aboutsummaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)Author
2022-09-14lockdown: ratelimit denial messagesNathan Lynch
2022-09-07LoadPin: Require file with verity root digests to have a headerMatthias Kaehlcke
2022-09-07LoadPin: Fix Kconfig doc about format of file with verity digestsMatthias Kaehlcke
2022-09-02Merge tag 'landlock-6.0-rc4' of git://git.kernel.org/pub/scm/linux/kernel/git...Linus Torvalds
2022-09-02landlock: Fix file reparenting without explicit LANDLOCK_ACCESS_FS_REFERMickaël Salaün
2022-09-01->getprocattr(): attribute name is const char *, TYVM...Al Viro
2022-08-31Merge tag 'lsm-pr-20220829' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds
2022-08-31acl: move idmapping handling into posix_acl_xattr_set()Christian Brauner
2022-08-30selinux: declare read-only parameters constChristian Göttsche
2022-08-30selinux: use int arrays for boolean valuesChristian Göttsche
2022-08-30selinux: remove an unneeded variable in sel_make_class_dir_entries()ye xingchen
2022-08-26Smack: Provide read control for io_uring_cmdCasey Schaufler
2022-08-26selinux: implement the security_uring_cmd() LSM hookPaul Moore
2022-08-26lsm,io_uring: add LSM hooks for the new uring_cmd file opLuis Chamberlain
2022-08-23ima: fix blocking of security.ima xattrs of unsupported algorithmsMimi Zohar
2022-08-21tomoyo: struct path it might get from LSM callers won't have NULL dentry or mntAl Viro
2022-08-21tomoyo: use vsnprintf() properlyAl Viro
2022-08-19Merge tag 'hardening-v6.0-rc2' of git://git.kernel.org/pub/scm/linux/kernel/g...Linus Torvalds
2022-08-16selinux: Implement userns_create hookFrederick Lawler
2022-08-16security, lsm: Introduce security_create_user_ns()Frederick Lawler
2022-08-16LoadPin: Return EFAULT on copy_from_user() failuresKees Cook
2022-08-15lsm: clean up redundant NULL pointer checkXiu Jianfeng
2022-08-10Merge tag 'apparmor-pr-2022-08-08' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds
2022-08-02Merge tag 'linux-kselftest-kunit-5.20-rc1' of git://git.kernel.org/pub/scm/li...Linus Torvalds
2022-08-02Merge tag 'integrity-v6.0' of git://git.kernel.org/pub/scm/linux/kernel/git/z...Linus Torvalds
2022-08-02Merge tag 'safesetid-6.0' of https://github.com/micah-morton/linuxLinus Torvalds
2022-08-02Merge tag 'Smack-for-6.0' of https://github.com/cschaufler/smack-nextLinus Torvalds
2022-08-02Merge tag 'selinux-pr-20220801' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds
2022-08-02Merge tag 'hardening-v5.20-rc1' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds
2022-08-01smack: Remove the redundant lsm_inode_allocXiu Jianfeng
2022-08-01smack: Replace kzalloc + strncpy with kstrndupGONG, Ruiqi
2022-08-01Merge tag 'x86_kdump_for_v6.0_rc1' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds
2022-08-01Merge tag 'fs.idmapped.vfsuid.v5.20' of git://git.kernel.org/pub/scm/linux/ke...Linus Torvalds
2022-07-20apparmor: correct config reference to intended oneLukas Bulwahn
2022-07-20lockdown: Fix kexec lockdown bypass with ima policyEric Snowberg
2022-07-19apparmor: move ptrace mediation to more logical task.{h,c}John Johansen
2022-07-19apparmor: extend policydb permission set by making use of the xbitsJohn Johansen
2022-07-19apparmor: allow label to carry debug flagsJohn Johansen
2022-07-19apparmor: fix overlapping attachment computationJohn Johansen
2022-07-19apparmor: fix setting unconfined mode on a loaded profileJohn Johansen
2022-07-19apparmor: Fix some kernel-doc commentsYang Li
2022-07-19apparmor: Mark alloc_unconfined() as staticSouptick Joarder (HPE)
2022-07-15LSM: SafeSetID: Add setgroups() security policy handlingMicah Morton
2022-07-15security: Add LSM hook to setgroups() syscallMicah Morton
2022-07-14Merge tag 'integrity-v5.19-fix' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds
2022-07-13apparmor: disable showing the mode as part of a secid to secctxJohn Johansen
2022-07-13apparmor: Convert secid mapping to XArrays instead of IDRMatthew Wilcox
2022-07-13apparmor: add a kernel label to use on kernel objectsJohn Johansen
2022-07-13evm: Use IS_ENABLED to initialize .enabledXiu Jianfeng
2022-07-13ima: Fix potential memory leak in ima_init_crypto()Jianglei Nie