summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)Author
2024-03-06landlock: Fix asymmetric private inodes referringMickaël Salaün
2024-03-06tomoyo: fix UAF write bug in tomoyo_write_control()Tetsuo Handa
2024-02-23apparmor: Free up __cleanup() namePeter Zijlstra
2024-02-23lsm: fix the logic in security_inode_getsecctx()Ondrej Mosnacek
2024-01-31lsm: new security_file_ioctl_compat() hookAlfred Piccioni
2024-01-25Revert "KEYS: encrypted: Add check for strsep"Mimi Zohar
2024-01-25apparmor: avoid crash when parsed profile name is emptyFedor Pchelkin
2024-01-25selinux: Fix error priority for bind with AF_UNSPEC on PF_INET6 socketMickaël Salaün
2024-01-25KEYS: encrypted: Add check for strsepChen Ni
2024-01-01keys, dns: Allow key types (eg. DNS) to be reclaimed immediately on expiryDavid Howells
2023-11-28ima: detect changes to the backing overlay fileMimi Zohar
2023-11-28ima: annotate iint mutex to avoid lockdep false positive warningsAmir Goldstein
2023-11-28KEYS: trusted: Rollback init_trusted() consistentlyJarkko Sakkinen
2023-11-28KEYS: trusted: tee: Refactor register SHM usageSumit Garg
2023-11-20apparmor: fix invalid reference on profile->disconnectedGeorgia Garcia
2023-11-20apparmor: test: make static symbols visible during kunit testingRae Moar
2023-10-19KEYS: trusted: Remove redundant static calls usageSumit Garg
2023-10-10ima: rework CONFIG_IMA dependency blockArnd Bergmann
2023-10-10ima: Finish deprecation of IMA_TRUSTED_KEYRING KconfigOleksandr Tymoshenko
2023-10-06smack: Retrieve transmuting information in smack_inode_getsecurity()Roberto Sassu
2023-10-06smack: Record transmuting in smk_transmutedRoberto Sassu
2023-09-23selinux: fix handling of empty opts in selinux_fs_context_submount()Ondrej Mosnacek
2023-09-13smackfs: Prevent underflow in smk_set_cipso()Dan Carpenter
2023-09-13ima: Remove deprecated IMA_TRUSTED_KEYRING KconfigNayna Jain
2023-09-13vfs, security: Fix automount superblock LSM init problem, preventing NFS sb s...David Howells
2023-09-13security: keys: perform capable check only on privileged operationsChristian Göttsche
2023-08-30selinux: set next pointer before attaching to listChristian Göttsche
2023-07-27security: keys: Modify mismatched function nameJiapeng Chong
2023-07-27keys: Fix linking a duplicate key to a keyring's assoc_arrayPetr Pavlu
2023-07-19integrity: Fix possible multiple allocation in integrity_inode_get()Tianjia Zhang
2023-07-19apparmor: fix missing error check for rhashtable_insert_fastDanila Chernetsov
2023-07-19ima: Fix build warningsRoberto Sassu
2023-07-19evm: Fix build warningsRoberto Sassu
2023-07-19evm: Complete description of evm_inode_setattr()Roberto Sassu
2023-06-09selinux: don't use make's grouped targets feature yetPaul Moore
2023-05-11selinux: ensure av_permissions.h is built when neededPaul Moore
2023-05-11selinux: fix Makefile dependencies of flask.hOndrej Mosnacek
2023-05-11IMA: allow/fix UML buildsRandy Dunlap
2023-03-30keys: Do not cache key in task struct if key is requested from kernel threadDavid Howells
2023-03-10ima: Align ima_file_mmap() parameters with mmap_file LSM hookRoberto Sassu
2023-03-10ima: fix error handling logic when file measurement failedMatt Bobrowski
2023-02-25randstruct: disable Clang 15 supportEric Biggers
2023-02-09use less confusing names for iov_iter direction initializersAl Viro
2023-02-01tomoyo: fix broken dependency on *.conf.defaultMasahiro Yamada
2023-01-07device_cgroup: Roll back to original exceptions after copy failureWang Weiyang
2023-01-07ima: Fix memory leak in __ima_inode_hash()Roberto Sassu
2023-01-07ima: Fix a potential NULL pointer access in ima_restore_measurement_listHuaxin Lu
2023-01-07efi: Add iMac Pro 2017 to uefi skip cert quirkAditya Garg
2023-01-07ima: Fix hash dependency to correct algorithmTianjia Zhang
2022-12-31security: Restrict CONFIG_ZERO_CALL_USED_REGS to gcc or clang > 15.0.6Nathan Chancellor