index
:
linux-stable.git
linux-2.6.11.y
linux-2.6.12.y
linux-2.6.13.y
linux-2.6.14.y
linux-2.6.15.y
linux-2.6.16.y
linux-2.6.17.y
linux-2.6.18.y
linux-2.6.19.y
linux-2.6.20.y
linux-2.6.21.y
linux-2.6.22.y
linux-2.6.23.y
linux-2.6.24.y
linux-2.6.25.y
linux-2.6.26.y
linux-2.6.27.y
linux-2.6.28.y
linux-2.6.29.y
linux-2.6.30.y
linux-2.6.31.y
linux-2.6.32.y
linux-2.6.33.y
linux-2.6.34.y
linux-2.6.35.y
linux-2.6.36.y
linux-2.6.37.y
linux-2.6.38.y
linux-2.6.39.y
linux-3.0.y
linux-3.1.y
linux-3.10.y
linux-3.11.y
linux-3.12.y
linux-3.13.y
linux-3.14.y
linux-3.15.y
linux-3.16.y
linux-3.17.y
linux-3.18.y
linux-3.19.y
linux-3.2.y
linux-3.3.y
linux-3.4.y
linux-3.5.y
linux-3.6.y
linux-3.7.y
linux-3.8.y
linux-3.9.y
linux-4.0.y
linux-4.1.y
linux-4.10.y
linux-4.11.y
linux-4.12.y
linux-4.13.y
linux-4.14.y
linux-4.15.y
linux-4.16.y
linux-4.17.y
linux-4.18.y
linux-4.19.y
linux-4.2.y
linux-4.20.y
linux-4.3.y
linux-4.4.y
linux-4.5.y
linux-4.6.y
linux-4.7.y
linux-4.8.y
linux-4.9.y
linux-5.0.y
linux-5.1.y
linux-5.10.y
linux-5.11.y
linux-5.12.y
linux-5.13.y
linux-5.14.y
linux-5.15.y
linux-5.16.y
linux-5.17.y
linux-5.18.y
linux-5.19.y
linux-5.2.y
linux-5.3.y
linux-5.4.y
linux-5.5.y
linux-5.6.y
linux-5.7.y
linux-5.8.y
linux-5.9.y
linux-6.0.y
linux-6.1.y
linux-6.10.y
linux-6.11.y
linux-6.12.y
linux-6.2.y
linux-6.3.y
linux-6.4.y
linux-6.5.y
linux-6.6.y
linux-6.7.y
linux-6.8.y
linux-6.9.y
linux-rolling-lts
linux-rolling-stable
master
Linux kernel stable tree
Greg Kroah-Hartman
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
security
Commit message (
Expand
)
Author
Age
Files
Lines
*
lockdown: Fix kexec lockdown bypass with ima policy
Eric Snowberg
2022-07-29
1
-0
/
+4
*
x86/retbleed: Add fine grained Kconfig knobs
Peter Zijlstra
2022-07-25
1
-11
/
+0
*
ima: Fix potential memory leak in ima_init_crypto()
Jianglei Nie
2022-07-21
1
-0
/
+1
*
ima: Fix a potential integer overflow in ima_appraise_measurement
Huaxin Lu
2022-07-21
1
-1
/
+2
*
Revert "evm: Fix memleak in init_desc"
Xiu Jianfeng
2022-07-21
1
-5
/
+2
*
ima: remove the IMA_TEMPLATE Kconfig option
GUO Zihua
2022-06-09
1
-8
/
+6
*
efi: Do not import certificates from UEFI Secure Boot for T2 Macs
Aditya Garg
2022-06-09
2
-0
/
+41
*
lsm,selinux: pass flowi_common instead of flowi to the LSM hooks
Paul Moore
2022-06-09
4
-17
/
+19
*
lockdown: also lock down previous kgdb use
Daniel Thompson
2022-05-30
1
-0
/
+2
*
include/uapi/linux/xfrm.h: Fix XFRM_MSG_MAPPING ABI breakage
Eugene Syromiatnikov
2022-05-25
1
-1
/
+3
*
selinux: fix bad cleanup on error in hashtab_duplicate()
Ondrej Mosnacek
2022-05-25
1
-1
/
+2
*
Fix incorrect type in assignment of ipv6 port for audit
Casey Schaufler
2022-04-08
1
-1
/
+1
*
selinux: allow FIOCLEX and FIONCLEX with policy capability
Richard Haines
2022-04-08
4
-1
/
+16
*
selinux: use correct type for context length
Christian Göttsche
2022-04-08
1
-1
/
+1
*
LSM: general protection fault in legacy_parse_param
Casey Schaufler
2022-04-08
2
-5
/
+17
*
TOMOYO: fix __setup handlers return values
Randy Dunlap
2022-04-08
1
-2
/
+2
*
EVM: fix the evm= __setup handler return value
Randy Dunlap
2022-04-08
1
-1
/
+1
*
selinux: check return value of sel_make_avc_files
Christian Göttsche
2022-04-08
1
-0
/
+2
*
KEYS: fix length validation in keyctl_pkey_params_get_2()
Eric Biggers
2022-04-08
1
-3
/
+11
*
ima: Do not print policy rule with inactive LSM labels
Stefan Berger
2022-02-16
1
-0
/
+8
*
ima: Allow template selection with ima_template[_fmt]= after ima_hash=
Roberto Sassu
2022-02-16
1
-3
/
+7
*
ima: Remove ima_policy file before directory
Stefan Berger
2022-02-16
1
-1
/
+1
*
integrity: check the return value of audit_log_start()
Xiaoke Wang
2022-02-16
1
-0
/
+2
*
selinux: fix double free of cond_list on error paths
Vratislav Bendel
2022-02-08
1
-1
/
+2
*
selinux: fix potential memleak in selinux_add_opt()
Bernard Zhao
2022-01-27
1
-2
/
+10
*
selinux: initialize proto variable in selinux_ip_postroute_compat()
Tom Rix
2022-01-05
1
-1
/
+1
*
tomoyo: use hwight16() in tomoyo_domain_quota_is_ok()
Tetsuo Handa
2022-01-05
1
-10
/
+7
*
tomoyo: Check exceeded quota early in tomoyo_domain_quota_is_ok().
Dmitry Vyukov
2022-01-05
1
-7
/
+7
*
selinux: fix NULL-pointer dereference when hashtab allocation fails
Ondrej Mosnacek
2021-11-26
1
-5
/
+12
*
fortify: Explicitly disable Clang support
Kees Cook
2021-11-21
1
-0
/
+3
*
apparmor: fix error check
Tom Rix
2021-11-18
1
-2
/
+2
*
smackfs: use netlbl_cfg_cipsov4_del() for deleting cipso_v4_doi
Tetsuo Handa
2021-11-18
1
-1
/
+1
*
smackfs: use __GFP_NOFAIL for smk_cipso_doi()
Tetsuo Handa
2021-11-18
1
-3
/
+1
*
smackfs: Fix use-after-free in netlbl_catmap_walk()
Pawan Gupta
2021-11-18
1
-1
/
+4
*
evm: mark evm_fixmode as __ro_after_init
Austin Kim
2021-11-18
1
-1
/
+1
*
selinux: fix race condition when computing ocontext SIDs
Ondrej Mosnacek
2021-11-18
1
-85
/
+77
*
binder: use cred instead of task for selinux checks
Todd Kjos
2021-11-18
2
-28
/
+22
*
Smack: Fix wrong semantics in smk_access_entry()
Tianjia Zhang
2021-09-18
1
-9
/
+8
*
IMA: remove the dependency on CRYPTO_MD5
THOBY Simon
2021-09-15
1
-1
/
+0
*
IMA: remove -Wmissing-prototypes warning
Austin Kim
2021-09-15
1
-1
/
+1
*
bpf: Add lockdown check for probe_write_user helper
Daniel Borkmann
2021-08-15
1
-0
/
+1
*
selinux: correct the return value when loads initial sids
Xiu Jianfeng
2021-08-12
1
-6
/
+4
*
smackfs: restrict bytes count in smk_set_cipso()
Tetsuo Handa
2021-07-19
1
-0
/
+2
*
selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVC
Minchan Kim
2021-07-19
1
-6
/
+7
*
evm: fix writing <securityfs>/evm overflow
Mimi Zohar
2021-07-14
1
-2
/
+3
*
evm: Refuse EVM_ALLOW_METADATA_WRITES only if an HMAC key is loaded
Roberto Sassu
2021-07-14
1
-4
/
+4
*
evm: Execute evm_inode_init_security() only when an HMAC key is loaded
Roberto Sassu
2021-07-14
1
-2
/
+3
*
integrity: Load mokx variables into the blacklist keyring
Eric Snowberg
2021-06-30
1
-2
/
+18
*
certs: Add EFI_CERT_X509_GUID support for dbx entries
Eric Snowberg
2021-06-30
1
-0
/
+11
*
KEYS: trusted: Fix memory leak on object td
Colin Ian King
2021-05-19
1
-3
/
+5
[next]