]> git.ipfire.org Git - thirdparty/kernel/stable.git/history - security
mlxsw: spectrum_acl_tcam: Fix warning during rehash
[thirdparty/kernel/stable.git] / security /
2024-04-10  Mickaël Salaünlandlock: Warn once if a Landlock action is requested...
2024-04-10  Roberto Sassusmack: Handle SMACK64TRANSMUTE in smack_inode_setsecurity()
2024-04-10  Roberto Sassusmack: Set SMACK64TRANSMUTE only for dirs in smack_inod...
2024-03-06  Tetsuo Handatomoyo: fix UAF write bug in tomoyo_write_control()
2024-02-23  Ondrej Mosnaceklsm: fix the logic in security_inode_getsecctx()
2024-02-23  Alfred Piccionilsm: new security_file_ioctl_compat() hook
2024-01-25  Fedor Pchelkinapparmor: avoid crash when parsed profile name is empty
2024-01-25  Mickaël Salaünselinux: Fix error priority for bind with AF_UNSPEC...
2024-01-05  David Howellskeys, dns: Allow key types (eg. DNS) to be reclaimed...
2023-11-28  Jarkko SakkinenKEYS: trusted: Rollback init_trusted() consistently
2023-11-28  Mimi Zoharima: detect changes to the backing overlay file
2023-11-28  Amir Goldsteinima: annotate iint mutex to avoid lockdep false positiv...
2023-10-19  Sumit GargKEYS: trusted: Remove redundant static calls usage
2023-10-19  Ahmad FatoumKEYS: trusted: allow use of kernel RNG for key material
2023-10-10  Arnd Bergmannima: rework CONFIG_IMA dependency block
2023-10-10  Oleksandr Tymoshenkoima: Finish deprecation of IMA_TRUSTED_KEYRING Kconfig
2023-10-06  Vishal GoelSmack:- Use overlay inode label in smack_inode_copy_up()
2023-10-06  Roberto Sassusmack: Retrieve transmuting information in smack_inode_...
2023-10-06  Roberto Sassusmack: Record transmuting in smk_transmuted
2023-09-19  Dan Carpentersmackfs: Prevent underflow in smk_set_cipso()
2023-09-19  Nayna Jainima: Remove deprecated IMA_TRUSTED_KEYRING Kconfig
2023-09-19  Nathan Chancellorof: kexec: Mark ima_{free,stable}_kexec_buffer() as...
2023-09-19  Christian Göttschesecurity: keys: perform capable check only on privilege...
2023-08-30  Christian Göttscheselinux: set next pointer before attaching to list
2023-07-27  Jiapeng Chongsecurity: keys: Modify mismatched function name
2023-07-27  Petr Pavlukeys: Fix linking a duplicate key to a keyring's assoc_...
2023-07-23  Tianjia Zhangintegrity: Fix possible multiple allocation in integrit...
2023-07-23  Danila Chernetsovapparmor: fix missing error check for rhashtable_insert...
2023-07-23  Roberto Sassuima: Fix build warnings
2023-07-23  Roberto Sassuevm: Fix build warnings
2023-07-23  Roberto Sassuevm: Complete description of evm_inode_setattr()
2023-06-09  Paul Mooreselinux: don't use make's grouped targets feature yet
2023-05-11  Paul Mooreselinux: ensure av_permissions.h is built when needed
2023-05-11  Ondrej Mosnacekselinux: fix Makefile dependencies of flask.h
2023-05-11  Randy DunlapIMA: allow/fix UML builds
2023-03-30  David Howellskeys: Do not cache key in task struct if key is request...
2023-03-10  Roberto Sassuima: Align ima_file_mmap() parameters with mmap_file...
2023-02-01  Masahiro Yamadatomoyo: fix broken dependency on *.conf.default
2023-01-12  Wang Weiyangdevice_cgroup: Roll back to original exceptions after...
2023-01-12  Huaxin Luima: Fix a potential NULL pointer access in ima_restore...
2023-01-12  Aditya Gargefi: Add iMac Pro 2017 to uefi skip cert quirk
2022-12-31  Nathan Chancellorsecurity: Restrict CONFIG_ZERO_CALL_USED_REGS to gcc...
2022-12-31  GUO Zihuaima: Simplify ima_lsm_copy_rule
2022-12-31  Kees CookLoadPin: Ignore the "contents" argument of the LSM...
2022-12-31  Xiu Jianfengapparmor: Fix memleak in alloc_ns()
2022-12-31  Xiu Jianfengapparmor: Use pointer to struct aa_label for lbs_cred
2022-12-31  John Johansenapparmor: Fix abi check to include v8 abi
2022-12-31  John Johansenapparmor: fix lockdep warning when removing a namespace
2022-12-31  Gaosheng Cuiapparmor: fix a memleak in multi_transaction_new()
2022-12-31  Xiu Jianfengima: Fix misuse of dereference of pointer in template_d...
2022-12-31  GUO Zihuaintegrity: Fix memory leakage in keyring allocation...
2022-12-31  GUO Zihuaima: Handle -ESTALE returned by ima_filter_rule_match()
2022-11-10  Gaosheng Cuicapabilities: fix potential memleak on error path from...
2022-10-29  GONG, Ruiqiselinux: enable use of both GFP_KERNEL and GFP_ATOMIC...
2022-10-26  Mimi Zoharima: fix blocking of security.ima xattrs of unsupported...
2022-10-26  Kees Cookhardening: Remove Clang's enable flag for -ftrivial...
2022-10-26  Kees Cookhardening: Avoid harmless Clang option under CONFIG_INI...
2022-10-15  Orlando Chamberlainefi: Correct Macmini DMI match in uefi cert quirk
2022-08-25  Xiu Jianfengapparmor: Fix memleak in aa_simple_write_to_buffer()
2022-08-25  Xin Xiongapparmor: fix reference count leak in aa_pivotroot()
2022-08-25  John Johansenapparmor: fix overlapping attachment computation
2022-08-25  John Johansenapparmor: fix setting unconfined mode on a loaded profile
2022-08-25  Tom Rixapparmor: fix aa_label_asxprint return check
2022-08-25  John Johansenapparmor: Fix failed mount permission check error message
2022-08-25  John Johansenapparmor: fix absroot causing audited secids to begin...
2022-08-25  John Johansenapparmor: fix quiet_denied for file rules
2022-08-17  Xiu Jianfengselinux: Add boundary check in put_entry()
2022-08-17  Xiu Jianfengselinux: fix memleak in security_read_state_kernel()
2022-07-29  Eric Snowberglockdown: Fix kexec lockdown bypass with ima policy
2022-07-23  Peter Zijlstrax86/retbleed: Add fine grained Kconfig knobs
2022-07-21  Jianglei Nieima: Fix potential memory leak in ima_init_crypto()
2022-07-21  Coiby Xuima: force signature verification when CONFIG_KEXEC_SIG...
2022-07-21  Huaxin Luima: Fix a potential integer overflow in ima_appraise_m...
2022-07-21  Xiu JianfengRevert "evm: Fix memleak in init_desc"
2022-07-02  Christian Braunerfs: support mapped mounts of mapped filesystems
2022-07-02  Christian Braunerfs: use low-level mapping helpers
2022-07-02  Christian Braunerfs: move mapping helpers
2022-06-14  David SaffordKEYS: trusted: tpm2: Fix migratable logic
2022-06-09  GUO Zihuaima: remove the IMA_TEMPLATE Kconfig option
2022-06-09  Mickaël Salaünlandlock: Fix same-layer rule unions
2022-06-09  Mickaël Salaünlandlock: Create find_rule() from unmask_layers()
2022-06-09  Mickaël Salaünlandlock: Reduce the maximum number of layers to 16
2022-06-09  Mickaël Salaünlandlock: Define access_mask_t to enforce a consistent...
2022-06-09  Mickaël Salaünlandlock: Change landlock_restrict_self(2) check ordering
2022-06-09  Mickaël Salaünlandlock: Change landlock_add_rule(2) argument check...
2022-06-09  Mickaël Salaünlandlock: Fix landlock_add_rule(2) documentation
2022-06-09  Mickaël Salaünlandlock: Format with clang-format
2022-06-09  Mickaël Salaünlandlock: Add clang-format exceptions
2022-06-09  Aditya Gargefi: Do not import certificates from UEFI Secure Boot...
2022-05-25  Daniel Thompsonlockdown: also lock down previous kgdb use
2022-05-25  Ondrej Mosnacekselinux: fix bad cleanup on error in hashtab_duplicate()
2022-04-08  Casey SchauflerFix incorrect type in assignment of ipv6 port for audit
2022-04-08  Richard Hainesselinux: allow FIOCLEX and FIONCLEX with policy capability
2022-04-08  Christian Göttscheselinux: use correct type for context length
2022-04-08  Casey SchauflerLSM: general protection fault in legacy_parse_param
2022-04-08  Randy DunlapTOMOYO: fix __setup handlers return values
2022-04-08  Dave KleikampKEYS: trusted: Avoid calling null function trusted_key_exit
2022-04-08  Andreas RammholdKEYS: trusted: Fix trusted key backends when building...
2022-04-08  Randy DunlapEVM: fix the evm= __setup handler return value
2022-04-08  Scott Mayhewselinux: Fix selinux_sb_mnt_opts_compat()
next