summaryrefslogtreecommitdiffstats
path: root/security
AgeCommit message (Expand)AuthorLines
2025-01-07Merge tag 'selinux-pr-20250107' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds-38/+65
2025-01-04selinux: match extended permissions to their base permissionsThiébaud Weksteen-38/+65
2024-12-18Merge tag 'selinux-pr-20241217' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds-2/+6
2024-12-15selinux: ignore unknown extended permissionsThiébaud Weksteen-2/+6
2024-12-05Merge tag 'net-6.13-rc2' of git://git.kernel.org/pub/scm/linux/kernel/git/net...Linus Torvalds-1/+1
2024-12-02module: Convert symbol namespace to string literalPeter Zijlstra-1/+1
2024-11-30Merge tag 'lsm-pr-20241129' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds-4/+5
2024-11-30selinux: use sk_to_full_sk() in selinux_ip_output()Eric Dumazet-1/+1
2024-11-26ima: uncover hidden variable in ima_match_rules()Casey Schaufler-4/+5
2024-11-26apparmor: lift new_profile declaration to remove C23 extension warningJohn Johansen-2/+1
2024-11-26apparmor: replace misleading 'scrubbing environment' phrase in debug printRyan Lee-8/+8
2024-11-26parser: drop dead code for XXX_comb macrosJohn Johansen-24/+0
2024-11-26apparmor: Remove unused parameter L1 in macro next_combJinjie Ruan-2/+2
2024-11-26apparmor: audit_cap dedup based on subj_cred instead of profileRyan Lee-6/+4
2024-11-26apparmor: add a cache entry expiration time aging out capability audit cacheRyan Lee-3/+8
2024-11-26apparmor: document capability.c:profile_capable ad ptr not being NULLRyan Lee-1/+1
2024-11-26apparmor: fix 'Do simple duplicate message elimination'chao liu-0/+2
2024-11-26apparmor: document first entry is in packed perms struct is reservedJohn Johansen-1/+4
2024-11-26apparmor: test: Fix memory leak for aa_unpack_strdup()Jinjie Ruan-0/+6
2024-11-26apparmor: Remove deadcodeDr. David Alan Gilbert-146/+0
2024-11-26apparmor: Remove unnecessary NULL check before kvfree()Thorsten Blum-2/+1
2024-11-26apparmor: domain: clean up duplicated parts of handle_onexec()Leesoo Ahn-26/+12
2024-11-26apparmor: Use IS_ERR_OR_NULL() helper functionHongbo Li-1/+1
2024-11-26apparmor: add support for 2^24 states to the dfa state machine.John Johansen-25/+83
2024-11-26apparmor: properly handle cx/px lookup failure for complainRyan Lee-2/+7
2024-11-26apparmor: allocate xmatch for nullpdb inside aa_alloc_nullRyan Lee-0/+1
2024-11-25Merge tag 'mm-nonmm-stable-2024-11-24-02-05' of git://git.kernel.org/pub/scm/...Linus Torvalds-3/+3
2024-11-21Merge tag 'fsnotify_for_v6.13-rc1' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds-8/+1
2024-11-19Merge tag 'v6.13-p1' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert...Linus Torvalds-3/+3
2024-11-18Merge tag 'lsm-pr-20241112' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds-150/+252
2024-11-18Merge tag 'selinux-pr-20241112' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds-197/+431
2024-11-18Merge tag 'pull-fd' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfsLinus Torvalds-42/+18
2024-11-18Merge tag 'vfs-6.13.file' of git://git.kernel.org/pub/scm/linux/kernel/git/vf...Linus Torvalds-1/+0
2024-11-12Merge tag 'integrity-v6.12' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds-5/+16
2024-11-12Merge tag 'landlock-6.12-rc7' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds-57/+96
2024-11-09landlock: Optimize scope enforcementMickaël Salaün-3/+15
2024-11-09landlock: Refactor network access mask managementMickaël Salaün-22/+6
2024-11-09landlock: Refactor filesystem access mask managementMickaël Salaün-32/+75
2024-11-05security: replace memcpy() with get_task_comm()Yafang Shao-3/+3
2024-11-04KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operationDavid Gstir-4/+5
2024-11-04security/keys: fix slab-out-of-bounds in key_task_permissionChen Ridong-2/+5
2024-11-03fdget(), more trivial conversionsAl Viro-11/+4
2024-11-03fdget(), trivial conversionsAl Viro-18/+8
2024-11-03fdget_raw() users: switch to CLASS(fd_raw)Al Viro-13/+6
2024-10-18ipe: fallback to platform keyring also if key in trusted keyring is rejectedLuca Boccassi-1/+1
2024-10-17ipe: allow secondary and platform keyrings to install/update policiesLuca Boccassi-1/+32
2024-10-17ipe: also reject policy updates with the same versionLuca Boccassi-1/+1
2024-10-17ipe: return -ESTALE instead of -EINVAL on update when new policy has a lower ...Luca Boccassi-1/+1
2024-10-14fsnotify, lsm: Decouple fsnotify from lsmSong Liu-8/+1
2024-10-11lsm: remove lsm_prop scaffoldingCasey Schaufler-64/+7