Commit Graph

3769 Commits (fourteen)

Author SHA1 Message Date
Connor O'Brien 316b4d650e UPSTREAM: security: selinux: allow per-file labeling for bpffs 11 months ago
Simon1511 d45b9ba98c A525FXXU4CVJB 2 years ago
Nick Desaulniers d3fcd262a0 Revert "selinux: Relocate ss_initialized and selinux_enforcing to separate 4k" 2 years ago
Kees Cook abeea7a1bb fortify: Explicitly disable Clang support 2 years ago
Simon1511 9595b51fd9 A525FXXS4BVA2 3 years ago
Simon1511 e3afebbc58 A525FXXU4BUL8 3 years ago
Simon1511 7130b6ad2d A525FXXU4AUJ2 3 years ago
Simon1511 34c64e7c67 Import A525FXXU3AUG4 3 years ago
Jeff Vander Stoep 69fc6c9bcf Revert "ANDROID: security,perf: Allow further restriction of perf_event_open" 4 years ago
Preeti Nagar df61ff22cb RTIC: Move selinux_state to a separate 4k 4 years ago
Preeti Nagar 1643169778 RTIC: Move selinux_state to a separate 4k 4 years ago
Neeraj Soni 1924eafba6 Remove Per File Key based hardware crypto framework 4 years ago
Neeraj Soni 7a42f09a94 Remove Per File Key based hardware crypto framework 4 years ago
Jann Horn ecf8e185a2 apparmor: don't try to replace stale label in ptraceme check 5 years ago
Srinivasarao P 3d8897974e Revert "Revert "ANDROID: security,perf: Allow further restriction of perf_event_open"" 5 years ago
Tom Rix 808db35a0a selinux: fix double free 5 years ago
John Johansen 8906aa8e57 apparmor: fix introspection of of task mode for unconfined tasks 5 years ago
Roberto Sassu 8464622583 evm: Fix possible memory leak in evm_calc_hmac_or_hash() 5 years ago
Roberto Sassu 1ff06c639f ima: Directly assign the ima_default_policy pointer to ima_rules 5 years ago
Krzysztof Struczynski 340b97cc94 ima: Fix ima digest hash table key calculation 5 years ago
Casey Schaufler 61f8b8965c Smack: slab-out-of-bounds in vsscanf 5 years ago
Waiman Long e27d0385df mm: add kvfree_sensitive() for freeing sensitive data objects 5 years ago
Eric W. Biederman 0483781360 exec: Always set cap_ambient in cap_bprm_set_creds 5 years ago
Xiyu Yang 50229ba3f5 apparmor: Fix aa_label refcnt leak in policy_update 5 years ago
Roberto Sassu fa63cb9b6d ima: Fix return value of ima_write_policy() 5 years ago
Roberto Sassu 9bf1124865 evm: Check also if *tfm is an error pointer in init_desc() 5 years ago
Roberto Sassu 7bc138000e ima: Set file->f_mode instead of file->f_flags in ima_calc_file_hash() 5 years ago
Paul Moore 90d4469b0a selinux: properly handle multiple messages in selinux_netlink_send() 5 years ago
Waiman Long 8d952266c3 KEYS: Avoid false positive ENOMEM error on key read 5 years ago
Waiman Long 7fa67aa305 KEYS: Don't write out to userspace while holding key semaphore 5 years ago
David Howells bea47bf26d KEYS: Use individual pages in big_key for crypto buffers 5 years ago
Yang Xu e0c85c527d KEYS: reaching the keys quotas correctly 5 years ago
Jeff Vander Stoep 4490f042f1 ANDROID: selinux: modify RTM_GETLINK permission 5 years ago
Shay 9a9deef71b pfk: Fixed ICE slot number for bare metal 5 years ago
Greg Kroah-Hartman 1cb89b322d ANDROID: fix build issue in security/selinux/avc.c 5 years ago
Jaihind Yadav ee15cd14fa selinux: ensure we cleanup the internal AVC counters on error in avc_update() 5 years ago
Dave Jiang d4fdc94421 keys: Export lookup_user_key to external users 5 years ago
David Howells b0515d5876 keys: Timestamp new keys 5 years ago
Jann Horn 49f3e22df7 apparmor: don't try to replace stale label in ptrace access check 5 years ago
Hridya Valsaraju 5bbf2879a5 FROMLIST: security: selinux: allow per-file labelling for binderfs 5 years ago
Jeff Vander Stoep 44a6aea9c2 Revert "ANDROID: security,perf: Allow further restriction of perf_event_open" 5 years ago
Jeff Vander Stoep 1ed0039bde ANDROID: selinux: modify RTM_GETLINK permission 5 years ago
Ravi Kumar Siddojigari c334883c58 selinux: move ibpkeys code under CONFIG_SECURITY_INFINIBAND 5 years ago
Joel Fernandes (Google) ca96898263 BACKPORT: perf_event: Add support for LSM and SELinux checks 5 years ago
Jeffrey Vander Stoep 7753861270 Revert "BACKPORT: perf_event: Add support for LSM and SELinux checks" 5 years ago
Jeff Vander Stoep 45319d0110 UPSTREAM: selinux: sidtab reverse lookup hash table 5 years ago
Ondrej Mosnacek ae114d920b UPSTREAM: selinux: avoid atomic_t usage in sidtab 5 years ago
Ondrej Mosnacek 114ca41561 UPSTREAM: selinux: check sidtab limit before adding a new entry 5 years ago
Ondrej Mosnacek 66018f59c0 UPSTREAM: selinux: fix context string corruption in convert_context() 5 years ago
Ondrej Mosnacek e5ecfcc0aa BACKPORT: selinux: overhaul sidtab to fix bug and improve performance 5 years ago