Jann Horn
|
95ffe19420
selinux: refactor mls_context_to_sid() and make it stricter
|
7 years ago |
peter enderborg
|
b54c85c15a
selinux: Cleanup printk logging in services
|
7 years ago |
Kees Cook
|
6396bb2215
treewide: kzalloc() -> kcalloc()
|
7 years ago |
Linus Torvalds
|
8b5c6a3a49
Merge tag 'audit-pr-20180605' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/audit
|
7 years ago |
Sachin Grover
|
efe3de79e0
selinux: KASAN: slab-out-of-bounds in xattr_getsecurity
|
7 years ago |
Richard Guy Briggs
|
cdfb6b341f
audit: use inline function to get audit context
|
7 years ago |
Stephen Smalley
|
6b6bc6205d
selinux: wrap AVC state
|
7 years ago |
Stephen Smalley
|
274f62e1e5
selinux: fix handling of uninitialized selinux state in get_bools/classes
|
7 years ago |
Paul Moore
|
e5a5ca96a4
selinux: rename the {is,set}_enforcing() functions
|
7 years ago |
Stephen Smalley
|
aa8e712cee
selinux: wrap global selinux state
|
7 years ago |
Paul Moore
|
4b14752ec4
selinux: skip bounded transition processing if the policy isn't loaded
|
7 years ago |
Paul Moore
|
ef28df55ac
selinux: ensure the context is NUL terminated in security_context_to_sid_core()
|
7 years ago |
Kyeongdon Kim
|
7c620ece12
selinux: Use kmem_cache for hashtab_node
|
8 years ago |
Stephen Smalley
|
7efbb60b45
selinux: update my email address
|
8 years ago |
Stephen Smalley
|
af63f4193f
selinux: Generalize support for NNP/nosuid SELinux domain transitions
|
8 years ago |
Junil Lee
|
b4958c892e
selinux: use kmem_cache for ebitmap
|
8 years ago |
Daniel Jurgens
|
ab861dfca1
selinux: Add IB Port SMP access vector
|
8 years ago |
Daniel Jurgens
|
cfc4d882d4
selinux: Implement Infiniband PKey "Access" access vector
|
8 years ago |
Stephen Smalley
|
4dc2fce342
selinux: log policy capability state when a policy is loaded
|
8 years ago |
Matthias Kaehlcke
|
342e91578e
selinux: Remove unnecessary check of array base in selinux_set_mapping()
|
8 years ago |
Stephen Smalley
|
2651225b5e
selinux: wrap cgroup seclabel support with its own policy capability
|
8 years ago |
Stephen Smalley
|
da69a5306a
selinux: support distinctions among all network address families
|
8 years ago |
Stephen Smalley
|
7ea59202db
selinux: Only apply bounds checking to source types
|
9 years ago |
Prarit Bhargava
|
0fd71a620b
selinux: Change bool variable name to index.
|
9 years ago |
Andrew Perepechko
|
f9df645821
selinux: export validatetrans decisions
|
9 years ago |
Rasmus Villemoes
|
9529c7886c
selinux: use sprintf return value
|
10 years ago |
Rasmus Villemoes
|
21b76f199e
selinux: use kstrdup() in security_get_bools()
|
10 years ago |
Rasmus Villemoes
|
aa736c36db
selinux: use kmemdup in security_sid_to_context_core()
|
10 years ago |
Rasmus Villemoes
|
44be2f65d9
selinux: introduce security_context_str_to_sid
|
10 years ago |
Jeff Vander Stoep
|
fa1aa143ac
selinux: extended permissions for ioctls
|
10 years ago |