| Commit message (Expand) | Author | Age |
* | kill f_vfsmnt | Al Viro | 2013-02-26 |
* | Fix cap_capable to only allow owners in the parent user namespace to have caps. | Eric W. Biederman | 2012-12-14 |
* | split ->file_mmap() into ->mmap_addr()/->mmap_file() | Al Viro | 2012-05-31 |
* | split cap_mmap_addr() out of cap_file_mmap() | Al Viro | 2012-05-31 |
* | Merge branch 'for-linus' of git://git.kernel.org/pub/scm/linux/kernel/git/ebi... | Linus Torvalds | 2012-05-23 |
|\ |
|
| * | userns: Convert capabilities related permsion checks | Eric W. Biederman | 2012-05-03 |
| * | userns: Store uid and gid values in struct cred with kuid_t and kgid_t types | Eric W. Biederman | 2012-05-03 |
| * | userns: Simplify the user_namespace by making userns->creator a kuid. | Eric W. Biederman | 2012-04-26 |
| * | userns: Add an explicit reference to the parent user namespace | Eric W. Biederman | 2012-04-07 |
| * | userns: Use cred->user_ns instead of cred->user->user_ns | Eric W. Biederman | 2012-04-07 |
* | | Merge tag 'v3.4-rc5' into next | James Morris | 2012-05-03 |
|\ \ |
|
| * | | security: fix compile error in commoncap.c | Jonghwan Choi | 2012-04-18 |
| * | | fcaps: clear the same personality flags as suid when fcaps are used | Eric Paris | 2012-04-17 |
| |/ |
|
* / | Add PR_{GET,SET}_NO_NEW_PRIVS to prevent execve from granting privs | Andy Lutomirski | 2012-04-13 |
|/ |
|
* | security: trim security.h | Al Viro | 2012-02-13 |
* | Merge branch 'for-linus' of git://selinuxproject.org/~jmorris/linux-security | Linus Torvalds | 2012-01-14 |
|\ |
|
| * | security: remove the security_netlink_recv hook as it is equivalent to capable() | Eric Paris | 2012-01-05 |
| * | capabilities: remove the task from capable LSM hook entirely | Eric Paris | 2012-01-05 |
* | | capabilities: initialize has_cap | Serge Hallyn | 2011-08-15 |
* | | capabilities: do not grant full privs for setuid w/ file caps + no effective ... | Zhi Li | 2011-08-12 |
|/ |
|
* | capabilities: do not special case exec of init | Eric Paris | 2011-04-03 |
* | userns: allow ptrace from non-init user namespaces | Serge E. Hallyn | 2011-03-23 |
* | userns: security: make capabilities relative to the user namespace | Serge E. Hallyn | 2011-03-23 |
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next-2.6 | Linus Torvalds | 2011-03-16 |
|\ |
|
| * | netlink: kill eff_cap from struct netlink_skb_parms | Patrick McHardy | 2011-03-03 |
* | | time: Correct the *settime* parameters | Richard Cochran | 2011-02-02 |
|/ |
|
* | capabilities/syslog: open code cap_syslog logic to fix build failure | Eric Paris | 2010-11-15 |
* | Restrict unprivileged access to kernel syslog | Dan Rosenberg | 2010-11-12 |
* | security: remove unused parameter from security_task_setscheduler() | KOSAKI Motohiro | 2010-10-20 |
* | Make do_execve() take a const filename pointer | David Howells | 2010-08-17 |
* | security: whitespace coding style fixes | Justin P. Mattock | 2010-04-22 |
* | Security: Fix the comment of cap_file_mmap() | wzt.wzt@gmail.com | 2010-04-19 |
* | syslog: clean up needless comment | Kees Cook | 2010-02-05 |
* | syslog: use defined constants instead of raw numbers | Kees Cook | 2010-02-03 |
* | syslog: distinguish between /proc/kmsg and syscalls | Kees Cook | 2010-02-03 |
* | remove CONFIG_SECURITY_FILE_CAPABILITIES compile option | Serge E. Hallyn | 2009-11-23 |
* | security: remove root_plug | James Morris | 2009-10-20 |
* | Security/SELinux: seperate lsm specific mmap_min_addr | Eric Paris | 2009-08-05 |
* | Capabilities: move cap_file_mmap to commoncap.c | Eric Paris | 2009-08-05 |
* | security: rename ptrace_may_access => ptrace_access_check | Ingo Molnar | 2009-06-24 |
* | Merge branch 'master' into next | James Morris | 2009-05-08 |
|\ |
|
| * | cap_prctl: don't set error to 0 at 'no_change' | Serge E. Hallyn | 2009-04-08 |
* | | don't raise all privs on setuid-root file with fE set (v2) | Serge E. Hallyn | 2009-04-02 |
|/ |
|
* | Merge branch 'next' into for-linus | James Morris | 2009-01-06 |
|\ |
|
| * | CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #3] | David Howells | 2009-01-06 |
| * | Revert "CRED: Fix regression in cap_capable() as shown up by sys_faccessat() ... | James Morris | 2009-01-06 |
| * | CRED: Fix regression in cap_capable() as shown up by sys_faccessat() [ver #2] | David Howells | 2009-01-04 |
* | | inode->i_op is never NULL | Al Viro | 2009-01-05 |
|/ |
|
* | capabilities: define get_vfs_caps_from_disk when file caps are not enabled | Eric Paris | 2008-11-14 |
* | CRED: Prettify commoncap.c | David Howells | 2008-11-13 |