| Commit message (Expand) | Author | Age | Files | Lines |
* | treewide: Fix function prototypes for module_param_call() | Kees Cook | 2017-10-31 | 1 | -8/+8 |
* | lsm: fix smack_inode_removexattr and xattr_getsecurity memleak | Casey Schaufler | 2017-10-04 | 1 | -30/+25 |
* | Merge commit 'keys-fixes-20170927' into fixes-v4.14-rc3 | James Morris | 2017-09-28 | 9 | -152/+137 |
|\ |
|
| * | security/keys: rewrite all of big_key crypto | Jason A. Donenfeld | 2017-09-26 | 2 | -71/+60 |
| * | security/keys: properly zero out sensitive key material in big_key | Jason A. Donenfeld | 2017-09-26 | 1 | -6/+6 |
| * | KEYS: use kmemdup() in request_key_auth_new() | Eric Biggers | 2017-09-25 | 1 | -3/+2 |
| * | KEYS: restrict /proc/keys by credentials at open time | Eric Biggers | 2017-09-25 | 1 | -6/+2 |
| * | KEYS: reset parent each time before searching key_user_tree | Eric Biggers | 2017-09-25 | 1 | -2/+2 |
| * | KEYS: prevent KEYCTL_READ on negative key | Eric Biggers | 2017-09-25 | 1 | -0/+5 |
| * | KEYS: prevent creating a different user's keyrings | Eric Biggers | 2017-09-25 | 4 | -12/+21 |
| * | KEYS: fix writing past end of user-supplied buffer in keyring_read() | Eric Biggers | 2017-09-25 | 1 | -9/+5 |
| * | KEYS: fix key refcount leak in keyctl_read_key() | Eric Biggers | 2017-09-25 | 1 | -1/+1 |
| * | KEYS: fix key refcount leak in keyctl_assume_authority() | Eric Biggers | 2017-09-25 | 1 | -4/+2 |
| * | KEYS: don't revoke uninstantiated key in request_key_auth_new() | Eric Biggers | 2017-09-25 | 1 | -1/+0 |
| * | KEYS: fix cred refcount leak in request_key_auth_new() | Eric Biggers | 2017-09-25 | 1 | -37/+31 |
* | | Merge branch 'next-general' of git://git.kernel.org/pub/scm/linux/kernel/git/... | Linus Torvalds | 2017-09-24 | 1 | -3/+3 |
|\ \ |
|
| * | | security: fix description of values returned by cap_inode_need_killpriv | Stefan Berger | 2017-09-24 | 1 | -3/+3 |
* | | | Merge tag 'apparmor-pr-2017-09-22' of git://git.kernel.org/pub/scm/linux/kern... | Linus Torvalds | 2017-09-23 | 24 | -137/+2088 |
|\ \ \
| |_|/
|/| | |
|
| * | | apparmor: fix apparmorfs DAC access permissions | John Johansen | 2017-09-22 | 1 | -4/+4 |
| * | | apparmor: fix build failure on sparc caused by undeclared signals | John Johansen | 2017-09-22 | 1 | -1/+4 |
| * | | apparmor: fix incorrect type assignment when freeing proxies | John Johansen | 2017-09-22 | 1 | -1/+1 |
| * | | apparmor: ensure unconfined profiles have dfas initialized | John Johansen | 2017-09-22 | 1 | -0/+2 |
| * | | apparmor: fix race condition in null profile creation | John Johansen | 2017-09-22 | 1 | -3/+11 |
| * | | apparmor: move new_null_profile to after profile lookup fns() | John Johansen | 2017-09-22 | 1 | -79/+79 |
| * | | apparmor: add base infastructure for socket mediation | John Johansen | 2017-09-22 | 12 | -16/+840 |
| * | | apparmor: add more debug asserts to apparmorfs | John Johansen | 2017-09-22 | 1 | -0/+17 |
| * | | apparmor: make policy_unpack able to audit different info messages | John Johansen | 2017-09-22 | 2 | -16/+40 |
| * | | apparmor: add support for absolute root view based labels | John Johansen | 2017-09-22 | 2 | -1/+10 |
| * | | apparmor: cleanup conditional check for label in label_print | John Johansen | 2017-09-22 | 1 | -14/+8 |
| * | | apparmor: add mount mediation | John Johansen | 2017-09-22 | 9 | -4/+841 |
| * | | apparmor: add the ability to mediate signals | John Johansen | 2017-09-22 | 7 | -0/+231 |
| * | | apparmor: Redundant condition: prev_ns. in [label.c:1498] | John Johansen | 2017-09-22 | 1 | -1/+1 |
| * | | apparmor: Fix an error code in aafs_create() | Dan Carpenter | 2017-09-22 | 1 | -1/+3 |
| * | | apparmor: Fix logical error in verify_header() | Christos Gkekas | 2017-09-22 | 1 | -1/+1 |
| * | | apparmor: Fix shadowed local variable in unpack_trans_table() | Geert Uytterhoeven | 2017-09-22 | 1 | -2/+2 |
* | | | Merge branch 'work.set_fs' of git://git.kernel.org/pub/scm/linux/kernel/git/v... | Linus Torvalds | 2017-09-15 | 1 | -2/+4 |
|\ \ \ |
|
| * | | | fs: fix kernel_write prototype | Christoph Hellwig | 2017-09-05 | 1 | -1/+2 |
| * | | | fs: fix kernel_read prototype | Christoph Hellwig | 2017-09-05 | 1 | -1/+2 |
| |/ / |
|
* | | | Merge tag 'selinux-pr-20170831' of git://git.kernel.org/pub/scm/linux/kernel/... | Linus Torvalds | 2017-09-12 | 28 | -56/+78 |
|\ \ \ |
|
| * | | | selinux: constify nf_hook_ops | Arvind Yadav | 2017-08-28 | 1 | -1/+1 |
| * | | | selinux: allow per-file labeling for cgroupfs | Antonio Murdaca | 2017-08-22 | 1 | -1/+3 |
| * | | | lsm_audit: update my email address | Stephen Smalley | 2017-08-17 | 1 | -1/+1 |
| * | | | selinux: update my email address | Stephen Smalley | 2017-08-17 | 25 | -25/+25 |
| * | | | selinux: use GFP_NOWAIT in the AVC kmem_caches | Michal Hocko | 2017-08-08 | 1 | -8/+6 |
| * | | | selinux: Generalize support for NNP/nosuid SELinux domain transitions | Stephen Smalley | 2017-08-02 | 4 | -16/+42 |
| * | | | selinux: Assign proper class to PF_UNIX/SOCK_RAW sockets | Luis Ressel | 2017-07-25 | 1 | -0/+1 |
| | |/
| |/| |
|
| * | | sync to Linus v4.13-rc2 for subsystem developers to work against | James Morris | 2017-07-25 | 24 | -334/+365 |
| |\| |
|
| * | | LSM: Remove security_task_create() hook. | Tetsuo Handa | 2017-07-18 | 1 | -5/+0 |
* | | | Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebi... | Linus Torvalds | 2017-09-12 | 1 | -21/+256 |
|\ \ \ |
|
| * | | | Introduce v3 namespaced file capabilities | Serge E. Hallyn | 2017-09-01 | 1 | -19/+251 |