aboutsummaryrefslogtreecommitdiffstats
path: root/security (unfollow)
AgeCommit message (Expand)AuthorFilesLines
2007-11-08SELinux: add more validity checks on policy loadStephen Smalley7-38/+118
2007-11-08SELinux: fix bug in new ebitmap code.KaiGai Kohei1-1/+1
2007-11-08SELinux: suppress a warning for 64k pages.Stephen Rothwell1-6/+7
2007-10-23SELinux: always check SIGCHLD in selinux_task_waitEric Paris1-5/+1
2007-10-22capabilities: clean up file capability readingSerge E. Hallyn1-8/+15
2007-10-19pid namespaces: define is_global_init() and is_container_init()Serge E. Hallyn1-1/+2
2007-10-18sparse pointer use of zero as nullStephen Hemminger1-1/+1
2007-10-18V3 file capabilities: alter behavior of cap_setpcapAndrew Morgan2-14/+61
2007-10-17security/ cleanupsAdrian Bunk5-118/+1
2007-10-17Implement file posix capabilitiesSerge E. Hallyn6-43/+313
2007-10-17security: Convert LSM into a static interfaceJames Morris8-71/+961
2007-10-17KEYS: Make request_key() and co fundamentally asynchronousDavid Howells5-317/+335
2007-10-17SELinux: kills warnings in Improve SELinux performance when AVC missesKaiGai Kohei2-6/+7
2007-10-17SELinux: improve performance when AVC misses.KaiGai Kohei4-237/+303
2007-10-17SELinux: policy selectable handling of unknown classes and permsEric Paris5-9/+106
2007-10-17SELinux: Improve read/write performanceYuichi Nakamura5-1/+67
2007-10-17SELinux: tune avtab to reduce memory usageYuichi Nakamura4-36/+82
2007-10-15[SELINUX]: Update for netfilter ->hook() arg changes.David S. Miller1-6/+5
2007-10-10[INET]: local port range robustnessStephen Hemminger1-17/+22
2007-10-10[NET]: Support multiple network namespaces with netlinkEric W. Biederman1-2/+3
2007-10-10[NET]: Make device event notification network namespace safeEric W. Biederman1-0/+4
2007-09-20SELinux: fix array out of bounds when mounting with selinux optionsEric Paris1-0/+2
2007-08-30SELinux: clear parent death signal on SID transitionsStephen Smalley1-0/+3
2007-08-22fix NULL pointer dereference in __vm_enough_memory()Alan Cox3-6/+6
2007-08-16SELinux: correct error code in selinux_audit_rule_initSteve G1-1/+1
2007-08-02SELinux: remove redundant pointer checks before calling kfree()Paul Moore1-2/+1
2007-08-02SELinux: restore proper NetLabel caching behaviorPaul Moore1-4/+12
2007-07-31Typo fixes errror -> errorGabriel Craciunescu1-1/+1
2007-07-25SELinux: null-terminate context string in selinux_xfrm_sec_ctx_allocVenkat Yekkirala1-1/+2
2007-07-23SELinux: fix memory leak in security_netlbl_cache_add()Jesper Juhl1-1/+3
2007-07-22[PATCH] get rid of AVC_PATH postponed treatmentAl Viro1-7/+8
2007-07-20mm: Remove slab destructors from kmem_cache_create().Paul Mundt4-4/+4
2007-07-19coredump masking: reimplementation of dumpable using two flagsKawai, Hidehiro2-2/+2
2007-07-19SELinux: use SECINITSID_NETMSG instead of SECINITSID_UNLABELED for NetLabelPaul Moore2-31/+31
2007-07-19SELinux: enable dynamic activation/deactivation of NetLabel/SELinux enforcementPaul Moore1-0/+8
2007-07-18usermodehelper: Tidy up waitingJeremy Fitzhardinge1-1/+2
2007-07-17Introduce is_owner_or_cap() to wrap CAP_FOWNER use with fsuid checkSatyam Sharma1-1/+1
2007-07-16Audit: add TTY input auditingMiloslav Trmac1-0/+2
2007-07-13Revert "SELinux: use SECINITSID_NETMSG instead of SECINITSID_UNLABELED for NetLabel"Linus Torvalds2-24/+31
2007-07-11security: unexport mmap_min_addrAdrian Bunk1-1/+0
2007-07-11SELinux: use SECINITSID_NETMSG instead of SECINITSID_UNLABELED for NetLabelPaul Moore2-31/+24
2007-07-11security: Protection for exploiting null dereference using mmapEric Paris7-5/+19
2007-07-11SELinux: Use %lu for inode->i_no when printing avcTobias Oed1-1/+1
2007-07-11SELinux: allow preemption between transition permission checksStephen Smalley4-29/+45
2007-07-11selinux: introduce schedule points in policydb_destroy()Eric Paris1-0/+7
2007-07-11selinux: add selinuxfs structure for object class discoveryChristopher J. PeBenito2-0/+250
2007-07-11selinux: change sel_make_dir() to specify inode counter.Christopher J. PeBenito1-5/+6
2007-07-11selinux: rename sel_remove_bools() for more general usage.Christopher J. PeBenito1-5/+4
2007-07-11selinux: add support for querying object classes and permissions from the running policyChristopher J. PeBenito2-0/+98
2007-06-08[NetLabel]: consolidate the struct socket/sock handling to just struct sockPaul Moore1-15/+21