2023-06-01 | Kees Cook | x86/purgatory: Do not use fortified string functions Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Wyes Karny | acpi: Replace struct acpi_table_slit 1-element array... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Azeem Shaikh | clocksource: Replace all non-returning strlcpy with... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Alexander Potapenko | string: use __builtin_memcpy() in strlcpy/strlcat Acked-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Azeem Shaikh | staging: most: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Azeem Shaikh | drm/i2c: tda998x: Replace all non-returning strlcpy... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Azeem Shaikh | drm/sun4i: hdmi: Replace all non-returning strlcpy... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Azeem Shaikh | drm/mediatek: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Azeem Shaikh | drm/rockchip: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-06-01 | Azeem Shaikh | drm/display/dp_mst: Replace all non-returning strlcpy... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Arnd Bergmann | ubsan: add prototypes for internal functions Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Kees Cook | checkpatch: Check for strcpy and strncpy too Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Azeem Shaikh | ftrace: Replace all non-returning strlcpy with strscpy Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Kees Cook | Compiler Attributes: Add __counted_by macro Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Arnd Bergmann | autofs: use flexible array in ioctl structure Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Kees Cook | lkdtm/bugs: Switch from 1-element array to flexible... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Azeem Shaikh | befs: Replace all non-returning strlcpy with strscpy Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-30 | Kees Cook | md/raid5: Convert stripe_head's "dev" to flexible array... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Kees Cook | overflow: Add struct_size_t() helper Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | drm/amd/pm: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | drm/radeon: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | tracing: Replace all non-returning strlcpy with strscpy Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | scsi: 3w-9xxx: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | scsi: aacraid: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | scsi: bnx2i: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | scsi: qedi: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-26 | Azeem Shaikh | scsi: ibmvscsi: Replace all non-returning strlcpy with... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-22 | Azeem Shaikh | vboxsf: Replace all non-returning strlcpy with strscpy Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-22 | Azeem Shaikh | NFS: Prefer strscpy over strlcpy calls Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-22 | Azeem Shaikh | dlm: Replace all non-returning strlcpy with strscpy Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-22 | Kees Cook | kbuild: Enable -fstrict-flex-arrays=3 Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-17 | Nick Desaulniers | ubsan: remove cc-option test for UBSAN_TRAP Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-16 | Kees Cook | fortify: strcat: Move definition to use fortified strlcat() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-16 | Kees Cook | fortify: Add protection for strlcat() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-16 | Kees Cook | fortify: Use const variables for __member_size tracking Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20230407192717.636137-4-keescook@chromium.org |
commit | commitdiff | tree |
2023-05-16 | Kees Cook | string: Add Kunit tests for strcat() family Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-16 | Kees Cook | fortify: Allow KUnit test to build without FORTIFY Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-16 | Kees Cook | kunit: tool: Enable CONFIG_FORTIFY_SOURCE under UML Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-16 | Arne Welzel | fortify: strscpy: Fix flipped q and p docstring typo Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-05-16 | Kees Cook | ubsan: Tighten UBSAN_BOUNDS on GCC Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-03-25 | Kees Cook | kheaders: Use array declaration instead of char Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-03-08 | John Stultz | pstore: Revert pmsg_lock back to a normal mutex Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-02-08 | Eric Biggers | randstruct: disable Clang 15 support Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-02-08 | Kees Cook | uaccess: Add minimum bounds check on kernel buffer... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-02-08 | Kees Cook | arm64: Support Clang UBSAN trap codes for better reporting Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-02-08 | Kees Cook | coda: Avoid partial allocation of sig_inputArgs Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-02-02 | Kees Cook | Merge branch 'for-linus/hardening' into for-next/hardening |
commit | commitdiff | tree |
2023-02-02 | Sam James | gcc-plugins: drop -std=gnu++11 to fix GCC 13 build Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-27 | Andy Shevchenko | lib/string: Use strchr() in strpbrk() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-27 | Kees Cook | crypto: hisilicon: Wipe entire pool on error Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-27 | Kees Cook | net/i40e: Replace 0-length array with flexible array Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-27 | Kees Cook | io_uring: Replace 0-length array with flexible array Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-27 | Kees Cook | ext4: Fix function prototype mismatch for ext4_feat_ktype Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-27 | Paulo Miguel Almeida | i915/gvt: Replace one-element array with flexible-array... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-27 | Kees Cook | drm/nouveau/disp: Fix nvif_outp_acquire_dp() argument... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-25 | Kees Cook | bcache: Silence memcpy() run-time false positive warnings Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-25 | Kees Cook | gcc-plugins: Reorganize gimple includes for GCC 13 Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-25 | Kees Cook | kunit: memcpy: Split slow memcpy tests into MEMCPY_SLOW_KUNI... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-19 | Kees Cook | LoadPin: Allow filesystem switch when not enforcing Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221209195746.1366607-4-keescook@chromium.org |
commit | commitdiff | tree |
2023-01-19 | Kees Cook | LoadPin: Move pin reporting cleanly out of locking Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221209195746.1366607-3-keescook@chromium.org |
commit | commitdiff | tree |
2023-01-19 | Kees Cook | LoadPin: Refactor sysctl initialization Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221209195746.1366607-2-keescook@chromium.org |
commit | commitdiff | tree |
2023-01-19 | Kees Cook | LoadPin: Refactor read-only check into a helper Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221209195746.1366607-1-keescook@chromium.org |
commit | commitdiff | tree |
2023-01-19 | Kees Cook | ARM: ixp4xx: Replace 0-length arrays with flexible... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-14 | Randy Dunlap | seccomp: fix kernel-doc function name warning Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-13 | Sami Tolvanen | kbuild: Fix CFI hash randomization with KASAN Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-13 | Kees Cook | firmware: coreboot: Check size of table entry and use... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-05 | Kees Cook | fortify: Use __builtin_dynamic_object_size() when available Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2023-01-05 | Stephen Rothwell | rxrpc: replace zero-lenth array with DECLARE_FLEX_ARRAY... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-23 | Luca Stefani | pstore: Properly assign mem_type property Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-23 | John Stultz | pstore: Make sure CONFIG_PSTORE_PMSG selects CONFIG_RT_MUTEXES Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-23 | Sami Tolvanen | cfi: Fix CFI failure with KASAN Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-16 | Kees Cook | exit: Use READ_ONCE() for all oops/warn limit reads Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-15 | John Stultz | pstore: Switch pmsg_lock to an rt_mutex to avoid priority... Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-15 | Nathan Chancellor | security: Restrict CONFIG_ZERO_CALL_USED_REGS to gcc... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-15 | Kristina Martsenko | lkdtm: cfi: Make PAC test work with GCC 7 and 8 Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-14 | Kees Cook | docs: Fix path paste-o for /sys/kernel/warn_count Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-14 | Kees Cook | LoadPin: Ignore the "contents" argument of the LSM... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-06 | Stephen Boyd | pstore: Avoid kcore oops by vmap()ing with VM_IOREMAP Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Wang Yufen | pstore/ram: Fix error return code in ramoops_probe() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Liu Shixin | binfmt_misc: fix shift-out-of-bounds in check_special_flags Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Gustavo A. R. Silva | ksmbd: replace one-element arrays with flexible-array... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Kees Cook | hpet: Replace one-element array with flexible-array... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Kees Cook | um: virt-pci: Avoid GCC non-NULL warning Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | haifeng.xu | signal: Initialize the info in ksignal Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Anders Roxell | lib: fortify_kunit: build without structleak plugin Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Kees Cook | panic: Expose "warn_count" to sysfs Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221117234328.594699-6-keescook@chromium.org |
commit | commitdiff | tree |
2022-12-02 | Kees Cook | panic: Introduce warn_limit Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221117234328.594699-5-keescook@chromium.org |
commit | commitdiff | tree |
2022-12-02 | Kees Cook | panic: Consolidate open-coded panic_on_warn checks Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221117234328.594699-4-keescook@chromium.org |
commit | commitdiff | tree |
2022-12-02 | Kees Cook | exit: Allow oops_limit to be disabled Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Randy Dunlap | seccomp: document the "filter_count" field Cc: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Kuniyuki Iwashima | seccomp: Move copy_seccomp() to no failure path. Suggested-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Gautam Menghani | selftests/seccomp: Check CAP_SYS_ADMIN capability in... Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-02 | Wang Yufen | binfmt: Fix error return code in load_elf_fdpic_binary() Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-01 | Kees Cook | exit: Expose "oops_count" to sysfs Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221117234328.594699-3-keescook@chromium.org |
commit | commitdiff | tree |
2022-12-01 | Jann Horn | exit: Put an upper limit on how often we can oops Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221117234328.594699-2-keescook@chromium.org |
commit | commitdiff | tree |
2022-12-01 | Kees Cook | panic: Separate sysctl logic from CONFIG_SMP Signed-off-by: Kees Cook <keescook@chromium.org> ...org/r/20221117234328.594699-1-keescook@chromium.org |
commit | commitdiff | tree |
2022-12-01 | Gustavo A. R. Silva | mm/pgtable: Fix multiple -Wstringop-overflow warnings Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-12-01 | Kees Cook | mm: Make ksize() a reporting-only function Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-11-23 | Kees Cook | kunit/fortify: Validate __alloc_size attribute results Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
2022-11-18 | Nathan Chancellor | drm/sti: Fix return type of sti_{dvo,hda,hdmi}_connector_mod... Reviewed-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org> |
commit | commitdiff | tree |
next |