summaryrefslogtreecommitdiffstats
path: root/security (follow)
Commit message (Expand)AuthorAgeFilesLines
* security: pass asoc to sctp_assoc_request and sctp_sk_cloneXin Long2021-11-034-26/+26
* Merge tag 'audit-pr-20211101' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds2021-11-021-1/+1
|\
| * lsm_audit: avoid overloading the "key" audit fieldOndrej Mosnacek2021-09-201-1/+1
* | Merge tag 'selinux-pr-20211101' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2021-11-0210-255/+272
|\ \
| * | security: Return xattr name from security_dentry_init_security()Vivek Goyal2021-10-202-4/+9
| * | selinux: fix a sock regression in selinux_ip_postroute_compat()Paul Moore2021-10-191-2/+2
| * | binder: use cred instead of task for selinux checksTodd Kjos2021-10-152-42/+20
| * | LSM: Avoid warnings about potentially unused hook variablesKees Cook2021-10-141-1/+1
| * | selinux: fix all of the W=1 build warningsPaul Moore2021-10-136-8/+33
| * | selinux: make better use of the nf_hook_state passed to the NF hooksPaul Moore2021-10-131-27/+25
| * | selinux: fix race condition when computing ocontext SIDsOndrej Mosnacek2021-10-121-85/+77
| * | selinux: remove unneeded ipv6 hook wrappersFlorian Westphal2021-10-111-62/+18
| * | selinux: remove the SELinux lockdown implementationPaul Moore2021-09-302-32/+0
| * | selinux: enable genfscon labeling for securityfsChristian Göttsche2021-09-291-1/+2
| * | Smack: Brutalist io_uring supportCasey Schaufler2021-09-201-0/+46
| * | selinux: add support for the io_uring access controlsPaul Moore2021-09-202-0/+36
| * | lsm,io_uring: add LSM hooks to io_uringPaul Moore2021-09-201-0/+12
| |/
* | Merge tag 'Smack-for-5.16' of https://github.com/cschaufler/smack-nextLinus Torvalds2021-11-023-44/+34
|\ \
| * | smackfs: use netlbl_cfg_cipsov4_del() for deleting cipso_v4_doiTetsuo Handa2021-10-221-1/+1
| * | smackfs: use __GFP_NOFAIL for smk_cipso_doi()Tetsuo Handa2021-10-221-3/+1
| * | Smack: fix W=1 build warningsCasey Schaufler2021-10-131-12/+18
| * | smack: remove duplicated hook functionFlorian Westphal2021-10-121-23/+3
| * | Smack:- Use overlay inode label in smack_inode_copy_up()Vishal Goel2021-09-281-1/+1
| * | smack: Guard smack_ipv6_lock definition within a SMACK_IPV6_PORT_LABELING blockSebastian Andrzej Siewior2021-09-241-3/+6
| * | smackfs: Fix use-after-free in netlbl_catmap_walk()Pawan Gupta2021-09-161-1/+4
| |/
* | Merge tag 'overflow-v5.16-rc1' of git://git.kernel.org/pub/scm/linux/kernel/g...Linus Torvalds2021-11-021-0/+3
|\ \
| * | fortify: Explicitly disable Clang supportKees Cook2021-09-251-0/+3
| |/
* | Merge tag 'hardening-v5.16-rc1' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2021-11-021-4/+10
|\ \
| * | gcc-plugins: Explicitly document purpose and deprecation scheduleKees Cook2021-10-211-3/+6
| * | hardening: Avoid harmless Clang option under CONFIG_INIT_STACK_ALL_ZEROKees Cook2021-09-251-1/+4
| |/
* | Merge branch 'ucount-fixes-for-v5.15' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds2021-10-221-0/+8
|\ \
| * | ucounts: Move get_ucounts from cred_alloc_blank to key_change_session_keyringEric W. Biederman2021-10-201-0/+8
* | | Merge branch 'master' of git://git.kernel.org/pub/scm/linux/kernel/git/klassert/David S. Miller2021-10-071-1/+3
|\ \ \
| * | | include/uapi/linux/xfrm.h: Fix XFRM_MSG_MAPPING ABI breakageEugene Syromiatnikov2021-09-141-1/+3
| | |/ | |/|
* / | selinux,smack: fix subjective/objective credential use mixupsPaul Moore2021-09-232-4/+4
|/ /
* | Merge tag 'kbuild-v5.15' of git://git.kernel.org/pub/scm/linux/kernel/git/mas...Linus Torvalds2021-09-041-11/+0
|\ \
| * | security: remove unneeded subdir-$(CONFIG_...)Masahiro Yamada2021-09-031-11/+0
* | | Merge branch 'akpm' (patches from Andrew)Linus Torvalds2021-09-031-4/+9
|\ \ \
| * | | mm/pagemap: add mmap_assert_locked() annotations to find_vma*()Luigi Rizzo2021-09-031-4/+9
| | |/ | |/|
* | | Merge tag 'integrity-v5.15' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2021-09-0211-67/+320
|\ \ \
| * | | IMA: reject unknown hash algorithms in ima_get_hash_algoTHOBY Simon2021-08-241-1/+2
| * | | IMA: prevent SETXATTR_CHECK policy rules with unavailable algorithmsTHOBY Simon2021-08-161-0/+6
| * | | IMA: introduce a new policy option func=SETXATTR_CHECKTHOBY Simon2021-08-164-17/+96
| * | | IMA: add a policy option to restrict xattr hash algorithms on appraisalTHOBY Simon2021-08-161-4/+70
| * | | IMA: add support to restrict the hash algorithms used for file appraisalTHOBY Simon2021-08-165-12/+41
| * | | IMA: block writes of the security.ima xattr with unsupported algorithmsTHOBY Simon2021-08-162-4/+47
| * | | IMA: remove the dependency on CRYPTO_MD5THOBY Simon2021-08-161-1/+0
| * | | ima: Add digest and digest_len params to the functions to measure a bufferRoberto Sassu2021-07-237-17/+36
| * | | ima: Return int in the functions to measure a bufferRoberto Sassu2021-07-232-22/+28
| * | | ima: Introduce ima_get_current_hash_algo()Roberto Sassu2021-07-231-1/+6