summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)Author
2023-05-11selinux: ensure av_permissions.h is built when neededPaul Moore
2023-05-11selinux: fix Makefile dependencies of flask.hOndrej Mosnacek
2023-05-11IMA: allow/fix UML buildsRandy Dunlap
2023-03-30keys: Do not cache key in task struct if key is requested from kernel threadDavid Howells
2023-03-10ima: Align ima_file_mmap() parameters with mmap_file LSM hookRoberto Sassu
2023-02-01tomoyo: fix broken dependency on *.conf.defaultMasahiro Yamada
2023-01-12device_cgroup: Roll back to original exceptions after copy failureWang Weiyang
2023-01-12ima: Fix a potential NULL pointer access in ima_restore_measurement_listHuaxin Lu
2023-01-12efi: Add iMac Pro 2017 to uefi skip cert quirkAditya Garg
2022-12-31security: Restrict CONFIG_ZERO_CALL_USED_REGS to gcc or clang > 15.0.6Nathan Chancellor
2022-12-31ima: Simplify ima_lsm_copy_ruleGUO Zihua
2022-12-31LoadPin: Ignore the "contents" argument of the LSM hooksKees Cook
2022-12-31apparmor: Fix memleak in alloc_ns()Xiu Jianfeng
2022-12-31apparmor: Use pointer to struct aa_label for lbs_credXiu Jianfeng
2022-12-31apparmor: Fix abi check to include v8 abiJohn Johansen
2022-12-31apparmor: fix lockdep warning when removing a namespaceJohn Johansen
2022-12-31apparmor: fix a memleak in multi_transaction_new()Gaosheng Cui
2022-12-31ima: Fix misuse of dereference of pointer in template_desc_init_fields()Xiu Jianfeng
2022-12-31integrity: Fix memory leakage in keyring allocation error pathGUO Zihua
2022-12-31ima: Handle -ESTALE returned by ima_filter_rule_match()GUO Zihua
2022-11-10capabilities: fix potential memleak on error path from vfs_getxattr_alloc()Gaosheng Cui
2022-10-29selinux: enable use of both GFP_KERNEL and GFP_ATOMIC in convert_context()GONG, Ruiqi
2022-10-26ima: fix blocking of security.ima xattrs of unsupported algorithmsMimi Zohar
2022-10-26hardening: Remove Clang's enable flag for -ftrivial-auto-var-init=zeroKees Cook
2022-10-26hardening: Avoid harmless Clang option under CONFIG_INIT_STACK_ALL_ZEROKees Cook
2022-10-15efi: Correct Macmini DMI match in uefi cert quirkOrlando Chamberlain
2022-08-25apparmor: Fix memleak in aa_simple_write_to_buffer()Xiu Jianfeng
2022-08-25apparmor: fix reference count leak in aa_pivotroot()Xin Xiong
2022-08-25apparmor: fix overlapping attachment computationJohn Johansen
2022-08-25apparmor: fix setting unconfined mode on a loaded profileJohn Johansen
2022-08-25apparmor: fix aa_label_asxprint return checkTom Rix
2022-08-25apparmor: Fix failed mount permission check error messageJohn Johansen
2022-08-25apparmor: fix absroot causing audited secids to begin with =John Johansen
2022-08-25apparmor: fix quiet_denied for file rulesJohn Johansen
2022-08-17selinux: Add boundary check in put_entry()Xiu Jianfeng
2022-08-17selinux: fix memleak in security_read_state_kernel()Xiu Jianfeng
2022-07-29lockdown: Fix kexec lockdown bypass with ima policyEric Snowberg
2022-07-23x86/retbleed: Add fine grained Kconfig knobsPeter Zijlstra
2022-07-21ima: Fix potential memory leak in ima_init_crypto()Jianglei Nie
2022-07-21ima: force signature verification when CONFIG_KEXEC_SIG is configuredCoiby Xu
2022-07-21ima: Fix a potential integer overflow in ima_appraise_measurementHuaxin Lu
2022-07-21Revert "evm: Fix memleak in init_desc"Xiu Jianfeng
2022-07-02fs: support mapped mounts of mapped filesystemsChristian Brauner
2022-07-02fs: use low-level mapping helpersChristian Brauner
2022-07-02fs: move mapping helpersChristian Brauner
2022-06-14KEYS: trusted: tpm2: Fix migratable logicDavid Safford
2022-06-09ima: remove the IMA_TEMPLATE Kconfig optionGUO Zihua
2022-06-09landlock: Fix same-layer rule unionsMickaël Salaün
2022-06-09landlock: Create find_rule() from unmask_layers()Mickaël Salaün
2022-06-09landlock: Reduce the maximum number of layers to 16Mickaël Salaün