summaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
...
| * | | | | | selinux: drop unnecessary NULL checkChristian Göttsche2022-06-071-1/+1
| * | | | | | selinux: add __randomize_layout to selinux_audit_dataGONG, Ruiqi2022-06-071-1/+1
| |/ / / / /
* | | | | | Merge tag 'hardening-v5.20-rc1' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2022-08-022-1/+182
|\ \ \ \ \ \ | | |_|_|/ / | |/| | | |
| * | | | | LoadPin: Enable loading from trusted dm-verity devicesMatthias Kaehlcke2022-07-082-1/+182
| | |/ / / | |/| | |
* | | | | Merge tag 'x86_kdump_for_v6.0_rc1' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds2022-08-011-1/+1
|\ \ \ \ \
| * | | | | x86/kexec: Carry forward IMA measurement log on kexecJonathan McDowell2022-07-011-1/+1
| |/ / / /
* | | | | Merge tag 'fs.idmapped.vfsuid.v5.20' of git://git.kernel.org/pub/scm/linux/ke...Linus Torvalds2022-08-012-7/+10
|\ \ \ \ \ | |_|_|_|/ |/| | | |
| * | | | attr: port attribute changes to new typesChristian Brauner2022-06-261-2/+2
| * | | | security: pass down mount idmapping to setattr hookChristian Brauner2022-06-262-5/+8
| * | | | fs: port to iattr ownership update helpersChristian Brauner2022-06-261-2/+2
| |/ / /
* | | | lockdown: Fix kexec lockdown bypass with ima policyEric Snowberg2022-07-201-0/+4
* | | | Merge tag 'integrity-v5.19-fix' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds2022-07-145-9/+10
|\ \ \ \ | | |_|/ | |/| |
| * | | ima: Fix potential memory leak in ima_init_crypto()Jianglei Nie2022-07-131-0/+1
| * | | ima: force signature verification when CONFIG_KEXEC_SIG is configuredCoiby Xu2022-07-131-0/+2
| * | | ima: Fix a potential integer overflow in ima_appraise_measurementHuaxin Lu2022-07-071-1/+2
| * | | ima: fix violation measurement list recordMimi Zohar2022-07-061-3/+3
| * | | Revert "evm: Fix memleak in init_desc"Xiu Jianfeng2022-06-151-5/+2
* | | | x86/retbleed: Add fine grained Kconfig knobsPeter Zijlstra2022-06-291-11/+0
| |/ / |/| |
* | | selinux: free contexts previously transferred in selinux_add_opt()Christian Göttsche2022-06-151-7/+4
|/ /
* / KEYS: trusted: tpm2: Fix migratable logicDavid Safford2022-06-081-2/+2
|/
* Merge tag 'pull-18-rc1-work.mount' of git://git.kernel.org/pub/scm/linux/kern...Linus Torvalds2022-06-041-0/+1
|\
| * move mount-related externs from fs.h to mount.hAl Viro2022-05-191-0/+1
* | Merge tag 'linux-kselftest-kunit-5.19-rc1' of git://git.kernel.org/pub/scm/li...Linus Torvalds2022-05-251-3/+3
|\ \
| * | apparmor: test: Use NULL macrosRicardo Ribalda2022-04-041-3/+3
| |/
* | Merge tag 'integrity-v5.19' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds2022-05-2416-52/+395
|\ \
| * | integrity: Fix sparse warnings in keyring_handlerStefan Berger2022-05-161-3/+3
| * | evm: Clean up some variablesStefan Berger2022-05-162-4/+1
| * | evm: Return INTEGRITY_PASS for enum integrity_status value '0'Stefan Berger2022-05-161-1/+1
| * | efi: Do not import certificates from UEFI Secure Boot for T2 MacsAditya Garg2022-05-152-0/+41
| * | ima: support fs-verity file digest based version 3 signaturesMimi Zohar2022-05-055-16/+177
| * | ima: permit fsverity's file digests in the IMA measurement listMimi Zohar2022-05-055-8/+90
| * | ima: define a new template field named 'd-ngv2' and templatesMimi Zohar2022-05-053-11/+73
| * | ima: use IMA default hash algorithm for integrity violationsMimi Zohar2022-05-011-1/+1
| * | ima: fix 'd-ng' comments and documentationMimi Zohar2022-05-011-3/+5
| * | ima: remove the IMA_TEMPLATE Kconfig optionGUO Zihua2022-04-071-8/+6
| * | ima: remove redundant initialization of pointer 'file'.Colin Ian King2022-04-041-1/+1
| |/
* | Merge tag 'tpmdd-next-v5.19-rc1' of git://git.kernel.org/pub/scm/linux/kernel...Linus Torvalds2022-05-246-43/+174
|\ \
| * | KEYS: trusted: Introduce support for NXP CAAM-based trusted keysAhmad Fatoum2022-05-234-2/+97
| * | KEYS: trusted: allow use of kernel RNG for key materialAhmad Fatoum2022-05-231-1/+34
| * | KEYS: trusted: allow use of TEE as backend without TCG_TPM supportAhmad Fatoum2022-05-234-17/+42
| * | certs: Factor out the blacklist hash creationMickaël Salaün2022-05-231-24/+2
* | | Merge tag 'Smack-for-5.19' of https://github.com/cschaufler/smack-nextLinus Torvalds2022-05-241-1/+0
|\ \ \
| * | | smack: Remove redundant assignmentsMichal Orzel2022-05-231-1/+0
| |/ /
* | | Merge tag 'landlock-5.19-rc1' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds2022-05-2414-286/+848
|\ \ \
| * | | landlock: Add support for file reparenting with LANDLOCK_ACCESS_FS_REFERMickaël Salaün2022-05-233-76/+528
| * | | LSM: Remove double path_rename hook calls for RENAME_EXCHANGEMickaël Salaün2022-05-234-15/+46
| * | | landlock: Move filesystem helpers and add a new oneMickaël Salaün2022-05-231-41/+46
| * | | landlock: Fix same-layer rule unionsMickaël Salaün2022-05-232-26/+54
| * | | landlock: Create find_rule() from unmask_layers()Mickaël Salaün2022-05-231-13/+28
| * | | landlock: Reduce the maximum number of layers to 16Mickaël Salaün2022-05-233-11/+12