summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2022-06-14KEYS: trusted: tpm2: Fix migratable logicDavid Safford1-2/+2
2022-06-09ima: remove the IMA_TEMPLATE Kconfig optionGUO Zihua1-8/+6
2022-06-09landlock: Fix same-layer rule unionsMickaël Salaün2-26/+54
2022-06-09landlock: Create find_rule() from unmask_layers()Mickaël Salaün1-13/+28
2022-06-09landlock: Reduce the maximum number of layers to 16Mickaël Salaün3-11/+12
2022-06-09landlock: Define access_mask_t to enforce a consistent access mask sizeMickaël Salaün5-15/+30
2022-06-09landlock: Change landlock_restrict_self(2) check orderingMickaël Salaün1-4/+4
2022-06-09landlock: Change landlock_add_rule(2) argument check orderingMickaël Salaün1-9/+13
2022-06-09landlock: Fix landlock_add_rule(2) documentationMickaël Salaün1-4/+3
2022-06-09landlock: Format with clang-formatMickaël Salaün10-136/+142
2022-06-09landlock: Add clang-format exceptionsMickaël Salaün2-0/+6
2022-06-09efi: Do not import certificates from UEFI Secure Boot for T2 MacsAditya Garg2-0/+41
2022-05-25lockdown: also lock down previous kgdb useDaniel Thompson1-0/+2
2022-05-25selinux: fix bad cleanup on error in hashtab_duplicate()Ondrej Mosnacek1-1/+2
2022-04-08Fix incorrect type in assignment of ipv6 port for auditCasey Schaufler1-1/+1
2022-04-08selinux: allow FIOCLEX and FIONCLEX with policy capabilityRichard Haines4-1/+16
2022-04-08selinux: use correct type for context lengthChristian Göttsche1-1/+1
2022-04-08LSM: general protection fault in legacy_parse_paramCasey Schaufler2-5/+17
2022-04-08TOMOYO: fix __setup handlers return valuesRandy Dunlap1-2/+2
2022-04-08KEYS: trusted: Avoid calling null function trusted_key_exitDave Kleikamp1-1/+1
2022-04-08KEYS: trusted: Fix trusted key backends when building as moduleAndreas Rammhold1-2/+2
2022-04-08EVM: fix the evm= __setup handler return valueRandy Dunlap1-1/+1
2022-04-08security: implement sctp_assoc_established hook in selinuxOndrej Mosnacek1-24/+66
2022-04-08security: add sctp_assoc_established hookOndrej Mosnacek1-0/+7
2022-04-08selinux: Fix selinux_sb_mnt_opts_compat()Scott Mayhew1-34/+41
2022-04-08selinux: check return value of sel_make_avc_filesChristian Göttsche1-0/+2
2022-04-08selinux: access superblock_security_struct in LSM blob wayGONG, Ruiqi1-2/+2
2022-04-08landlock: Use square brackets around "landlock-ruleset"Christian Brauner1-1/+1
2022-04-08KEYS: fix length validation in keyctl_pkey_params_get_2()Eric Biggers1-3/+11
2022-02-24Merge tag 'selinux-pr-20220223' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds1-2/+2
2022-02-23selinux: fix misuse of mutex_is_locked()Ondrej Mosnacek1-2/+2
2022-02-07Merge tag 'integrity-v5.17-fix' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds5-10/+27
2022-02-04Merge tag 'selinux-pr-20220203' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds1-1/+2
2022-02-02ima: Do not print policy rule with inactive LSM labelsStefan Berger1-0/+8
2022-02-02ima: Allow template selection with ima_template[_fmt]= after ima_hash=Roberto Sassu1-3/+7
2022-02-02ima: Remove ima_policy file before directoryStefan Berger1-1/+1
2022-02-02integrity: check the return value of audit_log_start()Xiaoke Wang1-0/+2
2022-02-02selinux: fix double free of cond_list on error pathsVratislav Bendel1-1/+2
2022-01-29Merge tag 'fixes-v5.17-lsm-ceph-null' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds1-2/+13
2022-01-28security, lsm: dentry_init_security() Handle multi LSM registrationVivek Goyal1-2/+13
2022-01-25ima: fix reference leak in asymmetric_verify()Eric Biggers1-6/+9
2022-01-12Merge tag 'fs.idmapped.v5.17' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds1-6/+9
2022-01-12Merge tag 'integrity-v5.17' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2-3/+8
2022-01-12Merge tag 'selinux-pr-20220110' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds9-109/+49
2022-01-11Merge branch 'linus' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert...Linus Torvalds2-111/+21
2022-01-05ima: silence measurement list hexdump during kexecBruno Meneguele1-3/+3
2021-12-31Merge git://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-nextDavid S. Miller1-0/+1
2021-12-29Merge tag 'selinux-pr-20211228' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds1-1/+1
2021-12-27selinux: initialize proto variable in selinux_ip_postroute_compat()Tom Rix1-1/+1
2021-12-24integrity: Do not load MOK and MOKx when secure boot be disabledLee, Chun-Yi1-0/+5