2020-01-02 | Arnd Bergmann | gcc-plugins: make it possible to disable CONFIG_GCC_PLUGINS... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-12-09 | Pankaj Bharadiya | treewide: Use sizeof_field() macro Co-developed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-12-09 | Pankaj Bharadiya | MIPS: OCTEON: Replace SIZEOF_FIELD() macro Co-developed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-10-29 | Ben Dooks (Codethink) | pstore: Make pstore_choose_compression() static Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-10-28 | Christian Brauner | seccomp: rework define for SECCOMP_USER_NOTIF_FLAG_CONTINUE Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-10-21 | Christian Brauner | seccomp: fix SECCOMP_USER_NOTIF_FLAG_CONTINUE test Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-10-10 | Christian Brauner | seccomp: simplify secure_computing() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-10-10 | Christian Brauner | seccomp: test SECCOMP_USER_NOTIF_FLAG_CONTINUE Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-10-10 | Christian Brauner | seccomp: add SECCOMP_USER_NOTIF_FLAG_CONTINUE Co-developed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-10-10 | Christian Brauner | seccomp: avoid overflow in implicit constant conversion Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-09-17 | Kees Cook | usercopy: Avoid HIGHMEM pfn warning Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-08-19 | Kees Cook | lkdtm: Split WARNING into separate tests Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-08-12 | Kees Cook | lkdtm: Add Control Flow Integrity test Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-07-31 | Joonwon Kang | randstruct: Check member structs in is_pure_ops_struct() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-07-25 | Arnd Bergmann | structleak: disable STRUCTLEAK_BYREF in combination... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-07-09 | Norbert Manthey | pstore: Fix double-free in pstore_mkfile() failure... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-07-09 | Greg Kroah-Hartman | pstore: no need to check return value of debugfs_create... Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-07-09 | Douglas Anderson | pstore/ram: Improve backward compatibility with older... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-06-05 | Kees Cook | lib/test_stackinit: Handle Clang auto-initialization... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-05-31 | Ke Wu | security/loadpin: Allow to exclude specific file types Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-05-31 | Kees Cook | pstore/ram: Run without kernel crash dump region Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-05-31 | Pi-Hsun Shih | pstore: Set tfm to NULL on free_buf_for_compression Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-05-20 | Kees Cook | gcc-plugins: Fix build failures under Darwin host Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-05-10 | Chris Packham | gcc-plugins: arm_ssp_per_task_plugin: Fix for older... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-04-25 | Tycho Andersen | seccomp: Make NEW_LISTENER and TSYNC flags exclusive Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-04-25 | Kees Cook | selftests/seccomp: Prepare for exclusive seccomp flags Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-04-24 | Kees Cook | security: Implement Clang's stack initialization Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-04-24 | Kees Cook | security: Move stackleak config to Kconfig.hardening Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-04-24 | Kees Cook | security: Create "kernel hardening" config area Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-04-07 | Kees Cook | lkdtm/bugs: Adjust recursion test to avoid elision Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-04-07 | Kees Cook | lkdtm/usercopy: Moves the KERNEL_DS test to non-canonical Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-03-04 | Kees Cook | lib: Introduce test_stackinit module Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-03-04 | Kees Cook | gcc-plugins: structleak: Generalize to all variable... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-02-12 | Kees Cook | pstore/ram: Avoid needless alloc during header write Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-02-12 | Yue Hu | pstore/ram: Add kmsg hlen zero check to ramoops_pstore_write() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-02-12 | Yue Hu | pstore/ram: Move initialization earlier Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-02-12 | Yue Hu | pstore: Avoid writing records with zero size Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-22 | Yue Hu | pstore/ram: Replace dummy_data heap memory with stack... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-20 | Kees Cook | pstore/ram: Avoid allocation and leak of platform data Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-20 | Ard Biesheuvel | gcc-plugins: arm_ssp_per_task_plugin: fix for GCC 9+ Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-20 | Ard Biesheuvel | gcc-plugins: arm_ssp_per_task_plugin: sign extend the... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-17 | Sai Prakash Ranjan | pstore/ram: Fix console ramoops to show the previous... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-09 | Christophe Leroy | lkdtm: Add tests for NULL pointer dereference Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-09 | Christophe Leroy | lkdtm: Print real addresses Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-09 | Kees Cook | lkdtm: Do not depend on BLOCK and clean up headers Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | TOMOYO: Update LSM flags to no longer be exclusive Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | LSM: Infrastructure management of the ipc security... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | Smack: Abstract use of ipc security blobs Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | SELinux: Abstract use of ipc security blobs Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | LSM: Infrastructure management of the task security Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | LSM: Infrastructure management of the inode security Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | Smack: Abstract use of inode security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | SELinux: Abstract use of inode security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | LSM: Infrastructure management of the file security Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | Smack: Abstract use of file security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | SELinux: Abstract use of file security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | Infrastructure management of the cred security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | TOMOYO: Abstract use of cred security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | AppArmor: Abstract use of cred security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | SELinux: Remove unused selinux_is_enabled Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | SELinux: Remove cred security blob poisoning Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | SELinux: Abstract use of cred security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | Smack: Abstract use of cred security blob Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | procfs: add smack subdir to attrs The original implementation is by Kees Cook. Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | capability: Initialize as LSM_ORDER_FIRST Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Introduce enum lsm_order Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | Yama: Initialize as ordered LSM Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LoadPin: Initialize as ordered LSM Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Split LSM preparation from initialization Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Casey Schaufler | LSM: Add all exclusive LSMs to ordered initialization Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | selinux: Remove SECURITY_SELINUX_BOOTPARAM_VALUE Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | apparmor: Remove SECURITY_APPARMOR_BOOTPARAM_VALUE Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Separate idea of "major" LSM from "exclusive" LSM Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Refactor "security=" in terms of enable/disable Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Prepare for reorganizing "security=" logic Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Tie enabling logic to presence in ordered list Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Introduce "lsm=" for boottime LSM selection Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Introduce CONFIG_LSM Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Build ordered list of LSMs to initialize Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Lift LSM selection out of individual LSMs Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Plumb visibility into optional "enabled" state Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Provide separate ordered initialization Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2019-01-08 | Kees Cook | LSM: Introduce LSM_FLAG_LEGACY_MAJOR Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-14 | Tycho Andersen | seccomp, s390: fix build for syscall type change Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-14 | Tycho Andersen | seccomp: fix poor type promotion Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-12 | Ard Biesheuvel | ARM: smp: add support for per-task stack canaries Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-12 | Tycho Andersen | samples: add an example of seccomp user trap CC: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-12 | Tycho Andersen | seccomp: add a return code to trap to userspace CC: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-12 | Tycho Andersen | seccomp: switch system call argument type to void * CC: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-12 | Tycho Andersen | seccomp: hoist struct seccomp_data recalculation higher CC: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-06 | Alexander Popov | stackleak: Register the 'stackleak_cleanup' pass before... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-06 | Anders Roxell | stackleak: Mark stackleak_track_stack() as notrace Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Kees Cook | pstore/ram: Avoid NULL deref in ftrace merging failure... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Kees Cook | pstore: Convert buf_lock to semaphore Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Thomas Meyer | pstore: Fix bool initialization/comparison Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Joel Fernandes ... | pstore/ram: Do not treat empty buffers as valid Co-developed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Joel Fernandes ... | pstore/ram: Simplify ramoops_get_next_prz() arguments Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Joel Fernandes ... | pstore: Map PSTORE_TYPE_* to strings Co-developed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Kees Cook | pstore: Replace open-coded << with BIT() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2018-12-04 | Kees Cook | pstore: Improve and update some comments and status... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
next |