summaryrefslogtreecommitdiff
path: root/security/apparmor
AgeCommit message (Expand)Author
8 daysapparmor: fix label can not be immediately before a declarationJohn Johansen
8 daysapparmor: put secmark label after secid lookupZygmunt Krynicki
8 daysapparmor: aa_getprocattr free procattr leak on format failureZygmunt Krynicki
8 daysapparmor: remove or add symlinks to rawdata according to export_binaryGeorgia Garcia
8 daysapparmor: fix potential UAF in aa_replace_profilesMaxime Bélair
8 daysapparmor: grab ns lock and refresh when looking up changehat child profilesRyan Lee
8 daysapparmor: fix rawdata_f_data implicit flex arrayJohn Johansen
8 daysapparmor: aa_label_alloc use aa_label_free on alloc failureZygmunt Krynicki
8 daysapparmor: check label build before no_new_privs testRuoyu Wang
8 dayssecurity/apparmor/apparmorfs.c: conditionally compile get_loaddata_common_ref()Andrew Morton
14 daysapparmor: advertise the tcp fast open fix is appliedJohn Johansen
2026-07-04apparmor: fix use-after-free in rawdata dedup loopRuslan Valiyev
2026-07-04apparmor: mediate the implicit connect of TCP fast open sendmsgBryam Vargas
2026-06-09remove pointless includes of <linux/fdtable.h>Al Viro
2026-05-07apparmor: use target task's context in apparmor_getprocattr()Cengiz Can
2026-03-13apparmor: fix race between freeing data and fs accessing itJohn Johansen
2026-03-13apparmor: fix race on rawdata dereferenceJohn Johansen
2026-03-13apparmor: fix differential encoding verificationJohn Johansen
2026-03-13apparmor: fix unprivileged local user can do privileged policy managementJohn Johansen
2026-03-13apparmor: Fix double free of ns_name in aa_replace_profiles()John Johansen
2026-03-13apparmor: fix missing bounds check on DEFAULT table in verify_dfa()Massimiliano Pellizzer
2026-03-13apparmor: fix side-effect bug in match_char() macro usageMassimiliano Pellizzer
2026-03-13apparmor: fix: limit the number of levels of policy namespacesJohn Johansen
2026-03-13apparmor: replace recursive profile removal with iterative approachMassimiliano Pellizzer
2026-03-13apparmor: fix memory leak in verify_headerMassimiliano Pellizzer
2026-03-13apparmor: validate DFA start states are in bounds in unpack_pdbMassimiliano Pellizzer
2026-03-04apparmor: fix aa_label to return state from compount and component matchJohn Johansen
2026-03-04apparmor: fix invalid deref of rawdata when export_binary is unsetGeorgia Garcia
2026-03-04apparmor: avoid per-cpu hold underflow in aa_get_bufferZhengmian Hu
2026-03-04apparmor: make label_match return a consistent valueJohn Johansen
2026-03-04apparmor: remove apply_modes_to_perms from label_matchJohn Johansen
2026-03-04apparmor: fix rlimit for posix cpu timersJohn Johansen
2026-03-04apparmor: return -ENOMEM in unpack_perms_table upon alloc failureRyan Lee
2026-03-04apparmor: Fix & Optimize table creation from possibly unaligned memoryHelge Deller
2026-03-04AppArmor: Allow apparmor to handle unaligned dfa tablesHelge Deller
2026-03-04apparmor: fix NULL sock in aa_sock_file_permJohn Johansen
2025-08-28apparmor: Fix 8-byte alignment for initial dfa blob streamsHelge Deller
2025-08-20apparmor: fix x_table_lookup when stacking is not the first entryJohn Johansen
2025-08-20apparmor: use the condition in AA_BUG_FMT even with debug disabledMateusz Guzik
2025-08-20apparmor: shift ouid when mediating hard links in usernsGabriel Totev
2025-08-15apparmor: Fix unaligned memory accesses in KUnit testHelge Deller
2025-08-15apparmor: fix loop detection used in conflicting attachment resolutionRyan Lee
2025-08-15apparmor: ensure WB_HISTORY_SIZE value is a power of 2Ryan Lee
2025-01-23apparmor: allocate xmatch for nullpdb inside aa_alloc_nullRyan Lee
2024-12-05apparmor: test: Fix memory leak for aa_unpack_strdup()Jinjie Ruan
2024-12-05apparmor: fix 'Do simple duplicate message elimination'chao liu
2024-10-02move asm/unaligned.h to linux/unaligned.hAl Viro
2024-09-16Merge tag 'lsm-pr-20240911' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds
2024-08-25apparmor: fix policy_unpack_test on big endian systemsGuenter Roeck
2024-07-29lsm: infrastructure management of the sock securityCasey Schaufler