aboutsummaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2024-05-21KEYS: trusted: Do not use WARN when encode failsGravatar Jarkko Sakkinen 1-1/+2
2024-05-21KEYS: trusted: Fix memory leak in tpm2_key_encode()Gravatar Jarkko Sakkinen 1-6/+18
2024-05-19Merge tag 'mm-stable-2024-05-17-19-19' of git://git.kernel.org/pub/scm/linux/...Gravatar Linus Torvalds 1-0/+15
2024-05-18Merge tag 'kbuild-v6.10' of git://git.kernel.org/pub/scm/linux/kernel/git/mas...Gravatar Linus Torvalds 1-1/+1
2024-05-18Merge tag 'landlock-6.10-rc1' of git://git.kernel.org/pub/scm/linux/kernel/gi...Gravatar Linus Torvalds 3-5/+224
2024-05-15Merge tag 'integrity-v6.10' of ssh://ra.kernel.org/pub/scm/linux/kernel/git/z...Gravatar Linus Torvalds 17-90/+325
2024-05-15Merge tag 'selinux-pr-20240513' of git://git.kernel.org/pub/scm/linux/kernel/...Gravatar Linus Torvalds 12-126/+146
2024-05-15Merge tag 'lsm-pr-20240513' of git://git.kernel.org/pub/scm/linux/kernel/git/...Gravatar Linus Torvalds 4-4/+0
2024-05-14Merge tag 'net-next-6.10' of git://git.kernel.org/pub/scm/linux/kernel/git/ne...Gravatar Linus Torvalds 2-2/+6
2024-05-13netlabel: fix RCU annotation for IPv4 options on socket creationGravatar Davide Caratti 2-2/+6
2024-05-13Merge tag 'keys-next-6.10-rc1' of git://git.kernel.org/pub/scm/linux/kernel/g...Gravatar Linus Torvalds 3-24/+30
2024-05-13Merge tag 'tpmdd-next-6.10-rc1' of git://git.kernel.org/pub/scm/linux/kernel/...Gravatar Linus Torvalds 2-53/+106
2024-05-13landlock: Add IOCTL access right for character and block devicesGravatar Günther Noack 3-5/+224
2024-05-10kbuild: use $(src) instead of $(srctree)/$(src) for source directoryGravatar Masahiro Yamada 1-1/+1
2024-05-09KEYS: trusted: Add session encryption protection to the seal/unseal pathGravatar James Bottomley 1-27/+61
2024-05-09KEYS: trusted: tpm2: Use struct tpm_buf for sized buffersGravatar Jarkko Sakkinen 1-23/+31
2024-05-09tpm: Store the length of the tpm_buf data separately.Gravatar Jarkko Sakkinen 1-4/+5
2024-05-09tpm: Remove tpm_send()Gravatar Jarkko Sakkinen 1-2/+12
2024-05-09docs: trusted-encrypted: add DCP as new trust sourceGravatar David Gstir 1-0/+19
2024-05-09KEYS: trusted: Introduce NXP DCP-backed trusted keysGravatar David Gstir 4-1/+328
2024-05-09KEYS: trusted: improve scalability of trust source configGravatar David Gstir 1-2/+8
2024-05-09keys: Fix overwrite of key expiration on instantiationGravatar Silvio Gissi 1-1/+2
2024-05-09keys: update key quotas in key_put()Gravatar Luis Henriques 3-23/+28
2024-04-30selinux: constify source policy in cond_policydb_dup()Gravatar Christian Göttsche 4-14/+17
2024-04-30selinux: avoid printk_ratelimit()Gravatar Christian Göttsche 1-2/+1
2024-04-30selinux: pre-allocate the status pageGravatar Christian Göttsche 1-0/+6
2024-04-25mm: init_mlocked_on_free_v3Gravatar York Jasper Niebuhr 1-0/+15
2024-04-15lsm: remove the now superfluous sentinel element from ctl_table arrayGravatar Joel Granados 4-4/+0
2024-04-12ima: add crypto agility support for template-hash algorithmGravatar Enrico Bravi 4-18/+132
2024-04-09evm: Rename is_unsupported_fs to is_unsupported_hmac_fsGravatar Stefan Berger 1-9/+10
2024-04-09fs: Rename SB_I_EVM_UNSUPPORTED to SB_I_EVM_HMAC_UNSUPPORTEDGravatar Stefan Berger 1-1/+1
2024-04-09evm: Enforce signatures on unsupported filesystem for EVM_INIT_X509Gravatar Stefan Berger 1-5/+7
2024-04-09ima: re-evaluate file integrity on file metadata changeGravatar Stefan Berger 1-1/+13
2024-04-09evm: Store and detect metadata inode attributes changesGravatar Stefan Berger 3-10/+49
2024-04-09ima: Move file-change detection variables into new structureGravatar Stefan Berger 4-13/+10
2024-04-09evm: Use the metadata inode to calculate metadata hashGravatar Stefan Berger 1-1/+1
2024-04-09evm: Implement per signature type decision in security_inode_copy_up_xattrGravatar Stefan Berger 1-3/+28
2024-04-09security: allow finer granularity in permitting copy-up of security xattrsGravatar Stefan Berger 4-5/+6
2024-04-09ima: Rename backing_inode to real_inodeGravatar Stefan Berger 1-8/+10
2024-04-08integrity: Avoid -Wflex-array-member-not-at-end warningsGravatar Gustavo A. R. Silva 7-15/+31
2024-04-08ima: define an init_module critical data recordGravatar Mimi Zohar 1-0/+7
2024-04-08ima: Fix use-after-free on a dentry's dname.nameGravatar Stefan Berger 2-7/+26
2024-04-04selinux: clarify return code in filename_trans_read_helper_compat()Gravatar Ondrej Mosnacek 1-0/+1
2024-04-03security: Place security_path_post_mknod() where the original IMA call wasGravatar Roberto Sassu 1-2/+2
2024-04-01selinux: avoid dereference of garbage after mount failureGravatar Christian Göttsche 1-5/+7
2024-03-27selinux: use u32 as bit position type in ebitmap codeGravatar Christian Göttsche 2-35/+34
2024-03-27selinux: improve symtab string hashingGravatar Christian Göttsche 1-11/+11
2024-03-27selinux: dump statistics for more hash tablesGravatar Christian Göttsche 2-7/+19
2024-03-27selinux: make more use of current_sid()Gravatar Christian Göttsche 2-21/+8
2024-03-27selinux: update numeric format specifiers for ebitmapsGravatar Christian Göttsche 1-6/+6