summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)Author
2023-02-21Merge tag 'hardening-v6.3-rc1' of git://git.kernel.org/pub/scm/linux/kernel/g...Linus Torvalds
2023-02-20Merge tag 'fs.idmapped.v6.3' of git://git.kernel.org/pub/scm/linux/kernel/git...Linus Torvalds
2023-02-20Merge tag 'tpm-v6.3-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/jar...Linus Torvalds
2023-02-15apparmor: Fix regression in compat permissions for getattrJohn Johansen
2023-02-13KEYS: Add new function key_create()Thomas Weißschuh
2023-02-08randstruct: disable Clang 15 supportEric Biggers
2023-01-19LoadPin: Allow filesystem switch when not enforcingKees Cook
2023-01-19LoadPin: Move pin reporting cleanly out of lockingKees Cook
2023-01-19LoadPin: Refactor sysctl initializationKees Cook
2023-01-19LoadPin: Refactor read-only check into a helperKees Cook
2023-01-19fs: port vfs{g,u}id helpers to mnt_idmapChristian Brauner
2023-01-19fs: port i_{g,u}id_into_vfs{g,u}id() to mnt_idmapChristian Brauner
2023-01-19fs: port i_{g,u}id_{needs_}update() to mnt_idmapChristian Brauner
2023-01-19fs: port privilege checking helpers to mnt_idmapChristian Brauner
2023-01-19fs: port inode_owner_or_capable() to mnt_idmapChristian Brauner
2023-01-19fs: port acl to mnt_idmapChristian Brauner
2023-01-19fs: port xattr to mnt_idmapChristian Brauner
2023-01-19fs: port ->permission() to pass mnt_idmapChristian Brauner
2023-01-19fs: port ->mkdir() to pass mnt_idmapChristian Brauner
2023-01-19fs: port ->setattr() to pass mnt_idmapChristian Brauner
2023-01-13tomoyo: Update website linkTetsuo Handa
2023-01-13tomoyo: Remove "select SRCU"Paul E. McKenney
2023-01-09tomoyo: Omit use of bin2cMasahiro Yamada
2023-01-07tomoyo: avoid unneeded creation of builtin-policy.hMasahiro Yamada
2023-01-07tomoyo: fix broken dependency on *.conf.defaultMasahiro Yamada
2022-12-23Merge tag 'hardening-v6.2-rc1-fixes' of git://git.kernel.org/pub/scm/linux/ke...Linus Torvalds
2022-12-21Merge tag 'fs.vfsuid.ima.v6.2-rc1' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds
2022-12-14security: Restrict CONFIG_ZERO_CALL_USED_REGS to gcc or clang > 15.0.6Nathan Chancellor
2022-12-14LoadPin: Ignore the "contents" argument of the LSM hooksKees Cook
2022-12-14Merge tag 'apparmor-pr-2022-12-14' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds
2022-12-13Merge tag 'integrity-v6.2' of git://git.kernel.org/pub/scm/linux/kernel/git/z...Linus Torvalds
2022-12-13Merge tag 'lsm-pr-20221212' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds
2022-12-13Merge tag 'selinux-pr-20221212' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds
2022-12-13Merge tag 'landlock-6.2-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git...Linus Torvalds
2022-12-13mnt_idmapping: move ima-only helpers to imaChristian Brauner
2022-12-12Merge tag 'fs.vfsuid.conversion.v6.2' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds
2022-12-12Merge tag 'fs.acl.rework.v6.2' of git://git.kernel.org/pub/scm/linux/kernel/g...Linus Torvalds
2022-12-12Merge tag 'pull-iov_iter' of git://git.kernel.org/pub/scm/linux/kernel/git/vi...Linus Torvalds
2022-12-12Merge tag 'linux-kselftest-kunit-next-6.2-rc1' of git://git.kernel.org/pub/sc...Linus Torvalds
2022-12-12apparmor: test: make static symbols visible during kunit testingRae Moar
2022-12-08KEYS: trusted: tee: Make registered shm dependency explicitSumit Garg
2022-11-28ima: Fix hash dependency to correct algorithmTianjia Zhang
2022-11-25use less confusing names for iov_iter direction initializersAl Viro
2022-11-18lsm,fs: fix vfs_getxattr_alloc() return type and caller error pathsPaul Moore
2022-11-16device_cgroup: Roll back to original exceptions after copy failureWang Weiyang
2022-11-16LSM: Better reporting of actual LSMs at bootKees Cook
2022-11-16ima: Fix misuse of dereference of pointer in template_desc_init_fields()Xiu Jianfeng
2022-11-16integrity: Fix memory leakage in keyring allocation error pathGUO Zihua
2022-11-09selinux: remove the sidtab context conversion indirect callsPaul Moore
2022-11-04lsm: make security_socket_getpeersec_stream() sockptr_t safePaul Moore