- 726eb70 Merge tag 'char-misc-5.10-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/gregkh/char-misc by Linus Torvalds · 4 years, 3 months ago
- 7b54081 Merge tag 'selinux-pr-20201012' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux by Linus Torvalds · 4 years, 3 months ago
- 99a6740 Merge tag 'Smack-for-5.10' of git://github.com/cschaufler/smack-next by Linus Torvalds · 4 years, 3 months ago
- b274279 Merge tag 'tomoyo-pr-20201012' of git://git.osdn.net/gitroot/tomoyo/tomoyo-test1 by Linus Torvalds · 4 years, 3 months ago
- 39a5101 Merge branch 'linus' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/crypto-2.6 by Linus Torvalds · 4 years, 3 months ago
- 85ed13e Merge branch 'work.iov_iter' of git://git.kernel.org/pub/scm/linux/kernel/git/viro/vfs by Linus Torvalds · 4 years, 3 months ago
- e6412f9 Merge tag 'efi-core-2020-10-12' of git://git.kernel.org/pub/scm/linux/kernel/git/tip/tip by Linus Torvalds · 4 years, 3 months ago
- a207516 tomoyo: Loosen pathname/domainname validation. by Tetsuo Handa · 4 years, 4 months ago
- edd6153 Smack: Remove unnecessary variable initialization by Casey Schaufler · 4 years, 3 months ago
- 0fa8e08 fs/kernel_file_read: Add "offset" arg for partial reads by Kees Cook · 4 years, 3 months ago
- 34736da IMA: Add support for file reads without contents by Scott Branden · 4 years, 3 months ago
- 2039bda LSM: Add "contents" flag to kernel_read_file hook by Kees Cook · 4 years, 3 months ago
- 4f2d99b firmware_loader: Use security_post_load_data() by Kees Cook · 4 years, 3 months ago
- b64fcae LSM: Introduce kernel_post_load_data() hook by Kees Cook · 4 years, 3 months ago
- 8853528 fs/kernel_read_file: Add file_size output argument by Kees Cook · 4 years, 3 months ago
- 113eeb5 fs/kernel_read_file: Switch buffer size arg to size_t by Kees Cook · 4 years, 3 months ago
- f7a4f68 fs/kernel_read_file: Remove redundant size argument by Kees Cook · 4 years, 3 months ago
- b89999d0 fs/kernel_read_file: Split into separate include file by Scott Branden · 4 years, 3 months ago
- c307459 fs/kernel_read_file: Remove FIRMWARE_PREALLOC_BUFFER enum by Kees Cook · 4 years, 3 months ago
- 5d47b39 security/keys: remove compat_keyctl_instantiate_key_iov by Christoph Hellwig · 4 years, 3 months ago
- 89cd35c iov_iter: transparently handle compat iovecs in import_iovec by Christoph Hellwig · 4 years, 3 months ago
- 0b7e44d integrity: Asymmetric digsig supports SM2-with-SM3 algorithm by Tianjia Zhang · 4 years, 4 months ago
- bf0afe6 Smack: Fix build when NETWORK_SECMARK is not set by Casey Schaufler · 4 years, 3 months ago
- 726bd89 integrity: Load certs from the EFI MOK config table by Lenny Szubowicz · 4 years, 4 months ago
- 38a1f03 integrity: Move import of MokListRT certs to a separate routine by Lenny Szubowicz · 4 years, 4 months ago
- 1e484d3 Merge tag 'fixes-v5.9a' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 4 years, 4 months ago
- 8861d0a selinux: Add helper functions to get and set checkreqprot by Lakshmi Ramasubramanian · 4 years, 4 months ago
- 322dd63 Smack: Use the netlabel cache by Casey Schaufler · 4 years, 5 months ago
- a2af031 Smack: Set socket labels only once by Casey Schaufler · 4 years, 5 months ago
- 36be812 Smack: Consolidate uses of secmark into a function by Casey Schaufler · 4 years, 5 months ago
- e8ba53d0 selinux: access policycaps with READ_ONCE/WRITE_ONCE by Stephen Smalley · 4 years, 4 months ago
- 66ccd25 selinux: simplify away security_policydb_len() by Ondrej Mosnacek · 4 years, 4 months ago
- 9ff9abc selinux: move policy mutex to selinux_state, use in lockdep checks by Stephen Smalley · 4 years, 4 months ago
- 0256b0a selinux: fix error handling bugs in security_load_policy() by Dan Carpenter · 4 years, 4 months ago
- 1b8b31a selinux: convert policy read-write lock to RCU by Stephen Smalley · 4 years, 5 months ago
- c76a2f9 selinux: delete repeated words in comments by Randy Dunlap · 4 years, 5 months ago
- df561f66 treewide: Use fallthrough pseudo-keyword by Gustavo A. R. Silva · 4 years, 4 months ago
- 30969bc selinux: add basic filtering for audit trace events by Peter Enderborg · 4 years, 5 months ago
- dd81662 selinux: add tracepoint on audited events by Thiébaud Weksteen · 4 years, 5 months ago
- 0eea609 selinux: Create new booleans and class dirs out of tree by Daniel Burgener · 4 years, 5 months ago
- 613ba18 selinux: Standardize string literal usage for selinuxfs directory names by Daniel Burgener · 4 years, 5 months ago
- 66ec384 selinux: Refactor selinuxfs directory populating functions by Daniel Burgener · 4 years, 5 months ago
- aeecf4a selinux: Create function for selinuxfs directory cleanup by Daniel Burgener · 4 years, 5 months ago
- 9530a3e selinux: permit removing security.selinux xattr before policy load by Stephen Smalley · 4 years, 5 months ago
- bc62d68 device_cgroup: Fix RCU list debugging warning by Amol Grover · 4 years, 9 months ago
- 8792293 selinux: fix memdup.cocci warnings by kernel test robot · 4 years, 5 months ago
- 37ea433 selinux: avoid dereferencing the policy prior to initialization by Stephen Smalley · 4 years, 5 months ago
- 69ea651 selinux: fix allocation failure check on newpolicy->sidtab by Colin Ian King · 4 years, 5 months ago
- c7c556f selinux: refactor changing booleans by Stephen Smalley · 4 years, 5 months ago
- 02a52c5 selinux: move policy commit after updating selinuxfs by Stephen Smalley · 4 years, 5 months ago
- 4616980 selinux: encapsulate policy state, refactor policy load by Stephen Smalley · 4 years, 5 months ago
- 339949b scripts/selinux,selinux: update mdp to enable policy capabilities by Stephen Smalley · 4 years, 5 months ago
- 9ad57f6 Merge branch 'akpm' (patches from Andrew) by Linus Torvalds · 4 years, 5 months ago
- 64019a2 mm/gup: remove task_struct pointer for all gup code by Peter Xu · 4 years, 5 months ago
- ce13266 Merge tag 'for-v5.9' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 4 years, 5 months ago
- 453431a mm, treewide: rename kzfree() to kfree_sensitive() by Waiman Long · 4 years, 5 months ago
- c9fecf5 Replace HTTP links with HTTPS ones: security by Alexander A. Klimov · 4 years, 6 months ago
- 4cec929 Merge tag 'integrity-v5.9' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity by Linus Torvalds · 4 years, 5 months ago
- bfdd5aa Merge tag 'Smack-for-5.9' of git://github.com/cschaufler/smack-next by Linus Torvalds · 4 years, 5 months ago
- 74858ab Merge tag 'cap-checkpoint-restore-v5.9' of git://git.kernel.org/pub/scm/linux/kernel/git/brauner/linux by Linus Torvalds · 4 years, 5 months ago
- 3950e97 Merge branch 'exec-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/user-namespace by Linus Torvalds · 4 years, 5 months ago
- fd76a74 Merge tag 'audit-pr-20200803' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit by Linus Torvalds · 4 years, 5 months ago
- 49e917d Merge tag 'selinux-pr-20200803' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux by Linus Torvalds · 4 years, 5 months ago
- 5b5d3be Merge tag 'var-init-v5.9-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/kees/linux by Linus Torvalds · 4 years, 5 months ago
- 382625d Merge tag 'for-5.9/block-20200802' of git://git.kernel.dk/linux-block by Linus Torvalds · 4 years, 5 months ago
- 3db0d0c integrity: remove redundant initialization of variable ret by Colin Ian King · 4 years, 6 months ago
- 42a2df3 Smack: prevent underflow in smk_set_cipso() by Dan Carpenter · 4 years, 6 months ago
- a6bd4f6 Smack: fix another vsscanf out of bounds by Dan Carpenter · 4 years, 6 months ago
- f1d9b23 audit: purge audit_log_string from the intra-kernel audit API by Richard Guy Briggs · 4 years, 6 months ago
- be619f7 exec: Implement kernel_execve by Eric W. Biederman · 4 years, 6 months ago
- 311aa6a ima: move APPRAISE_BOOTPARAM dependency on ARCH_POLICY to runtime by Bruno Meneguele · 4 years, 6 months ago
- 1768215 ima: AppArmor satisfies the audit rule requirements by Tyler Hicks · 4 years, 7 months ago
- b8867ee ima: Rename internal filter rule functions by Tyler Hicks · 4 years, 6 months ago
- 4834177 ima: Support additional conditionals in the KEXEC_CMDLINE hook function by Tyler Hicks · 4 years, 6 months ago
- 592b24c ima: Use the common function to detect LSM conditionals in a rule by Tyler Hicks · 4 years, 6 months ago
- 30031b0 ima: Move comprehensive rule validation checks out of the token parser by Tyler Hicks · 4 years, 6 months ago
- aa0c022 ima: Use correct type for the args_p member of ima_rule_entry.lsm elements by Tyler Hicks · 4 years, 6 months ago
- 39e5993 ima: Shallow copy the args_p member of ima_rule_entry.lsm elements by Tyler Hicks · 4 years, 6 months ago
- 5f3e926 ima: Fail rule parsing when appraise_flag=blacklist is unsupportable by Tyler Hicks · 4 years, 6 months ago
- 124ea65 capabilities: Introduce CAP_CHECKPOINT_RESTORE by Adrian Reber · 4 years, 6 months ago
- eb624fe ima: Fail rule parsing when the KEY_CHECK hook is combined with an invalid cond by Tyler Hicks · 4 years, 6 months ago
- db2045f ima: Fail rule parsing when the KEXEC_CMDLINE hook is combined with an invalid cond by Tyler Hicks · 4 years, 6 months ago
- 71218343 ima: Fail rule parsing when buffer hook functions have an invalid action by Tyler Hicks · 4 years, 6 months ago
- 2bdd737 ima: Free the entire rule if it fails to parse by Tyler Hicks · 4 years, 6 months ago
- 465aee7 ima: Free the entire rule when deleting a list of rules by Tyler Hicks · 4 years, 6 months ago
- 9ff8a61 ima: Have the LSM free its audit rule by Tyler Hicks · 4 years, 6 months ago
- 34e980b IMA: Add audit log for failure conditions by Lakshmi Ramasubramanian · 4 years, 7 months ago
- 2f84588 integrity: Add errno field in audit message by Lakshmi Ramasubramanian · 4 years, 7 months ago
- beb4ee6 Smack: fix use-after-free in smk_write_relabel_self() by Eric Biggers · 4 years, 6 months ago
- 54b27f9 selinux: complete the inlining of hashtab functions by Ondrej Mosnacek · 4 years, 6 months ago
- 24def7b selinux: prepare for inlining of hashtab functions by Ondrej Mosnacek · 4 years, 6 months ago
- 237389e selinux: specialize symtab insert and search functions by Ondrej Mosnacek · 4 years, 6 months ago
- d7481b2 audit: issue CWD record to accompany LSM_AUDIT_DATA_* records by Richard Guy Briggs · 4 years, 6 months ago
- 2c3d8df selinux: Fix spelling mistakes in the comments by lihao · 4 years, 6 months ago
- a1f9b1c integrity/ima: switch to using __kernel_read by Christoph Hellwig · 4 years, 8 months ago
- 615bc21 Merge tag 'fixes-v5.8-rc3-a' of git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security by Linus Torvalds · 4 years, 6 months ago
- 65d9635 selinux: fixed a checkpatch warning with the sizeof macro by Ethan Edwards · 4 years, 6 months ago
- 20c59ce ima: extend boot_aggregate with kernel measurements by Maurizio Drocco · 4 years, 7 months ago
- 3f1266f block: move block-related definitions out of fs.h by Christoph Hellwig · 4 years, 7 months ago
- 7383c0f selinux: log error messages on required process class / permissions by Stephen Smalley · 4 years, 7 months ago