- 33296e8 Merge 4.9.326 into android-4.9-q by Greg Kroah-Hartman · 2 years, 4 months ago
- 3815950 selinux: fix inode_doinit_with_dentry() LABEL_INVALID error handling by Paul Moore · 4 years, 2 months ago
- c00fcec selinux: fix error initialization in inode_doinit_with_dentry() by Tianyue Ren · 4 years, 3 months ago
- 4ec11eb selinux: Convert isec->lock into a spinlock by Andreas Gruenbacher · 8 years ago
- ac17e88 selinux: Clean up initialization of isec->sclass by Andreas Gruenbacher · 8 years ago
- 891160f proc: Pass file mode to proc_pid_make_inode by Andreas Gruenbacher · 8 years ago
- 81000b6 selinux: Minor cleanups by Andreas Gruenbacher · 8 years ago
- 5a227d8 Merge 4.9.325 into android-4.9-q by Greg Kroah-Hartman · 2 years, 5 months ago
- ab83798 security,selinux,smack: kill security_task_wait hook by Stephen Smalley · 8 years ago
- f5c4d26 Merge 4.9.311 into android-4.9-q by Greg Kroah-Hartman · 2 years, 8 months ago
- 8c62a90 Fix incorrect type in assignment of ipv6 port for audit by Casey Schaufler · 2 years, 10 months ago
- 6f7fad6 selinux: use correct type for context length by Christian Göttsche · 2 years, 10 months ago
- 387a8f0 TOMOYO: fix __setup handlers return values by Randy Dunlap · 2 years, 10 months ago
- c5804dc Merge 4.9.302 into android-4.9-q by Greg Kroah-Hartman · 2 years, 10 months ago
- dd84205 ima: Remove ima_policy file before directory by Stefan Berger · 3 years ago
- 9d75b88 integrity: check the return value of audit_log_start() by Xiaoke Wang · 3 years ago
- 93c6ceb Merge 4.9.297 into android-4.9-q by Greg Kroah-Hartman · 3 years ago
- 120fb31 selinux: initialize proto variable in selinux_ip_postroute_compat() by Tom Rix · 3 years ago
- 58fa83d Merge 4.9.291 into android-4.9-q by Greg Kroah-Hartman · 3 years, 1 month ago
- a269586 smackfs: use netlbl_cfg_cipsov4_del() for deleting cipso_v4_doi by Tetsuo Handa · 3 years, 2 months ago
- 5e44e73 smackfs: use __GFP_NOFAIL for smk_cipso_doi() by Tetsuo Handa · 3 years, 2 months ago
- 7e175e3 smackfs: Fix use-after-free in netlbl_catmap_walk() by Pawan Gupta · 3 years, 4 months ago
- a5907f3 evm: mark evm_fixmode as __ro_after_init by Austin Kim · 3 years, 2 months ago
- 22d4a6d binder: use cred instead of task for selinux checks by Todd Kjos · 3 years, 3 months ago
- a69d9cd BACKPORT: binder: use cred instead of task for selinux checks by Todd Kjos · 3 years, 3 months ago
- 09db023 UPSTREAM: security: selinux: allow per-file labeling for bpffs by Connor O'Brien · 4 years, 11 months ago
- dc1c320 Merge 4.9.283 into android-4.9-q by Greg Kroah-Hartman · 3 years, 3 months ago
- 687a0bf Smack: Fix wrong semantics in smk_access_entry() by Tianjia Zhang · 3 years, 5 months ago
- 749e646 IMA: remove -Wmissing-prototypes warning by Austin Kim · 3 years, 6 months ago
- 90da9cd ANDROID: selinux: modify RTM_GETNEIGH{TBL} by Bram Bonné · 3 years, 8 months ago
- 9457058 Merge 4.9.276 into android-4.9-q by Greg Kroah-Hartman · 3 years, 5 months ago
- 5f988040 smackfs: restrict bytes count in smk_set_cipso() by Tetsuo Handa · 3 years, 9 months ago
- a6414f9 selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVC by Minchan Kim · 3 years, 7 months ago
- a4d5c09 Merge 4.9.260 into android-4.9-q by Greg Kroah-Hartman · 3 years, 10 months ago
- db89bac smackfs: restrict bytes count in smackfs write functions by Sabyrzhan Tasbolatov · 4 years ago
- 5671ebb Merge 4.9.259 into android-4.9-q by Greg Kroah-Hartman · 3 years, 10 months ago
- 22ac48d KEYS: trusted: Fix migratable=1 failing by Jarkko Sakkinen · 4 years ago
- c393a30 Merge 4.9.253 into android-4.9-q by Greg Kroah-Hartman · 4 years ago
- e8fbf06 dump_common_audit_data(): fix racy accesses to ->d_name by Al Viro · 4 years ago
- 44a1b61 Merge 4.9.241 into android-4.9-q by Greg Kroah-Hartman · 4 years, 2 months ago
- ff0ad9d ima: Don't ignore errors from crypto_shash_update() by Roberto Sassu · 4 years, 4 months ago
- 495d499 Merge 4.9.238 into android-4.9-q by Greg Kroah-Hartman · 4 years, 3 months ago
- 51d729d selinux: sel_avc_get_stat_idx should increase position index by Vasily Averin · 5 years ago
- 1e7b6ed Merge 4.9.233 into android-4.9-q by Greg Kroah-Hartman · 4 years, 4 months ago
- 0433926 Smack: prevent underflow in smk_set_cipso() by Dan Carpenter · 4 years, 5 months ago
- 5edf79a Smack: fix another vsscanf out of bounds by Dan Carpenter · 4 years, 5 months ago
- 698080a Smack: fix use-after-free in smk_write_relabel_self() by Eric Biggers · 4 years, 6 months ago
- 6e60c65 Merge 4.9.229 into android-4.9-q by Greg Kroah-Hartman · 4 years, 6 months ago
- 3062787 selinux: fix double free by Tom Rix · 4 years, 7 months ago
- 0f1687e Merge 4.9.228 into android-4.9-q by Greg Kroah-Hartman · 4 years, 6 months ago
- 4b9d238 evm: Fix possible memory leak in evm_calc_hmac_or_hash() by Roberto Sassu · 4 years, 9 months ago
- 63125a4 ima: Directly assign the ima_default_policy pointer to ima_rules by Roberto Sassu · 4 years, 7 months ago
- 446e391 ima: Fix ima digest hash table key calculation by Krzysztof Struczynski · 4 years, 8 months ago
- d901002 Smack: slab-out-of-bounds in vsscanf by Casey Schaufler · 4 years, 9 months ago
- 92339d6 Merge 4.9.226 into android-4.9-q by Greg Kroah-Hartman · 4 years, 7 months ago
- 8a093d4 exec: Always set cap_ambient in cap_bprm_set_creds by Eric W. Biederman · 4 years, 7 months ago
- ca8aaf9 Merge 4.9.225 into android-4.9-q by Greg Kroah-Hartman · 4 years, 7 months ago
- d8d4da8 ima: Fix return value of ima_write_policy() by Roberto Sassu · 4 years, 8 months ago
- ab97e5a evm: Check also if *tfm is an error pointer in init_desc() by Roberto Sassu · 4 years, 8 months ago
- 5da84b2 Merge 4.9.222 into android-4.9-q by Greg Kroah-Hartman · 4 years, 8 months ago
- 6affa87 selinux: properly handle multiple messages in selinux_netlink_send() by Paul Moore · 4 years, 8 months ago
- 90aa475 Merge 4.9.220 into android-4.9-q by Greg Kroah-Hartman · 4 years, 8 months ago
- e7681c2 KEYS: reaching the keys quotas correctly by Yang Xu · 4 years, 10 months ago
- 60fbe70 Merge 4.9.215 into android-4.9-q by Greg Kroah-Hartman · 4 years, 10 months ago
- 23a0b5a selinux: ensure we cleanup the internal AVC counters on error in avc_update() by Jaihind Yadav · 5 years ago
- 7e0f964 Merge 4.9.212 into android-4.9-q by Greg Kroah-Hartman · 5 years ago
- a9b6e55 keys: Timestamp new keys by David Howells · 6 years ago
- 2c434f6 ANDROID: selinux: modify RTM_GETLINK permission by Jeff Vander Stoep · 5 years ago
- e9766ef Merge 4.9.197 into android-4.9-q by Greg Kroah-Hartman · 5 years ago
- 1e42dec ima: always return negative code for error by Sascha Hauer · 5 years ago
- cd0d461 Merge 4.9.196 into android-4.9-q by Greg Kroah-Hartman · 5 years ago
- 1e4c7ce smack: use GFP_NOFS while holding inode_smack::smk_lock by Eric Biggers · 5 years ago
- 128373c Smack: Don't ignore other bprm->unsafe flags if LSM_UNSAFE_PTRACE is set by Jann Horn · 5 years ago
- 5f0b9f0 security: smack: Fix possible null-pointer dereferences in smack_socket_sock_rcv_skb() by Jia-Ju Bai · 5 years ago
- f360bd4 Merge 4.9.194 into android-4.9-q by Greg Kroah-Hartman · 5 years ago
- b94178b keys: Fix missing null pointer check in request_key_auth_describe() by Hillf Danton · 5 years ago
- 4ebd29e Merge 4.9.188 into android-4.9-q by Greg Kroah-Hartman · 5 years ago
- ae190f0 selinux: fix memory leak in policydb_init() by Ondrej Mosnacek · 5 years ago
- 39eed54 Merge 4.9.185 into android-4.9-q by Greg Kroah-Hartman · 5 years ago
- 4a60589 apparmor: enforce nullbyte at end of tag string by Jann Horn · 6 years ago
- 9013154 Merge 4.9.174 into android-4.9-q by Greg Kroah-Hartman · 6 years ago
- 869d1e4 selinux: never allow relabeling on context mounts by Ondrej Mosnacek · 6 years ago
- 25d7d0e Merge 4.9.171 into android-4.9-q by Greg Kroah-Hartman · 6 years ago
- b2b2862 device_cgroup: fix RCU imbalance in error case by Jann Horn · 6 years ago
- 417da48 Merge 4.9.168 into android-4.9-q by Greg Kroah-Hartman · 6 years ago
- 992baf5 selinux: do not override context on context mounts by Ondrej Mosnacek · 6 years ago
- 26fad52 Merge 4.9.164 into android-4.9 by Greg Kroah-Hartman · 6 years ago
- 713b91c missing barriers in some of unix_sock ->addr and ->path accesses by Al Viro · 6 years ago
- ccc2aae KEYS: restrict /proc/keys by credentials at open time by Eric Biggers · 7 years ago
- 9df256d Merge 4.9.161 into android-4.9 by Greg Kroah-Hartman · 6 years ago
- dc070cd KEYS: always initialize keyring_index_key::desc_len by Eric Biggers · 6 years ago
- 6704b9d KEYS: allow reaching the keys quotas exactly by Eric Biggers · 6 years ago
- 8817a28 Merge 4.9.156 into android-4.9 by Greg Kroah-Hartman · 6 years ago
- f096ede smack: fix access permissions for keyring by Zoran Markovic · 6 years ago
- fe0eb27 Merge 4.9.153 into android-4.9 by Greg Kroah-Hartman · 6 years ago
- 62044cb selinux: always allow mounting submounts by Ondrej Mosnacek · 6 years ago
- fd37e28 Merge 4.9.152 into android-4.9 by Greg Kroah-Hartman · 6 years ago
- aedbb45 selinux: fix GPF on invalid policy by Stephen Smalley · 6 years ago
- a017e39 LSM: Check for NULL cred-security on free by James Morris · 6 years ago
- 4fd72a1 Yama: Check for pid death before checking ancestry by Kees Cook · 6 years ago