repo.or.cz
/
linux-2.6.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
fork: reorder permissions when violating number of processes limits
2013-07-03
Eric Paris
fork: re
o
rder perm
i
ssions when viola
t
ing number
of
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-05-08
Eric Pari
s
aud
i
t: fi
x
message spacing prin
t
ing auid
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-05-08
Eric P
a
r
is
R
evert "audit: move kaudit t
h
read start from auditd
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Eric
P
ar
i
s
aud
i
t:
f
ix event coverage o
f
A
U
DIT_ANOM_LIN
K
commit
|
commitdiff
|
tree
2013-04-30
Eric Paris
audit: u
s
e
s
pin_lo
c
k
in aud
i
t_rec
e
iv
e
_
m
s
g
to
p
rocess
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Eric Paris
audit: do not
n
eedless
l
y take a lock in tty_audit_exit
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Eri
c
Par
i
s
audit: do
n
ot needlessly
take a s
p
inl
o
c
k
i
n
copy_signa
l
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
E
ric
Paris
au
d
i
t:
u
se spin_lock_irqs
a
ve/restore in audit
tty code
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Eri
c
Paris
helper f
o
r some s
e
ssion id
s
tuff
commit
|
commitdiff
|
tree
2013-04-30
Eri
c
Par
i
s
audit: us
e
a consistent audit helper to l
o
g
lsm infor
m
ation
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Er
i
c Paris
audit:
pus
h
loginuid and
s
ess
i
onid processing dow
n
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Eric Paris
audit
:
stop pushing
l
oginid
,
uid, sessionid as argu
m
ents
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Eric
P
a
r
i
s
a
u
dit:
r
emove t
h
e ol
d
depri
c
ated kernel
in
t
er
f
ace
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-30
Er
i
c Par
i
s
a
udit:
make validity
c
he
c
king generic
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-16
Er
i
c Paris
audit: allow checking the t
y
pe o
f
a
u
dit
m
e
ssage
i
n
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-16
E
r
ic Paris
audit:
f
ix build brea
k
w
hen AUDIT_DEBUG == 2
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-11
Eric P
a
ris
Audit: do not print er
r
or when LS
M
s disabled
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2013-04-11
Eric Paris
a
udit: us
e
data= not ms
g
=
for
AUDIT_USER_TTY messages
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-12-11
Eric Paris
ino
t
ify: automatically r
e
star
t
s
yscall
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-12-11
Eric Paris
fsnotify
:
make fasy
n
c
g
ene
r
i
c for both inotify and
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-11-09
Eric Paris
f
a
notify: f
i
x missing
b
reak
test case.
Eric Paris
confirmed it was a bug and posted...
Cc:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-10-12
Eric P
a
ris
au
d
it: make aud
i
t
_
c
o
mpare
_
dname_path use p
a
rent_len
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-07-16
E
ric
P
aris
SELinux: do no
t
check open perms if they are not known
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-07-16
Eric Par
i
s
SELinux: include definitio
n
of new
capabil
i
ties
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-18
Eric Paris
fcaps: clea
r
the
s
ame personal
i
ty flags as
s
uid when
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric
Paris
SE
L
inux
:
rem
o
v
e
unused common_audit_
d
ata in flush_unau
t
h
or
i
z
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Paris
S
E
Lin
u
x
:
u
nify t
h
e
selinu
x
_audit_dat
a
a
nd selinux_
l
a
t
e
_
a
udit
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Paris
SELinu
x
: re
m
ove audi
t
deny f
r
om s
e
l
inux_aud
i
t_data
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Paris
LSM: do n
o
t initialize
common_aud
i
t_
d
ata to 0
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric
Paris
LSM:
BUILD_BUG_O
N
if
t
he c
o
mmon_audit_dat
a
union ever
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eri
c
Paris
L
SM: r
e
move
the task f
i
eld from common_au
d
it_data
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
E
r
i
c Par
i
s
app
a
rmo
r
: move task fro
m
common_aud
i
t_data to appa
r
m
or_audi
t
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Paris
L
S
M
: remove t
h
e COMMO
N
_AUDIT
_
DAT
A
_INIT type
expans
i
on
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Pa
r
is
SE
L
inux: move common_
a
udit_data
t
o
a noinli
n
e
s
low
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Par
i
s
SE
L
inux:
remove inode_
h
a
s_
p
er
m
_no
a
dp
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric P
a
r
i
s
SE
L
inu
x
: delay initialization of audit data
i
n s
e
l
i
nux_in
o
de
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
E
r
ic Paris
SELinux: if sel_mak
e
_b
o
ols
e
r
r
ors don
'
t
leave inconsiste
n
t
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
E
r
ic Paris
SELinux: remove n
e
edless sel_d
i
v functio
n
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
E
ric Paris
SELinux: possible NULL deref in
contex
t
_str
u
ct_to_s
t
ri
n
g
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
E
r
ic
P
ari
s
SELin
u
x: audit f
a
iled attempts to set inva
l
id labels
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eri
c
Pa
r
is
SELinux: rena
m
e dentry_open to file_open
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
E
ric
Paris
S
EL
i
nux: che
c
k
OP
E
N on trunc
a
te calls
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Paris
SE
L
inux
:
a
d
d def
a
ult_type s
t
atements
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric Par
i
s
SELinux: allow default s
o
ur
c
e
/targ
e
t
s
electors f
o
r
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eri
c
Par
i
s
SELin
u
x: include flo
w
.
h where
u
s
ed rath
e
r than get
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eric P
a
r
i
s
SELinux: loo
s
en DAC perms on reading poli
c
y
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-09
Eri
c
Pari
s
S
E
Linux: allow seek operations on the file ex
p
osing
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-03
Eric Par
i
s
SELinux: do no
t
allo
c
a
t
e sta
c
k space for AVC data unless
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-03
Eric Pari
s
S
E
Linux:
remove avd
f
rom slow_avc_audit()
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-03
Eric Pa
r
is
SELin
u
x: remove av
d
from selinux_audit_d
a
t
a
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-03
E
r
i
c
Pari
s
LSM
:
s
h
r
ink the common
_
a
u
d
it_data data union
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-04-03
Eric Paris
LSM: shri
n
k sizeof LSM specific
porti
o
n
o
f
com
m
on_au
d
it_dat
a
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-02-21
E
r
ic
P
ar
i
s
ARM/
a
u
d
it: include aud
i
t h
e
ader and
fix
audit
arch
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-02-16
Eri
c
Par
i
s
IMA: fix audit res
f
ield to indi
c
a
t
e
1
for succe
s
s
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
audit: allow interfield
c
ompar
i
son
b
e
tween gid and
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
audit
:
complex
interfie
l
d comparison
h
e
l
per
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
a
u
dit: allow interfield comparison in audi
t
rule
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
audit: do
n
ot call au
d
it_getname on
error
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
aud
i
t: only allow ta
s
ks to set th
e
ir loginu
i
d i
f
it
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
audit:
r
emove t
a
sk argument
t
o audit_set_loginuid
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
E
ric Paris
audit: a
l
low audit ma
t
ch
i
ng
on inode gid
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Pari
s
a
u
dit:
a
l
low
matching
o
n obj_
u
id
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
audit: remove
audit_f
i
n
ish_fork a
s
i
t
can't be called
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
a
u
dit
:
reject e
n
try,a
l
ways rules
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Er
i
c Pari
s
audit: inli
n
e aud
i
t_free to simpl
i
fy th
e
look of ge
n
eric
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Er
i
c
P
aris
aud
i
t: drop
a
udit
_
s
e
t
_macxattr as it do
e
sn't do anyth
i
ng
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric
P
aris
a
u
dit: inline ch
e
c
k
s fo
r
not
n
ee
d
ing to colle
c
t aux
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric
Paris
au
d
i
t: drop so
m
e
potentially i
n
a
dvisab
l
e likely
no
t
a
tio
n
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
E
r
ic
P
aris
audit: remove
A
UDIT_SETUP_CONTEXT as
it isn
'
t used
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Er
i
c
Par
i
s
audit: inline
a
u
d
it_sy
s
call_ent
r
y to re
d
uce
bu
r
den
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
audit: ia32entry
.
S sign e
x
t
end error codes when calling
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric
P
a
ris
Audit: pus
h
audit
s
u
c
cess and ret
c
ode into arc
h
ptrace
.
h
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
sec
c
omp: a
u
dit a
b
norm
a
l end to a p
r
ocess d
u
e
t
o seccomp
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Er
i
c Paris
audit
:
c
hec
k
current
inode and cont
a
ini
n
g objec
t
when
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
E
r
ic
P
aris
audit: dro
p
the meaningless and format
breaking wo
r
d
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
Eric Paris
audit: dynamical
l
y
allo
c
ate
a
udit_names when not enough
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-17
E
r
ic Paris
audit: make fil
e
typ
e
m
a
t
c
hing consistent w
i
th other
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Er
i
c Par
i
s
capabilities: remove __cap_full_se
t
definition
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eric Paris
security: remove
the se
c
uri
t
y
_
net
l
ink_recv hook as
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eri
c
Paris
ptrace: do no
t
audit capabil
i
ty
c
heck when output
i
ng
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eri
c
Pari
s
capabilities: remove tas
k
_ns_*
f
un
c
t
i
o
n
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eric Pari
s
c
apabitlie
s
:
ns_capable can use the cap
helpers rather
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
E
ric Paris
c
apa
b
ilities: style only - move capable bel
o
w ns_
c
apa
b
le
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
E
r
ic Paris
capabilites:
i
ntroduce ne
w
ha
s
_ns_capabilities_noaudit
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eric Paris
c
a
pabilities: call h
a
s_ns
_
capabili
t
y fr
o
m
h
as_capability
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eric Par
i
s
c
a
pabilities:
rem
o
v
e all _
r
e
a
l_ interfaces
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
E
ric Pari
s
capabilities:
intr
o
du
c
e security_c
a
pab
l
e_noaudit
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eric Pari
s
capabiliti
e
s: reverse ar
g
uments to s
e
c
urity_capable
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2012-01-05
Eric P
a
ris
ca
p
a
b
ilities: remove the task from ca
p
able LSM hook
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-05-26
Er
i
c
P
ar
i
s
Mer
g
e commit '
v
2
.
6
.
39'
into 20110526
commit
|
commitdiff
|
tree
2011-05-26
Eric Paris
tmpf
s
:
fix XATTR
N
o
verriding POSIX_ACL Y
commit
|
commitdiff
|
tree
2011-05-25
Eric Paris
xattr
.
h: expose s
t
r
ing
d
ef
i
nes to us
e
rsp
a
ce
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-05-25
Eri
c
P
a
r
i
s
tmpfs: i
m
plement ge
n
eric
x
a
t
tr
s
upport
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-05-12
Eri
c
Paris
SELinux:
delete debu
g
g
i
ng pr
i
n
t
k
s from filename_trans
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-04-28
Eric
P
a
ris
fl
e
x_arrays:
all
o
w
z
ero le
n
gth flex
arrays
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-04-28
Er
i
c Paris
flex_
a
rray: flex_ar
r
ay_prealloc take
s
a
number of elemen
t
s
.
.
.
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-04-28
Eric Paris
SE
L
inux: pass la
s
t path component
in ma
y
_creat
e
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-04-28
Eric Paris
SELi
n
ux: introduce path_has_perm
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-04-28
Eri
c
Paris
flex_array: allo
w
0 l
e
ngth
e
le
m
e
n
ts
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
2011-04-28
Eric Par
i
s
flex_a
r
rays:
al
l
o
w zero length
flex array
s
Signed-off-by:
Eric Paris
<eparis@redhat.com>
commit
|
commitdiff
|
tree
next