path: root/security/commoncap.c
AgeCommit message (Expand)AuthorLines
2016-01-20ptrace: use fsuid, fsgid, effective creds for fs access checksJann Horn-1/+6
2015-09-04capabilities: add a securebit to disable PR_CAP_AMBIENT_RAISEAndy Lutomirski-1/+2
2015-09-04capabilities: ambient capabilitiesAndy Lutomirski-10/+92
2015-05-12LSM: Switch to lists of hooksCasey Schaufler-8/+33
2015-04-15VFS: security/: d_backing_inode() annotationsDavid Howells-3/+3
2015-01-25file->f_path.dentry is pinned down for as long as the file is open...Al Viro-5/+1
2014-11-19kill f_dentry usesAl Viro-1/+1
2014-07-24CAPABILITIES: remove undefined caps from all processesEric Paris-0/+3
2014-07-24commoncap: don't alloc the credential unless needed in cap_task_prctlTetsuo Handa-42/+30
2013-08-30capabilities: allow nice if we are privilegedSerge Hallyn-4/+4
2013-08-30userns: Allow PR_CAPBSET_DROP in a user namespace.Eric W. Biederman-1/+1
2013-02-26kill f_vfsmntAl Viro-1/+1
2012-12-14Fix cap_capable to only allow owners in the parent user namespace to have caps.Eric W. Biederman-8/+17
2012-05-31split ->file_mmap() into ->mmap_addr()/->mmap_file()Al Viro-18/+3
2012-05-31split cap_mmap_addr() out of cap_file_mmap()Al Viro-9/+23
2012-05-23Merge branch 'for-linus' of git:// Torvalds-25/+36
2012-05-04Merge tag 'v3.4-rc5' into nextJames Morris-0/+6
2012-05-03userns: Convert capabilities related permsion checksEric W. Biederman-15/+26
2012-05-03userns: Store uid and gid values in struct cred with kuid_t and kgid_t typesEric W. Biederman-2/+1
2012-04-26userns: Simplify the user_namespace by making userns->creator a kuid.Eric W. Biederman-2/+3
2012-04-19security: fix compile error in commoncap.cJonghwan Choi-0/+1
2012-04-18fcaps: clear the same personality flags as suid when fcaps are usedEric Paris-0/+5
2012-04-14Add PR_{GET,SET}_NO_NEW_PRIVS to prevent execve from granting privsAndy Lutomirski-2/+5
2012-04-07userns: Add an explicit reference to the parent user namespaceEric W. Biederman-1/+1
2012-04-07userns: Use cred->user_ns instead of cred->user->user_nsEric W. Biederman-7/+7
2012-02-14security: trim security.hAl Viro-0/+1
2012-01-14Merge branch 'for-linus' of git:// Torvalds-17/+7
2012-01-05security: remove the security_netlink_recv hook as it is equivalent to capable()Eric Paris-8/+0
2012-01-05capabilities: remove the task from capable LSM hook entirelyEric Paris-9/+7
2011-08-16capabilities: initialize has_capSerge Hallyn-1/+1
2011-08-12capabilities: do not grant full privs for setuid w/ file caps + no effective ...Zhi Li-6/+10
2011-04-04capabilities: do not special case exec of initEric Paris-9/+4
2011-03-23userns: allow ptrace from non-init user namespacesSerge E. Hallyn-8/+32
2011-03-23userns: security: make capabilities relative to the user namespaceSerge E. Hallyn-7/+31
2011-03-16Merge git:// Torvalds-2/+1
2011-03-03netlink: kill eff_cap from struct netlink_skb_parmsPatrick McHardy-2/+1
2011-02-02time: Correct the *settime* parametersRichard Cochran-1/+1
2010-11-15capabilities/syslog: open code cap_syslog logic to fix build failureEric Paris-21/+0
2010-11-12Restrict unprivileged access to kernel syslogDan Rosenberg-0/+2
2010-10-21security: remove unused parameter from security_task_setscheduler()KOSAKI Motohiro-4/+1
2010-08-17Make do_execve() take a const filename pointerDavid Howells-1/+1
2010-04-23security: whitespace coding style fixesJustin P. Mattock-2/+2
2010-04-20Security: Fix the comment of cap_file_mmap()
2010-02-05syslog: clean up needless commentKees Cook-1/+0
2010-02-04syslog: use defined constants instead of raw numbersKees Cook-2/+3
2010-02-04syslog: distinguish between /proc/kmsg and syscallsKees Cook-1/+6
2009-11-24remove CONFIG_SECURITY_FILE_CAPABILITIES compile optionSerge E. Hallyn-70/+2
2009-10-20security: remove root_plugJames Morris-1/+1
2009-08-06Security/SELinux: seperate lsm specific mmap_min_addrEric Paris-1/+1
2009-08-06Capabilities: move cap_file_mmap to commoncap.cEric Paris-0/+30