aboutsummaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)AuthorFilesLines
2017-06-10apparmor: update query interface to support label queriesGravatar John Johansen 1-7/+39
2017-06-10apparmor: switch getprocattr to using label_print fns()Gravatar John Johansen 3-37/+27
2017-06-10apparmor: switch from profiles to using labels on contextsGravatar John Johansen 20-529/+686
2017-06-10apparmor: add the base fns() for domain labelsGravatar John Johansen 2-0/+2561
2017-06-10apparmor: revalidate files during execGravatar John Johansen 4-0/+81
2017-06-10apparmor: cleanup rename XXX_file_context() to XXX_file_ctx()Gravatar John Johansen 2-11/+16
2017-06-10apparmor: convert aa_change_XXX bool parameters to flagsGravatar John Johansen 5-32/+29
2017-06-10apparmor: cleanup remove unused and not fully implemented profile renameGravatar John Johansen 1-37/+2
2017-06-10apparmor: refactor updating profiles to the newest parentGravatar John Johansen 1-4/+31
2017-06-10apparmor: share profile name on replacementGravatar John Johansen 3-9/+72
2017-06-10apparmor: convert to profile block critical sectionsGravatar John Johansen 8-56/+162
2017-06-10apparmor: move bprm_committing_creds/committed_creds to lsm.cGravatar John Johansen 3-32/+30
2017-06-10apparmor: fix display of ns nameGravatar John Johansen 1-1/+1
2017-06-10apparmor: fix apparmor_query dataGravatar John Johansen 1-2/+6
2017-06-10apparmor: fix policy load/remove semanticsGravatar John Johansen 2-15/+13
2017-06-10apparmor: add namespace lookup fns()Gravatar John Johansen 3-4/+73
2017-06-10apparmor: cleanup __find_child()Gravatar John Johansen 1-8/+8
2017-06-10apparmor: provide information about path buffer size at bootGravatar John Johansen 1-2/+9
2017-06-10apparmor: add profile permission query abilityGravatar John Johansen 1-1/+102
2017-06-10apparmor: switch from file_perms to aa_permsGravatar John Johansen 5-48/+29
2017-06-10apparmor: add gerneric permissions struct and support fnsGravatar John Johansen 4-17/+153
2017-06-10apparmor: add fn to test if profile supports a given mediation classGravatar John Johansen 1-0/+10
2017-06-10apparmor: speed up transactional queriesGravatar John Johansen 1-11/+114
2017-06-10apparmor: add label data availability to the feature setGravatar John Johansen 1-0/+10
2017-06-10apparmor: add mkdir/rmdir interface to manage policy namespacesGravatar John Johansen 1-1/+94
2017-06-10apparmor: add policy revision file interfaceGravatar John Johansen 4-1/+116
2017-06-10apparmor: provide finer control over policy managementGravatar John Johansen 3-23/+35
2017-06-09security/selinux: allow security_sb_clone_mnt_opts to enable/disable native l...Gravatar Scott Mayhew 2-4/+38
2017-06-09selinux: use kmem_cache for ebitmapGravatar Junil Lee 3-6/+27
2017-06-09apparmor: rework perm mapping to a slightly broader setGravatar John Johansen 5-53/+133
2017-06-09KEYS: fix refcount_inc() on zeroGravatar Mark Rutland 1-7/+4
2017-06-09KEYS: Convert KEYCTL_DH_COMPUTE to use the crypto KPP APIGravatar Mat Martineau 2-103/+171
2017-06-09KEYS: DH: ensure the KDF counter is properly alignedGravatar Eric Biggers 1-13/+3
2017-06-09KEYS: DH: don't feed uninitialized "otherinfo" into KDFGravatar Eric Biggers 1-1/+1
2017-06-09KEYS: DH: forbid using digest_null as the KDF hashGravatar Eric Biggers 1-1/+11
2017-06-09KEYS: sanitize key structs before freeingGravatar Eric Biggers 1-3/+1
2017-06-09KEYS: trusted: sanitize all key materialGravatar Eric Biggers 1-28/+22
2017-06-09KEYS: encrypted: sanitize all key materialGravatar Eric Biggers 1-18/+13
2017-06-09KEYS: user_defined: sanitize key payloadsGravatar Eric Biggers 1-4/+12
2017-06-09KEYS: sanitize add_key() and keyctl() key payloadsGravatar Eric Biggers 1-3/+9
2017-06-09KEYS: fix freeing uninitialized memory in key_update()Gravatar Eric Biggers 1-3/+2
2017-06-09KEYS: fix dereferencing NULL payload with nonzero lengthGravatar Eric Biggers 1-2/+2
2017-06-09KEYS: encrypted: use constant-time HMAC comparisonGravatar Eric Biggers 1-2/+3
2017-06-09KEYS: encrypted: fix race causing incorrect HMAC calculationsGravatar Eric Biggers 1-83/+32
2017-06-09KEYS: encrypted: fix buffer overread in valid_master_desc()Gravatar Eric Biggers 1-16/+15
2017-06-09KEYS: encrypted: avoid encrypting/decrypting stack buffersGravatar Eric Biggers 1-8/+9
2017-06-09KEYS: put keyring if install_session_keyring_to_cred() failsGravatar Eric Biggers 1-3/+4
2017-06-09KEYS: Delete an error message for a failed memory allocation in get_derived_k...Gravatar Markus Elfring 1-3/+2
2017-06-09security: use READ_ONCE instead of deprecated ACCESS_ONCEGravatar Davidlohr Bueso 1-6/+6
2017-06-09security/keys: add CONFIG_KEYS_COMPAT to KconfigGravatar Bilal Amarni 1-0/+4