summaryrefslogtreecommitdiffstats
path: root/security
AgeCommit message (Expand)AuthorLines
2025-01-31tomoyo: use better patterns for procfs in learning modeTetsuo Handa-33/+112
2025-01-28treewide: const qualify ctl_tables where applicableJoel Granados-3/+3
2025-01-26Merge tag 'mm-nonmm-stable-2025-01-24-23-16' of git://git.kernel.org/pub/scm/...Linus Torvalds-3/+1
2025-01-26tomoyo: fix spelling errorsTetsuo Handa-7/+4
2025-01-26tomoyo: fix spelling errorTanya Agarwal-1/+1
2025-01-23Merge tag 'fsnotify_hsm_for_v6.14-rc1' of git://git.kernel.org/pub/scm/linux/...Linus Torvalds-1/+2
2025-01-23Merge tag 'bpf-next-6.14' of git://git.kernel.org/pub/scm/linux/kernel/git/bp...Linus Torvalds-1/+0
2025-01-23Merge tag 'caps-6.13-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/se...Linus Torvalds-20/+41
2025-01-22Merge tag 'AT_EXECVE_CHECK-v6.14-rc1' of git://git.kernel.org/pub/scm/linux/k...Linus Torvalds-8/+87
2025-01-22Merge tag 'hardening-v6.14-rc1' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds-0/+1
2025-01-22Merge tag 'tomoyo-pr-20250123' of git://git.code.sf.net/p/tomoyo/tomoyoLinus Torvalds-3/+40
2025-01-22Merge tag 'landlock-6.14-rc1' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds-140/+169
2025-01-22Merge tag 'keys-next-6.14-rc1' of git://git.kernel.org/pub/scm/linux/kernel/g...Linus Torvalds-4/+18
2025-01-21Merge tag 'selinux-pr-20250121' of git://git.kernel.org/pub/scm/linux/kernel/...Linus Torvalds-165/+168
2025-01-21Merge tag 'lsm-pr-20250121' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds-99/+130
2025-01-21Merge tag 'Smack-for-6.14' of https://github.com/cschaufler/smack-nextLinus Torvalds-40/+15
2025-01-21Merge tag 'integrity-v6.14' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds-3/+52
2025-01-21KEYS: trusted: dcp: fix improper sg use with CONFIG_VMAP_STACK=yDavid Gstir-4/+18
2025-01-20Merge tag 'vfs-6.14-rc1.misc' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds-1/+1
2025-01-18apparmor: fix dbus permission queries to v9 ABIJohn Johansen-0/+8
2025-01-18apparmor: gate make fine grained unix mediation behind v9 abiJohn Johansen-10/+26
2025-01-18apparmor: add fine grained af_unix mediationJohn Johansen-58/+1063
2025-01-18apparmor: in preparation for finer networking rules rework match_protJohn Johansen-14/+75
2025-01-18apparmor: lift kernel socket check out of critical sectionJohn Johansen-1/+5
2025-01-18apparmor: remove af_select macroJohn Johansen-36/+9
2025-01-18apparmor: add ability to mediate caps with policy state machineJohn Johansen-6/+62
2025-01-18apparmor: fix x_table_lookup when stacking is not the first entryJohn Johansen-23/+29
2025-01-18apparmor: add support for profiles to define the kill signalJohn Johansen-6/+34
2025-01-18apparmor: add additional flags to extended permission.John Johansen-21/+54
2025-01-18apparmor: carry mediation check on labelJohn Johansen-24/+68
2025-01-18apparmor: cleanup: refactor file_perm() to doc semantics of some checksJohn Johansen-2/+15
2025-01-18apparmor: remove explicit restriction that unconfined cannot use change_hatJohn Johansen-3/+18
2025-01-18apparmor: ensure labels with more than one entry have correct flagsJohn Johansen-1/+2
2025-01-18apparmor: switch signal mediation to use RULE_MEDIATESJohn Johansen-5/+5
2025-01-18apparmor: remove redundant unconfined check.John Johansen-2/+1
2025-01-18apparmor: cleanup: attachment perm lookup to use lookup_perms()John Johansen-8/+6
2025-01-18apparmor: Improve debug print infrastructureJohn Johansen-34/+177
2025-01-18apparmor: Use str_yes_no() helper functionThorsten Blum-4/+4
2025-01-17landlock: Optimize file path walks and prepare for audit supportMickaël Salaün-17/+27
2025-01-17landlock: Align partial refer access checks with final onesMickaël Salaün-1/+13
2025-01-17landlock: Simplify initially denied access rightsMickaël Salaün-11/+19
2025-01-17landlock: Move access typesMickaël Salaün-46/+68
2025-01-17landlock: Factor out check_access_path()Mickaël Salaün-21/+11
2025-01-14landlock: Use scoped guards for ruleset in landlock_add_rule()Mickaël Salaün-10/+4
2025-01-14landlock: Use scoped guards for rulesetMickaël Salaün-29/+23
2025-01-14landlock: Constify get_mode_access()Mickaël Salaün-1/+1
2025-01-14landlock: Handle weird filesMickaël Salaün-6/+5
2025-01-12security: remove get_task_comm() and print task comm directlyYafang Shao-3/+1
2025-01-08hardening: Document INIT_STACK_ALL_PATTERN behavior with GCCGeert Uytterhoeven-0/+1
2025-01-07selinux: make more use of str_read() when loading the policyChristian Göttsche-22/+12