summaryrefslogtreecommitdiff
path: root/security
AgeCommit message (Expand)Author
4 daysxen/privcmd: add boot control for restricted usage in domUJuergen Gross
2026-03-13apparmor: fix race between freeing data and fs accessing itJohn Johansen
2026-03-13apparmor: fix race on rawdata dereferenceJohn Johansen
2026-03-13apparmor: fix differential encoding verificationJohn Johansen
2026-03-13apparmor: fix unprivileged local user can do privileged policy managementJohn Johansen
2026-03-13apparmor: Fix double free of ns_name in aa_replace_profiles()John Johansen
2026-03-13apparmor: fix missing bounds check on DEFAULT table in verify_dfa()Massimiliano Pellizzer
2026-03-13apparmor: fix side-effect bug in match_char() macro usageMassimiliano Pellizzer
2026-03-13apparmor: fix: limit the number of levels of policy namespacesJohn Johansen
2026-03-13apparmor: replace recursive profile removal with iterative approachMassimiliano Pellizzer
2026-03-13apparmor: fix memory leak in verify_headerMassimiliano Pellizzer
2026-03-13apparmor: validate DFA start states are in bounds in unpack_pdbMassimiliano Pellizzer
2026-03-04ima: verify the previous kernel's IMA buffer lies in addressable RAMHarshit Mogalapalli
2026-02-26apparmor: fix aa_label to return state from compount and component matchJohn Johansen
2026-02-26apparmor: fix invalid deref of rawdata when export_binary is unsetGeorgia Garcia
2026-02-26apparmor: avoid per-cpu hold underflow in aa_get_bufferZhengmian Hu
2026-02-26apparmor: make label_match return a consistent valueJohn Johansen
2026-02-26apparmor: remove apply_modes_to_perms from label_matchJohn Johansen
2026-02-26apparmor: fix rlimit for posix cpu timersJohn Johansen
2026-02-26apparmor: move check for aa_null file to cover all casesJohn Johansen
2026-02-26apparmor: account for in_atomic removal in common_file_permRyan Lee
2026-02-26apparmor: drop in_atomic flag in common_mmap, and common_file_permJohn Johansen
2026-02-26apparmor: fix boolean argument in apparmor_mmap_fileRyan Lee
2026-02-26apparmor: return -ENOMEM in unpack_perms_table upon alloc failureRyan Lee
2026-02-26apparmor: Fix & Optimize table creation from possibly unaligned memoryHelge Deller
2026-02-26AppArmor: Allow apparmor to handle unaligned dfa tablesHelge Deller
2026-02-26apparmor: fix NULL sock in aa_sock_file_permJohn Johansen
2026-02-26apparmor: fix NULL pointer dereference in __unix_needs_revalidationSystem Administrator
2026-02-26evm: Use ordered xattrs list to calculate HMAC in evm_init_hmac()Roberto Sassu
2026-02-26smack: /smack/doi: accept previously used valuesKonstantin Andreev
2026-02-26smack: /smack/doi must be > 0Konstantin Andreev
2026-02-26ima: Fix stack-out-of-bounds in is_bprm_creds_for_exec()Chris J Arges
2026-01-29lsm: preserve /proc/sys/vm/mmap_min_addr when !CONFIG_SECURITYPaul Moore
2026-01-25keys/trusted_keys: fix handle passed to tpm_buf_append_name during unsealSrish Srinivasan
2026-01-18Merge tag 'landlock-6.19-rc6' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds
2025-12-29landlock: Improve the comment for domain_is_scopedTingmao Wang
2025-12-29landlock: Optimize stack usage when !CONFIG_AUDITMickaël Salaün
2025-12-26landlock: Fix spellingMickaël Salaün
2025-12-26landlock: Clean up hook_ptrace_access_check()Mickaël Salaün
2025-12-26landlock: Improve erratum documentationMickaël Salaün
2025-12-26landlock: Remove useless includeMickaël Salaün
2025-12-26landlock: Fix wrong type usageTingmao Wang
2025-12-26landlock: Fix TCP handling of short AF_UNSPEC addressesMatthieu Buffet
2025-12-26landlock: Fix formattingMickaël Salaün
2025-12-23kernel/kexec: change the prototype of kimage_map_segment()Pingfan Liu
2025-12-14Merge tag 'tomoyo-pr-20251212' of git://git.code.sf.net/p/tomoyo/tomoyoLinus Torvalds
2025-12-06Merge tag 'landlock-6.19-rc1' of git://git.kernel.org/pub/scm/linux/kernel/gi...Linus Torvalds
2025-12-05Merge tag 'tpmdd-sessions-next-6.19-rc1' of git://git.kernel.org/pub/scm/linu...Linus Torvalds
2025-12-05Merge tag 'pull-persistency' of git://git.kernel.org/pub/scm/linux/kernel/git...Linus Torvalds
2025-12-05tpm2-sessions: Open code tpm_buf_append_hmac_session()Jarkko Sakkinen