summaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
* ima: Update MAX_TEMPLATE_NAME_LEN to fit largest reasonable definitionThiago Jung Bauermann2019-06-301-1/+7
* IMA: Define a new template field bufPrakhar Srivastava2019-06-305-1/+33
* IMA: Define a new hook to measure the kexec boot command line argumentsPrakhar Srivastava2019-06-244-0/+81
* IMA: support for per policy rule template formatsMatthew Garrett2019-06-207-27/+76
* integrity: Fix __integrity_init_keyring() section mismatchGeert Uytterhoeven2019-06-171-2/+3
* ima: Use designated initializers for struct ima_event_dataThiago Jung Bauermann2019-06-142-6/+11
* ima: use the lsm policy update notifierJanne Karhunen2019-06-143-20/+106
* LSM: switch to blocking policy update notifiersJanne Karhunen2019-06-143-12/+15
* x86/ima: fix the Kconfig dependency for IMA_ARCH_POLICYNayna Jain2019-06-141-1/+2
* ima: Make arch_policy_entry staticYueHaibing2019-06-141-1/+1
* ima: prevent a file already mmap'ed write to be mmap'ed executeMimi Zohar2019-06-041-2/+30
* ima: show rules with IMA_INMASK correctlyRoberto Sassu2019-05-301-9/+12
* evm: check hash algorithm passed to init_desc()Roberto Sassu2019-05-301-0/+3
* ima: fix wrong signed policy requirement when not appraisingPetr Vorel2019-05-201-3/+4
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netLinus Torvalds2019-05-141-4/+4
|\
| * Revert "selinux: do not report error on connect(AF_UNSPEC)"Paolo Abeni2019-05-101-4/+4
* | tomoyo: Don't emit WARNING: string while fuzzing testing.Tetsuo Handa2019-05-101-0/+2
* | tomoyo: Change pathname calculation for read-only filesystems.Tetsuo Handa2019-05-101-1/+2
* | tomoyo: Check address length before reading address familyTetsuo Handa2019-05-101-0/+4
* | tomoyo: Add a kernel config option for fuzzing testing.Tetsuo Handa2019-05-102-1/+22
|/
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netLinus Torvalds2019-05-101-4/+4
|\
| * selinux: do not report error on connect(AF_UNSPEC)Paolo Abeni2019-05-081-4/+4
* | Merge branch 'next-smack' of git://git.kernel.org/pub/scm/linux/kernel/git/jm...Linus Torvalds2019-05-093-45/+45
|\ \ | |/ |/|
| * Merge branch 'smack-for-5.2-b' of https://github.com/cschaufler/next-smack in...James Morris2019-05-071-0/+2
| |\
| | * Smack: Fix kbuild reported build errorCasey Schaufler2019-04-301-0/+2
| * | Merge branch 'smack-for-5.2-b' of https://github.com/cschaufler/next-smack in...James Morris2019-04-301-4/+15
| |\|
| | * smack: Check address length before reading address familyTetsuo Handa2019-04-301-4/+15
| * | Merge branch 'smack-for-5.2' of https://github.com/cschaufler/next-smack into...James Morris2019-04-163-41/+28Star
| |\|
| | * Smack: Fix IPv6 handling of 0 secmarkCasey Schaufler2019-04-031-0/+2
| | * Smack: Create smack_rule cache to optimize memory usageCasey Schaufler2019-04-023-3/+11
| | * smack: removal of global rule listVishal Goel2019-04-021-38/+15Star
* | | Merge branch 'work.mount-syscalls' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds2019-05-081-0/+5
|\ \ \
| * | | vfs: syscall: Add move_mount(2) to move mounts aroundDavid Howells2019-03-201-0/+5
* | | | Merge tag 'audit-pr-20190507' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds2019-05-081-5/+5
|\ \ \ \
| * | | | audit: link integrity evm_write_xattrs record to syscall eventRichard Guy Briggs2019-03-271-5/+5
| |/ / /
* | | | Merge tag 'selinux-pr-20190507' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2019-05-085-88/+169
|\ \ \ \
| * | | | selinux: Check address length before reading address familyTetsuo Handa2019-04-151-1/+6
| * | | | kernfs: fix xattr name handling in LSM helpersOndrej Mosnacek2019-04-041-5/+4Star
| * | | | selinux: avoid uninitialized variable warningArnd Bergmann2019-03-251-9/+5Star
| * | | | selinux: remove useless assignmentsOndrej Mosnacek2019-03-251-5/+2Star
| * | | | selinux: Make selinux_kernfs_init_security staticYueHaibing2019-03-221-2/+2
| * | | | selinux: implement the kernfs_init_security hookOndrej Mosnacek2019-03-211-0/+66
| * | | | LSM: add new hook for kernfs node initializationOndrej Mosnacek2019-03-211-0/+6
| * | | | selinux: try security xattr after genfs for kernfs filesystemsOndrej Mosnacek2019-03-212-73/+85
| * | | | selinux: use kernel linux/socket.h for genheaders and mdpPaulo Alcantara2019-03-181-0/+1
| |/ / /
* | | | Merge tag 'meminit-v5.2-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git...Linus Torvalds2019-05-072-0/+166
|\ \ \ \
| * | | | security: Implement Clang's stack initializationKees Cook2019-04-241-0/+14
| * | | | security: Move stackleak config to Kconfig.hardeningKees Cook2019-04-241-0/+57
| * | | | security: Create "kernel hardening" config areaKees Cook2019-04-242-0/+95
| | |_|/ | |/| |
* | | | Merge branch 'work.icache' of git://git.kernel.org/pub/scm/linux/kernel/git/v...Linus Torvalds2019-05-072-16/+4Star
|\ \ \ \