index
:
puma-linux.git
linux-4.19.34-puma
puma-release-4.4-2017-05-19
puma-release-4.4-2017-06-23
puma-release-4.4-2018-01-11
puma-release-4.4-2018-01-11-gopher
puma-release-4.4.120-2018-03-27
puma-release-4.4.126-2018-04-12
puma-release-4.4.126-2018-04-12-peafowl
puma-release-4.4.126-2018-04-12-peafowl-v3
puma-release-4.4.167-20190320
rk3399-android9.0-sdk-puma
stable-4.4-rk3399-linux-v2.1x-20190705-som
v6.0.2-puma
Linux kernel for PUMA SOM-RK3399-Q7
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
security
Age
Commit message (
Expand
)
Author
2017-02-16
selinux: fix off-by-one in setprocattr
Stephen Smalley
2017-01-27
apparmor: do not expose kernel stack
Heinrich Schuchardt
2017-01-27
apparmor: fix module parameters can be changed after policy is locked
John Johansen
2017-01-27
apparmor: fix oops in profile_unpack() when policy_db is not present
John Johansen
2017-01-27
apparmor: don't check for vmalloc_addr if kvzalloc() failed
John Johansen
2017-01-27
apparmor: add missing id bounds check on dfa verification
John Johansen
2017-01-27
apparmor: fix refcount race when finding a child profile
John Johansen
2017-01-27
apparmor: check that xindex is in trans_table bounds
John Johansen
2017-01-27
apparmor: ensure the target profile name is always audited
John Johansen
2017-01-27
apparmor: fix audit full profile hname on successful load
John Johansen
2017-01-27
apparmor: fix log failures for all profiles in a set
John Johansen
2017-01-27
apparmor: fix put() parent ref after updating the active ref
John Johansen
2017-01-27
apparmor: internal paths should be treated as disconnected
John Johansen
2017-01-27
apparmor: fix disconnected bind mnts reconnection
John Johansen
2017-01-27
apparmor: fix update the mtime of the profile file on replacement
John Johansen
2017-01-27
apparmor: exec should not be returning ENOENT when it denies
John Johansen
2017-01-27
apparmor: fix uninitialized lsm_audit member
John Johansen
2017-01-27
apparmor: fix replacement bug that adds new child to old parent
John Johansen
2017-01-27
apparmor: fix refcount bug in profile replacement
John Johansen
2016-12-12
apparmor: fix change_hat not finding hat after policy replacement
John Johansen
2016-11-22
KEYS: Fix short sprintf buffer in /proc/keys show function
David Howells
2016-10-07
security: let security modules use PTRACE_MODE_* with bitmasks
Jann Horn
2016-08-19
apparmor: fix ref count leak when profile sha1 hash is read
John Johansen
2016-07-21
KEYS: potential uninitialized variable
Dan Carpenter
2016-04-23
EVM: Use crypto_memneq() for digest comparisons
Ryan Ware
2016-04-23
KEYS: Fix handling of stored error in a negatively instantiated user key
David Howells
2016-02-24
ptrace: use fsuid, fsgid, effective creds for fs access checks
Jann Horn
2016-01-25
KEYS: Fix keyring ref leak in join_session_keyring()
Yevgeny Pats
2016-01-25
KEYS: Fix race between read and revoke
David Howells
2015-11-18
KEYS: Fix crash when attempt to garbage collect an uninstantiated keyring
David Howells
2015-11-18
KEYS: Fix race between key destruction and finding a keyring by name
David Howells
2015-08-19
ima: extend "mask" policy matching support
Mimi Zohar
2015-08-19
ima: add support for new "euid" policy condition
Mimi Zohar
2015-06-10
lsm: copy comm before calling audit_log to avoid race in string printing
Richard Guy Briggs
2015-04-27
nick kvfree() from apparmor
Al Viro
2015-04-22
selinux: fix sel_write_enforce broken return value
Joe Perches
2015-04-09
Don't leak a key reference if request_key() tries to use a revoked keyring
David Jeffery
2015-02-16
SELinux: fix selinuxfs policy file on big endian systems
Eric Paris
2015-01-29
move d_rcu from overlapping d_child to overlapping d_alias
Al Viro
2015-01-29
KEYS: close race between key lookup and freeing
Sasha Levin
2015-01-07
KEYS: Fix stale key registration at error path
Takashi Iwai
2014-11-13
selinux: fix inode security list corruption
Stephen Smalley
2014-11-13
evm: check xattr value length and type in evm_inode_setxattr()
Dmitry Kasatkin
2014-09-17
CAPABILITIES: remove undefined caps from all processes
Eric Paris
2014-06-23
evm: prohibit userspace writing 'security.evm' HMAC value
Mimi Zohar
2014-06-23
ima: introduce ima_kernel_read()
Dmitry Kasatkin
2014-06-20
ima: audit log files opened with O_DIRECT flag
Mimi Zohar
2014-06-09
device_cgroup: check if exception removal is allowed
Aristeu Rozanski
2014-06-09
device_cgroup: rework device access check and exception checking
Aristeu Rozanski
2014-04-13
selinux: correctly label /proc inodes in use before the policy is loaded
Paul Moore
[next]