summaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
* device_cgroup: Roll back to original exceptions after copy failureWang Weiyang2023-01-071-4/+29
* ima: Fix misuse of dereference of pointer in template_desc_init_fields()Xiu Jianfeng2023-01-071-2/+2
* selinux: fix inode_doinit_with_dentry() LABEL_INVALID error handlingPaul Moore2022-08-251-18/+13
* selinux: fix error initialization in inode_doinit_with_dentry()Tianyue Ren2022-08-251-3/+16
* selinux: Convert isec->lock into a spinlockAndreas Gruenbacher2022-08-252-40/+66
* selinux: Clean up initialization of isec->sclassAndreas Gruenbacher2022-08-251-6/+4
* proc: Pass file mode to proc_pid_make_inodeAndreas Gruenbacher2022-08-251-0/+1
* selinux: Minor cleanupsAndreas Gruenbacher2022-08-252-3/+4
* security,selinux,smack: kill security_task_wait hookStephen Smalley2022-07-293-32/+0
* Fix incorrect type in assignment of ipv6 port for auditCasey Schaufler2022-04-201-1/+1
* selinux: use correct type for context lengthChristian Göttsche2022-04-201-1/+1
* TOMOYO: fix __setup handlers return valuesRandy Dunlap2022-04-201-2/+2
* ima: Remove ima_policy file before directoryStefan Berger2022-02-161-1/+1
* integrity: check the return value of audit_log_start()Xiaoke Wang2022-02-161-0/+2
* selinux: initialize proto variable in selinux_ip_postroute_compat()Tom Rix2022-01-051-1/+1
* smackfs: use netlbl_cfg_cipsov4_del() for deleting cipso_v4_doiTetsuo Handa2021-11-261-1/+1
* smackfs: use __GFP_NOFAIL for smk_cipso_doi()Tetsuo Handa2021-11-261-3/+1
* smackfs: Fix use-after-free in netlbl_catmap_walk()Pawan Gupta2021-11-261-1/+4
* evm: mark evm_fixmode as __ro_after_initAustin Kim2021-11-261-1/+1
* binder: use cred instead of task for selinux checksTodd Kjos2021-11-262-25/+20
* Smack: Fix wrong semantics in smk_access_entry()Tianjia Zhang2021-09-221-9/+8
* IMA: remove -Wmissing-prototypes warningAustin Kim2021-09-221-1/+1
* smackfs: restrict bytes count in smk_set_cipso()Tetsuo Handa2021-07-201-0/+2
* selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVCMinchan Kim2021-07-201-6/+7
* smackfs: restrict bytes count in smackfs write functionsSabyrzhan Tasbolatov2021-03-071-2/+19
* KEYS: trusted: Fix migratable=1 failingJarkko Sakkinen2021-03-031-1/+1
* dump_common_audit_data(): fix racy accesses to ->d_nameAl Viro2021-01-231-2/+5
* ima: Don't ignore errors from crypto_shash_update()Roberto Sassu2020-10-291-0/+2
* selinux: sel_avc_get_stat_idx should increase position indexVasily Averin2020-10-011-0/+1
* Smack: prevent underflow in smk_set_cipso()Dan Carpenter2020-08-211-1/+1
* Smack: fix another vsscanf out of boundsDan Carpenter2020-08-211-0/+4
* Smack: fix use-after-free in smk_write_relabel_self()Eric Biggers2020-08-211-2/+11
* selinux: fix double freeTom Rix2020-06-301-0/+4
* evm: Fix possible memory leak in evm_calc_hmac_or_hash()Roberto Sassu2020-06-201-1/+1
* ima: Directly assign the ima_default_policy pointer to ima_rulesRoberto Sassu2020-06-201-2/+1
* ima: Fix ima digest hash table key calculationKrzysztof Struczynski2020-06-201-3/+4
* Smack: slab-out-of-bounds in vsscanfCasey Schaufler2020-06-201-0/+10
* exec: Always set cap_ambient in cap_bprm_set_credsEric W. Biederman2020-06-031-0/+1
* ima: Fix return value of ima_write_policy()Roberto Sassu2020-05-271-2/+1
* evm: Check also if *tfm is an error pointer in init_desc()Roberto Sassu2020-05-271-1/+1
* selinux: properly handle multiple messages in selinux_netlink_send()Paul Moore2020-05-051-24/+44
* KEYS: reaching the keys quotas correctlyYang Xu2020-04-242-3/+3
* selinux: ensure we cleanup the internal AVC counters on error in avc_update()Jaihind Yadav2020-02-281-1/+1
* keys: Timestamp new keysDavid Howells2020-01-291-0/+1
* ima: always return negative code for errorSascha Hauer2019-10-171-1/+4
* smack: use GFP_NOFS while holding inode_smack::smk_lockEric Biggers2019-10-072-3/+3
* Smack: Don't ignore other bprm->unsafe flags if LSM_UNSAFE_PTRACE is setJann Horn2019-10-071-1/+2
* security: smack: Fix possible null-pointer dereferences in smack_socket_sock_...Jia-Ju Bai2019-10-071-0/+2
* keys: Fix missing null pointer check in request_key_auth_describe()Hillf Danton2019-09-211-0/+6
* selinux: fix memory leak in policydb_init()Ondrej Mosnacek2019-08-061-1/+5