summaryrefslogtreecommitdiff
path: root/security/integrity
AgeCommit message (Expand)AuthorFilesLines
2022-06-14efi: Do not import certificates from UEFI Secure Boot for T2 MacsAditya Garg2-0/+41
2022-02-16ima: Do not print policy rule with inactive LSM labelsStefan Berger1-0/+8
2022-02-16ima: Allow template selection with ima_template[_fmt]= after ima_hash=Roberto Sassu1-3/+7
2022-02-16ima: Remove ima_policy file before directoryStefan Berger1-1/+1
2022-02-16integrity: check the return value of audit_log_start()Xiaoke Wang1-0/+2
2021-11-17evm: mark evm_fixmode as __ro_after_initAustin Kim1-1/+1
2021-09-15IMA: remove the dependency on CRYPTO_MD5THOBY Simon1-1/+0
2021-09-15IMA: remove -Wmissing-prototypes warningAustin Kim1-1/+1
2021-07-14evm: fix writing <securityfs>/evm overflowMimi Zohar1-2/+3
2021-07-14evm: Refuse EVM_ALLOW_METADATA_WRITES only if an HMAC key is loadedRoberto Sassu1-4/+4
2021-07-14evm: Execute evm_inode_init_security() only when an HMAC key is loadedRoberto Sassu1-2/+3
2021-07-07x86/efi: remove unused variablesYueHaibing1-5/+0
2021-06-30certs: Add EFI_CERT_X509_GUID support for dbx entriesEric Snowberg1-0/+11
2021-06-30x86/efi: move common keyring handler functions to new fileNayna Jain4-67/+115
2021-03-30integrity: double check iint_cache was initializedMimi Zohar1-0/+8
2021-03-04certs: Fix blacklist flag type confusionDavid Howells1-3/+2
2021-03-04ima: Free IMA measurement buffer after kexec syscallLakshmi Ramasubramanian1-0/+2
2021-03-04ima: Free IMA measurement buffer on errorLakshmi Ramasubramanian1-0/+1
2021-03-04evm: Fix memleak in init_descDinghao Liu1-2/+5
2020-12-30ima: Don't modify file descriptor mode on the flyRoberto Sassu1-15/+5
2020-12-08ima: extend boot_aggregate with kernel measurementsMaurizio Drocco2-2/+15
2020-11-01evm: Check size of security.evm before using itRoberto Sassu1-0/+6
2020-10-29ima: Don't ignore errors from crypto_shash_update()Roberto Sassu1-0/+2
2020-08-19ima: Have the LSM free its audit ruleTyler Hicks2-1/+6
2020-08-11ima: move APPRAISE_BOOTPARAM dependency on ARCH_POLICY to runtimeBruno Meneguele2-1/+7
2020-06-22ima: Set again build_ima_appraise variableKrzysztof Struczynski1-2/+8
2020-06-22ima: Remove redundant policy rule set in add_rules()Krzysztof Struczynski1-4/+1
2020-06-22evm: Fix possible memory leak in evm_calc_hmac_or_hash()Roberto Sassu1-1/+1
2020-06-22ima: Remove __init annotation from ima_pcrread()Roberto Sassu1-1/+1
2020-06-22ima: Call ima_calc_boot_aggregate() in ima_eventdigest_init()Roberto Sassu4-5/+24
2020-06-22ima: Directly assign the ima_default_policy pointer to ima_rulesRoberto Sassu1-2/+1
2020-06-22ima: Evaluate error in init_ima()Roberto Sassu1-0/+3
2020-06-22ima: Switch to ima_hash_algo for boot aggregateRoberto Sassu2-11/+58
2020-06-22ima: Fix ima digest hash table key calculationKrzysztof Struczynski1-3/+4
2020-06-07evm: Fix RCU list related warningsMadhuparna Bhowmik3-4/+11
2020-05-27evm: Fix a small race in init_desc()Dan Carpenter1-22/+22
2020-05-27ima: Fix return value of ima_write_policy()Roberto Sassu1-2/+1
2020-05-27evm: Check also if *tfm is an error pointer in init_desc()Roberto Sassu1-1/+1
2020-05-27ima: Set file->f_mode instead of file->f_flags in ima_calc_file_hash()Roberto Sassu1-6/+6
2020-03-12efi: Only print errors about failing to get certs if EFI vars are foundJavier Martinez Canillas1-14/+26
2020-03-05ima: ima/lsm policy rule loading logic bug fixesJanne Karhunen1-18/+26
2019-10-05integrity: remove pointless subdir-$(CONFIG_...)Masahiro Yamada1-2/+0
2019-10-05integrity: remove unneeded, broken attempt to add -fshort-wcharMasahiro Yamada1-1/+0
2019-09-28Merge branch 'next-lockdown' of git://git.kernel.org/pub/scm/linux/kernel/git...Linus Torvalds4-3/+55
2019-08-29ima: ima_api: Use struct_size() in kzalloc()Gustavo A. R. Silva1-2/+2
2019-08-29ima: use struct_size() in kzalloc()Gustavo A. R. Silva1-3/+2
2019-08-28ima: Fix use after free in ima_read_modsig()Thiago Jung Bauermann1-1/+2
2019-08-20kexec: Allow kexec_file() with appropriate IMA policy when locked downMatthew Garrett3-1/+53
2019-08-20kexec_file: split KEXEC_VERIFY_SIG into KEXEC_SIG and KEXEC_SIG_FORCEJiri Bohac2-2/+2
2019-08-06ima: fix freeing ongoing ahash_requestSascha Hauer1-0/+5