aboutsummaryrefslogtreecommitdiffstats
BranchCommit messageAuthorAge
mainselinux: add a SELinux specific README.md and SECURITY.mdPaul Moore6 days
nextAutomated merge of 'dev' into 'next'Paul Moore3 weeks
devselinux: constify source policy in cond_policydb_dup()Christian Göttsche3 weeks
stable-6.10selinux: constify source policy in cond_policydb_dup()Christian Göttsche3 weeks
stable-6.9selinux: avoid dereference of garbage after mount failureChristian Göttsche7 weeks
stable-6.8Linux 6.8-rc1Linus Torvalds4 months
dev-stagingselinux: reduce the object class calculations at inode init timePaul Moore4 months
stable-6.7Linux 6.7-rc1Linus Torvalds6 months
stable-6.6selinux: fix handling of empty opts in selinux_fs_context_submount()Ondrej Mosnacek8 months
stable-6.5selinux: set next pointer before attaching to listChristian Göttsche9 months
stable-6.4selinux: don't use make's grouped targets feature yetPaul Moore12 months
stable-6.3Linux 6.3-rc1Linus Torvalds14 months
stable-6.2Linux 6.2-rc2Linus Torvalds17 months
stable-6.2.mergeMerge tag 'selinux-pr-20221212' into stable-6.2.mergePaul Moore17 months
stable-6.1selinux: enable use of both GFP_KERNEL and GFP_ATOMIC in convert_context()GONG, Ruiqi19 months
stable-6.0Linux 6.0-rc1Linus Torvalds21 months
stable-5.19selinux: free contexts previously transferred in selinux_add_opt()Christian Göttsche23 months
stable-5.18selinux: fix bad cleanup on error in hashtab_duplicate()Ondrej Mosnacek2 years
stable-5.17selinux: fix misuse of mutex_is_locked()Ondrej Mosnacek2 years
stable-5.16selinux: initialize proto variable in selinux_ip_postroute_compat()Tom Rix2 years
stable-5.15selinux,smack: fix subjective/objective credential use mixupsPaul Moore3 years
working-io_uringSmack: Brutalist io_uring supportCasey Schaufler3 years
stable-5.14selinux: correct the return value when loads initial sidsXiu Jianfeng3 years
stable-5.13selinux: add proper NULL termination to the secclass_map permissionsPaul Moore3 years
stable-5.12selinux: fix race between old and new sidtabOndrej Mosnacek3 years
stable-5.11lsm,selinux: pass flowi_common instead of flowi to the LSM hooksPaul Moore3 years
working-selinuxnsselinuxfs: restrict write operations to the same selinux namespaceStephen Smalley4 years
stable-5.10selinux: Fix error return code in sel_ib_pkey_sid_slow()Chen Zhou4 years
stable-5.9selinux: complete the inlining of hashtab functionsOndrej Mosnacek4 years
stable-5.8selinux: fix undefined return of cond_evaluate_exprTom Rix4 years
stable-5.7selinux: properly handle multiple messages in selinux_netlink_send()Paul Moore4 years
stable-5.6selinux: fix sidtab string cache lockingOndrej Mosnacek4 years
stable-5.5selinux: default_range glblub implementationJoshua Brindle5 years
stable-5.4selinux: fix context string corruption in convert_context()Ondrej Mosnacek5 years
stable-5.3selinux: fix memory leak in policydb_init()Ondrej Mosnacek5 years
stable-5.2selinux: fix a missing-check bug in selinux_sb_eat_lsm_opts()Gen Zhang5 years
stable-5.1selinux: use kernel linux/socket.h for genheaders and mdpPaulo Alcantara5 years
stable-5.0selinux: fix GPF on invalid policyStephen Smalley5 years
stable-4.20selinux: add support for RTM_NEWCHAIN, RTM_DELCHAIN, and RTM_GETCHAINPaul Moore5 years
stable-4.19MAINTAINERS: update the SELinux mailing list locationPaul Moore6 years
stable-4.18selinux: move user accesses in selinuxfs out of locked regionsJann Horn6 years
stable-4.17selinux: KASAN: slab-out-of-bounds in xattr_getsecuritySachin Grover6 years
stable-4.16selinux: skip bounded transition processing if the policy isn't loadedPaul Moore6 years
stable-4.15selinux: remove extraneous initialization of slots_used and max_chain_lenColin Ian King7 years
stable-4.14selinux: constify nf_hook_opsArvind Yadav7 years
stable-4.13IB/core: Fix static analysis warning in ib_policy_change_taskDaniel Jurgens7 years
stable-4.12selinux: fix double free in selinux_parse_opts_str()Paul Moore7 years
stable-4.11selinux: wrap cgroup seclabel support with its own policy capabilityStephen Smalley7 years
stable-4.10selinux: fix off-by-one in setprocattrStephen Smalley7 years
stable-4.9lsm,audit,selinux: Introduce a new audit data type LSM_AUDIT_DATA_FILEVivek Goyal8 years
stable-4.8netlabel: Implement CALIPSO config functions for SMACK.Huw Davies8 years
stable-4.7selinux: apply execstack check on thread stacksStephen Smalley8 years
stable-4.5selinux: Don't sleep inside inode_getsecid hookAndreas Gruenbacher8 years
stable-4.6selinux: use absolute path to include directoryAndy Shevchenko8 years
stable-4.4selinux: fix bug in conditional rules handlingStephen Smalley8 years
stable-4.3selinux: explicitly declare the role "base_r"Laurent Bigonville9 years
stable-4.2selinux: fix mprotect PROT_EXEC regression caused by mm changeStephen Smalley9 years
stable-4.1selinux: increase avtab max bucketsStephen Smalley9 years
stable-4.0selinux: fix sel_write_enforce broken return valueJoe Perches9 years
stable-3.19Merge branch 'next' of git://git.infradead.org/users/pcmoore/selinux into nextJames Morris9 years
stable-3.18selinux: convert WARN_ONCE() to printk() in selinux_nlmsg_perm()Richard Guy Briggs10 years