cred usage and simplifyStephen Smalley2017-01-093-211/+166
| | * | | selinux: allow context mounts on tmpfs, ramfs, devpts within user namespacesStephen Smalley2017-01-091-3/+7
| | * | | selinux: handle ICMPv6 consistently with ICMPStephen Smalley2017-01-091-1/+2
| | * | | selinux: add security in-core xattr support for tracefsYongqin Liu2017-01-091-0/+1
| | * | | selinux: support distinctions among all network address familiesStephen Smalley2017-01-095-2/+147
| | |/ /