projects
/
linux-2.6-block.git
/ search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
structleak: disable STRUCTLEAK_BYREF in combination with KASAN_STACK
2019-07-25
Arnd Bergmann
structleak: disable STRUCTLEAK_BYREF in combination...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-05-10
Chris Packham
gcc-plugins: arm_ssp_per_task_plugin: Fix for older...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-04-25
Tycho Andersen
seccomp: Make NEW_LISTENER and TSYNC flags exclusive
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-04-25
Kees Cook
selftests/seccomp: Prepare for exclusive seccomp flags
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-04-24
Kees Cook
security: Implement Clang's stack initialization
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-04-24
Kees Cook
security: Move stackleak config to Kconfig.hardening
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-04-24
Kees Cook
security: Create "kernel hardening" config area
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-03-04
Kees Cook
lib: Introduce test_stackinit module
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-03-04
Kees Cook
gcc-plugins: structleak: Generalize to all variable...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-02-12
Kees Cook
pstore/ram: Avoid needless alloc during header write
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-02-12
Yue Hu
pstore/ram: Add kmsg hlen zero check to ramoops_pstore_write()
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-02-12
Yue Hu
pstore/ram: Move initialization earlier
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-02-12
Yue Hu
pstore: Avoid writing records with zero size
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-22
Yue Hu
pstore/ram: Replace dummy_data heap memory with stack...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-20
Kees Cook
pstore/ram: Avoid allocation and leak of platform data
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-20
Ard Biesheuvel
gcc-plugins: arm_ssp_per_task_plugin: fix for GCC 9+
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-20
Ard Biesheuvel
gcc-plugins: arm_ssp_per_task_plugin: sign extend the...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-17
Sai Prakash Ranjan
pstore/ram: Fix console ramoops to show the previous...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-09
Christophe Leroy
lkdtm: Add tests for NULL pointer dereference
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-09
Christophe Leroy
lkdtm: Print real addresses
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-09
Kees Cook
lkdtm: Do not depend on BLOCK and clean up headers
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
TOMOYO: Update LSM flags to no longer be exclusive
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
LSM: Infrastructure management of the ipc security...
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
Smack: Abstract use of ipc security blobs
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
SELinux: Abstract use of ipc security blobs
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
LSM: Infrastructure management of the task security
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
LSM: Infrastructure management of the inode security
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
Smack: Abstract use of inode security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
SELinux: Abstract use of inode security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
LSM: Infrastructure management of the file security
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
Smack: Abstract use of file security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
SELinux: Abstract use of file security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
Infrastructure management of the cred security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
TOMOYO: Abstract use of cred security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
AppArmor: Abstract use of cred security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
SELinux: Remove unused selinux_is_enabled
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
SELinux: Remove cred security blob poisoning
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
SELinux: Abstract use of cred security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
Smack: Abstract use of cred security blob
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
procfs: add smack subdir to attrs
The original implementation is by
Kees Cook
.
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
capability: Initialize as LSM_ORDER_FIRST
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Introduce enum lsm_order
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
Yama: Initialize as ordered LSM
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LoadPin: Initialize as ordered LSM
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Split LSM preparation from initialization
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Casey Schaufler
LSM: Add all exclusive LSMs to ordered initialization
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
selinux: Remove SECURITY_SELINUX_BOOTPARAM_VALUE
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
apparmor: Remove SECURITY_APPARMOR_BOOTPARAM_VALUE
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Separate idea of "major" LSM from "exclusive" LSM
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Refactor "security=" in terms of enable/disable
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Prepare for reorganizing "security=" logic
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Tie enabling logic to presence in ordered list
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Introduce "lsm=" for boottime LSM selection
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Introduce CONFIG_LSM
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Build ordered list of LSMs to initialize
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Lift LSM selection out of individual LSMs
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Plumb visibility into optional "enabled" state
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Provide separate ordered initialization
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2019-01-08
Kees Cook
LSM: Introduce LSM_FLAG_LEGACY_MAJOR
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-14
Tycho Andersen
seccomp, s390: fix build for syscall type change
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-14
Tycho Andersen
seccomp: fix poor type promotion
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-12
Ard Biesheuvel
ARM: smp: add support for per-task stack canaries
Cc:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-12
Tycho Andersen
samples: add an example of seccomp user trap
CC:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-12
Tycho Andersen
seccomp: add a return code to trap to userspace
CC:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-12
Tycho Andersen
seccomp: switch system call argument type to void *
CC:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-12
Tycho Andersen
seccomp: hoist struct seccomp_data recalculation higher
CC:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-06
Alexander Popov
stackleak: Register the 'stackleak_cleanup' pass before...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-06
Anders Roxell
stackleak: Mark stackleak_track_stack() as notrace
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore/ram: Avoid NULL deref in ftrace merging failure...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore: Convert buf_lock to semaphore
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Thomas Meyer
pstore: Fix bool initialization/comparison
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Joel Fernandes ...
pstore/ram: Do not treat empty buffers as valid
Co-developed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Joel Fernandes ...
pstore/ram: Simplify ramoops_get_next_prz() arguments
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Joel Fernandes ...
pstore: Map PSTORE_TYPE_* to strings
Co-developed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore: Replace open-coded << with BIT()
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore: Improve and update some comments and status...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore/ram: Add kern-doc for struct persistent_ram_zone
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore/ram: Report backend assignments with finer granularity
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore/ram: Standardize module name in ramoops
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Peng Wang
pstore: Avoid duplicate call of persistent_ram_zap()
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore: Remove needless lock during console writes
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
pstore: Do not use crash buffer for decompression
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-12-04
Kees Cook
Merge branch 'for-linus/pstore' into for-next/pstore
commit
|
commitdiff
|
tree
2018-11-30
Alexander Popov
stackleak: Disable function tracing and kprobes for...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-11-29
Kees Cook
pstore/ram: Correctly calculate usable PRZ bytes
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-22
Kees Cook
pstore/ram: Clarify resource reservation labels
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-22
Kees Cook
pstore: Refactor compression initialization
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-22
Joel Fernandes ...
pstore: Allocate compression during late_initcall()
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-22
Kees Cook
pstore: Centralize init/exit routines
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-18
Kees Cook
LoadPin: Rename boot param "enabled" to "enforce"
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-18
Kees Cook
LoadPin: Report friendly block device name
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-11
Kees Cook
Makefile: Globally enable VLA warning
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-11
Masahiro Yamada
compiler.h: give up __compiletime_assert_fallback()
Reviewed-by:
Kees Cook
<keescook@chromium.org>
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-10-06
Kees Cook
treewide: Replace more open-coded allocation size multiplica...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-09-30
Kees Cook
pstore/ram: Fix failure-path memory leak in ramoops_init
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-09-13
Bin Yang
pstore: Fix incorrect persistent ram buffer mapping
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-09-04
Alexander Popov
arm64: Drop unneeded stackleak_check_alloca()
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-09-04
Alexander Popov
stackleak: Allow runtime disabling of kernel stack...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-09-04
Alexander Popov
doc: self-protection: Add information about STACKLEAK...
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
2018-09-04
Alexander Popov
fs/proc: Show STACKLEAK metrics in the /proc file system
Signed-off-by:
Kees Cook
<keescook@chromium.org>
commit
|
commitdiff
|
tree
next