index
:
openslx/kernel-qcow2-linux.git
kernel-qcow2
kernel-qcow2-linux-4.18.x-centos
kernel-qcow2-linux-4.19.y
master
In-kernel qcow2 (Kernel part)
OpenSLX
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
security
Commit message (
Expand
)
Author
Age
Files
Lines
...
|
|
*
|
randstruct: Mark various structs for randomization
Kees Cook
2017-06-30
1
-1
/
+1
|
*
|
|
KEYS: DH: validate __spare field
Eric Biggers
2017-07-14
2
-0
/
+7
|
*
|
|
include/linux/string.h: add the option of fortified string.h functions
Daniel Micay
2017-07-13
1
-0
/
+7
*
|
|
|
xfrm: remove flow cache
Florian Westphal
2017-07-18
1
-3
/
+1
|
/
/
/
*
|
|
Merge branch 'work.memdup_user' of git://git.kernel.org/pub/scm/linux/kernel/...
Linus Torvalds
2017-07-06
1
-7
/
+5
|
\
\
\
|
*
|
|
ima_write_policy(): don't open-code memdup_user_nul()
Al Viro
2017-06-30
1
-9
/
+4
|
*
|
|
sel_write_validatetrans(): don't open-code memdup_user_nul()
Al Viro
2017-05-26
1
-7
/
+5
|
|
/
/
*
|
|
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
Linus Torvalds
2017-07-05
1
-1
/
+2
|
\
\
\
|
*
\
\
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
David S. Miller
2017-06-21
1
-3
/
+2
|
|
\
\
\
|
*
|
|
|
rtnetlink: add NEWCACHEREPORT message type
Julien Gomes
2017-06-21
1
-1
/
+2
*
|
|
|
|
Merge branch 'next' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/...
Linus Torvalds
2017-07-05
68
-2111
/
+8342
|
\
\
\
\
\
|
|
|
_
|
_
|
/
|
|
/
|
|
|
|
*
|
|
|
apparmor: put back designators in struct initialisers
Stephen Rothwell
2017-06-28
1
-2
/
+2
|
*
|
|
|
Merge branch 'stable-4.13' of git://git.infradead.org/users/pcmoore/selinux i...
James Morris
2017-06-23
17
-108
/
+821
|
|
\
\
\
\
|
|
*
|
|
|
selinux: enable genfscon labeling for tracefs
Jeff Vander Stoep
2017-06-20
1
-0
/
+1
|
|
*
|
|
|
security/selinux: allow security_sb_clone_mnt_opts to enable/disable native l...
Scott Mayhew
2017-06-09
2
-4
/
+38
|
|
*
|
|
|
selinux: use kmem_cache for ebitmap
Junil Lee
2017-06-09
3
-6
/
+27
|
|
*
|
|
|
selinux: use pernet operations for hook registration
Florian Westphal
2017-06-02
1
-4
/
+20
|
|
*
|
|
|
selinux: Add a cache for quicker retreival of PKey SIDs
Daniel Jurgens
2017-05-23
5
-3
/
+288
|
|
*
|
|
|
selinux: Add IB Port SMP access vector
Daniel Jurgens
2017-05-23
5
-0
/
+75
|
|
*
|
|
|
selinux: Implement Infiniband PKey "Access" access vector
Daniel Jurgens
2017-05-23
5
-0
/
+77
|
|
*
|
|
|
selinux: Allocate and free infiniband security hooks
Daniel Jurgens
2017-05-23
2
-1
/
+29
|
|
*
|
|
|
selinux: Create policydb version for Infiniband support
Daniel Jurgens
2017-05-23
3
-24
/
+118
|
|
*
|
|
|
IB/core: Enforce security on management datagrams
Daniel Jurgens
2017-05-23
1
-0
/
+6
|
|
*
|
|
|
selinux lsm IB/core: Implement LSM notification system
Daniel Jurgens
2017-05-23
3
-0
/
+33
|
|
*
|
|
|
IB/core: Enforce PKey security on QPs
Daniel Jurgens
2017-05-23
2
-0
/
+31
|
|
*
|
|
|
selinux: Remove redundant check for unknown labeling behavior
Matthias Kaehlcke
2017-05-23
1
-16
/
+0
|
|
*
|
|
|
selinux: log policy capability state when a policy is loaded
Stephen Smalley
2017-05-23
3
-11
/
+27
|
|
*
|
|
|
selinux: do not check open permission on sockets
Stephen Smalley
2017-05-23
1
-3
/
+7
|
|
*
|
|
|
selinux: add a map permission check for mmap
Stephen Smalley
2017-05-23
2
-1
/
+13
|
|
*
|
|
|
selinux: only invoke capabilities and selinux for CAP_MAC_ADMIN checks
Stephen Smalley
2017-05-23
1
-8
/
+15
|
|
*
|
|
|
selinux: Return an error code only as a constant in sidtab_insert()
Markus Elfring
2017-05-23
1
-17
/
+10
|
|
*
|
|
|
selinux: Return directly after a failed memory allocation in policydb_index()
Markus Elfring
2017-05-23
1
-10
/
+5
|
|
*
|
|
|
selinux: Use task_alloc hook rather than task_create hook
Tetsuo Handa
2017-05-23
1
-2
/
+3
|
*
|
|
|
|
ima: Log the same audit cause whenever a file has no signature
Thiago Jung Bauermann
2017-06-21
1
-1
/
+2
|
*
|
|
|
|
ima: Simplify policy_func_show.
Thiago Jung Bauermann
2017-06-21
2
-62
/
+21
|
*
|
|
|
|
integrity: Small code improvements
Thiago Jung Bauermann
2017-06-21
6
-9
/
+11
|
*
|
|
|
|
ima: fix get_binary_runtime_size()
Roberto Sassu
2017-06-21
1
-1
/
+1
|
*
|
|
|
|
ima: use ima_parse_buf() to parse template data
Roberto Sassu
2017-06-21
1
-31
/
+13
|
*
|
|
|
|
ima: use ima_parse_buf() to parse measurements headers
Roberto Sassu
2017-06-21
1
-52
/
+28
|
*
|
|
|
|
ima: introduce ima_parse_buf()
Roberto Sassu
2017-06-21
2
-0
/
+67
|
*
|
|
|
|
ima: Add cgroups2 to the defaults list
Laura Abbott
2017-06-21
1
-0
/
+3
|
*
|
|
|
|
ima: use memdup_user_nul
Geliang Tang
2017-06-21
1
-9
/
+4
|
*
|
|
|
|
ima: fix up #endif comments
Tycho Andersen
2017-06-21
1
-2
/
+2
|
*
|
|
|
|
IMA: Correct Kconfig dependencies for hash selection
Ben Hutchings
2017-06-21
1
-4
/
+4
|
*
|
|
|
|
ima: define is_ima_appraise_enabled()
Mimi Zohar
2017-06-21
1
-0
/
+10
|
*
|
|
|
|
ima: define Kconfig IMA_APPRAISE_BOOTPARAM option
Mimi Zohar
2017-06-21
2
-0
/
+10
|
*
|
|
|
|
ima: define a set of appraisal rules requiring file signatures
Mimi Zohar
2017-06-21
1
-1
/
+25
|
*
|
|
|
|
ima: extend the "ima_policy" boot command line to support multiple policies
Mimi Zohar
2017-06-21
1
-5
/
+10
|
*
|
|
|
|
Merge branch 'smack-for-4.13' of git://github.com/cschaufler/smack-next into ...
James Morris
2017-06-21
4
-18
/
+31
|
|
\
\
\
\
\
|
|
*
|
|
|
|
Smack: Use cap_capable in privilege check
Casey Schaufler
2017-06-01
2
-9
/
+12
[prev]
[next]