summaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
* Merge tag 'linux-kselftest-kunit-5.20-rc1' of git://git.kernel.org/pub/scm/li...Linus Torvalds2022-08-021-6/+6
|\
| * apparmor: test: Remove some casts which are no-longer requiredDavid Gow2022-07-061-6/+6
* | Merge tag 'integrity-v6.0' of git://git.kernel.org/pub/scm/linux/kernel/git/z...Linus Torvalds2022-08-021-29/+23
|\ \
| * | evm: Use IS_ENABLED to initialize .enabledXiu Jianfeng2022-07-131-29/+23
* | | Merge tag 'safesetid-6.0' of https://github.com/micah-morton/linuxLinus Torvalds2022-08-022-9/+35
|\ \ \
| * | | LSM: SafeSetID: Add setgroups() security policy handlingMicah Morton2022-07-151-9/+30
| * | | security: Add LSM hook to setgroups() syscallMicah Morton2022-07-151-0/+5
* | | | Merge tag 'Smack-for-6.0' of https://github.com/cschaufler/smack-nextLinus Torvalds2022-08-022-12/+2
|\ \ \ \
| * | | | smack: Remove the redundant lsm_inode_allocXiu Jianfeng2022-08-011-7/+0
| * | | | smack: Replace kzalloc + strncpy with kstrndupGONG, Ruiqi2022-08-011-5/+2
| | |_|/ | |/| |
* | | | Merge tag 'selinux-pr-20220801' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2022-08-025-13/+19
|\ \ \ \
| * | | | selinux: selinux_add_opt() callers free memoryXiu Jianfeng2022-06-201-7/+4
| * | | | selinux: Add boundary check in put_entry()Xiu Jianfeng2022-06-141-0/+2
| * | | | selinux: fix memleak in security_read_state_kernel()Xiu Jianfeng2022-06-131-1/+8
| * | | | selinux: fix typos in commentsJonas Lindner2022-06-102-3/+3
| * | | | selinux: drop unnecessary NULL checkChristian Göttsche2022-06-071-1/+1
| * | | | selinux: add __randomize_layout to selinux_audit_dataGONG, Ruiqi2022-06-071-1/+1
| |/ / /
* | | | Merge tag 'hardening-v5.20-rc1' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2022-08-022-1/+182
|\ \ \ \
| * | | | LoadPin: Enable loading from trusted dm-verity devicesMatthias Kaehlcke2022-07-082-1/+182
| | |/ / | |/| |
* | | | Merge tag 'x86_kdump_for_v6.0_rc1' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds2022-08-011-1/+1
|\ \ \ \
| * | | | x86/kexec: Carry forward IMA measurement log on kexecJonathan McDowell2022-07-011-1/+1
| |/ / /
* | | | Merge tag 'fs.idmapped.vfsuid.v5.20' of git://git.kernel.org/pub/scm/linux/ke...Linus Torvalds2022-08-012-7/+10
|\ \ \ \
| * | | | attr: port attribute changes to new typesChristian Brauner2022-06-261-2/+2
| * | | | security: pass down mount idmapping to setattr hookChristian Brauner2022-06-262-5/+8
| * | | | fs: port to iattr ownership update helpersChristian Brauner2022-06-261-2/+2
| |/ / /
* | | | lockdown: Fix kexec lockdown bypass with ima policyEric Snowberg2022-07-201-0/+4
* | | | Merge tag 'integrity-v5.19-fix' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2022-07-145-9/+10
|\ \ \ \ | | |_|/ | |/| |
| * | | ima: Fix potential memory leak in ima_init_crypto()Jianglei Nie2022-07-131-0/+1
| * | | ima: force signature verification when CONFIG_KEXEC_SIG is configuredCoiby Xu2022-07-131-0/+2
| * | | ima: Fix a potential integer overflow in ima_appraise_measurementHuaxin Lu2022-07-071-1/+2
| * | | ima: fix violation measurement list recordMimi Zohar2022-07-061-3/+3
| * | | Revert "evm: Fix memleak in init_desc"Xiu Jianfeng2022-06-151-5/+2
* | | | x86/retbleed: Add fine grained Kconfig knobsPeter Zijlstra2022-06-291-11/+0
| |/ / |/| |
* | | selinux: free contexts previously transferred in selinux_add_opt()Christian Göttsche2022-06-151-7/+4
|/ /
* / KEYS: trusted: tpm2: Fix migratable logicDavid Safford2022-06-081-2/+2
|/
* Merge tag 'pull-18-rc1-work.mount' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds2022-06-041-0/+1
|\
| * move mount-related externs from fs.h to mount.hAl Viro2022-05-191-0/+1
* | Merge tag 'linux-kselftest-kunit-5.19-rc1' of git://git.kernel.org/pub/scm/li...Linus Torvalds2022-05-251-3/+3
|\ \
| * | apparmor: test: Use NULL macrosRicardo Ribalda2022-04-041-3/+3
| |/
* | Merge tag 'integrity-v5.19' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2022-05-2416-52/+395
|\ \
| * | integrity: Fix sparse warnings in keyring_handlerStefan Berger2022-05-161-3/+3
| * | evm: Clean up some variablesStefan Berger2022-05-162-4/+1
| * | evm: Return INTEGRITY_PASS for enum integrity_status value '0'Stefan Berger2022-05-161-1/+1
| * | efi: Do not import certificates from UEFI Secure Boot for T2 MacsAditya Garg2022-05-152-0/+41
| * | ima: support fs-verity file digest based version 3 signaturesMimi Zohar2022-05-055-16/+177
| * | ima: permit fsverity's file digests in the IMA measurement listMimi Zohar2022-05-055-8/+90
| * | ima: define a new template field named 'd-ngv2' and templatesMimi Zohar2022-05-053-11/+73
| * | ima: use IMA default hash algorithm for integrity violationsMimi Zohar2022-05-011-1/+1
| * | ima: fix 'd-ng' comments and documentationMimi Zohar2022-05-011-3/+5
| * | ima: remove the IMA_TEMPLATE Kconfig optionGUO Zihua2022-04-071-8/+6