2018-12-16 |
Kees Cook | pstore/ram: Fix failure-path memory leak in ramoops_init Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-11-20 |
Kees Cook | mm: refuse wrapped vm_brk requests Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-11-20 |
Kees Cook | binfmt_elf: fix calculations for bss padding Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-10-03 |
Kees Cook | exec: Limit arg stack to at most 75% of _STK_LIM Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-10-03 |
Kees Cook | x86/speculation: Make "seccomp" the default mode for... Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-10-03 |
Kees Cook | seccomp: Add filter flag to opt-out of SSB mitigation Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-10-03 |
Kees Cook | seccomp: Enable speculation flaw mitigations Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-10-03 |
Kees Cook | proc: Provide details on speculation flaw mitigations Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-10-03 |
Kees Cook | nospec: Allow getting/setting on non-current task Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-09-25 |
Kees Cook | seccomp: add "seccomp" syscall Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-09-25 |
Kees Cook | seccomp: split mode setting routines Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-09-25 |
Kees Cook | seccomp: extract check/assign mode helpers Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-09-25 |
Kees Cook | seccomp: create internal mode-setting function Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-09-25 |
Kees Cook | video: uvesafb: Fix integer overflow in allocation Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-06-16 |
Kees Cook | NFC: llcp: Limit size of SDP URI Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-01-09 |
Kees Cook | KPTI: Report when enabled Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2018-01-09 |
Kees Cook | KPTI: Rename to PAGE_TABLE_ISOLATION Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2017-10-12 |
Kees Cook | sched: move no_new_privs into new atomic flags Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2017-07-18 |
Kees Cook | fs/exec.c: account for argv/envp pointers Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2017-07-18 |
Kees Cook | mm: Tighten x86 /dev/mem with zeroing reads Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2017-02-23 |
Kees Cook | fbdev: color map copying bounds checking Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2017-02-23 |
Kees Cook | net: ping: check minimum size on ICMP header length Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2016-04-30 |
Kees Cook | x86: standardize mmap_rnd() usage Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2015-12-18 |
Kees Cook | mac: validate mac_partition is within sector Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2015-09-29 |
Kees Cook | fs: create and use seq_show_option for escaping Signed-off-by: Kees Cook <keescook@chromium.org> Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2015-02-04 |
Kees Cook | x86, build: replace Perl script with Shell script Signed-off-by: Kees Cook <keescook@chromium.org> Cc: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2015-02-04 |
Kees Cook | crypto: include crypto- module prefix in template Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2015-02-04 |
Kees Cook | crypto: prefix module autoloading with "crypto-" Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2015-02-04 |
Kees Cook | x86, boot: Skip relocs when load address unchanged Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-12-01 |
Kees Cook | x86, kaslr: Handle Gold linker for finding bss/brk Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-12-01 |
Kees Cook | x86, mm: Set NX across entire PMD at boot Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-10-30 |
Kees Cook | firmware_class: make sure fw requests contain a name Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-10-05 |
Kees Cook | x86/kaslr: Avoid the setup_data area when picking location Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-19 |
Kees Cook | net: filter: fix upper BPF instruction limit Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-16 |
Kees Cook | x86, kaslr: boot-time selectable with hibernation Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-16 |
Kees Cook | PM / hibernate: introduce "nohibernate" boot parameter Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-16 |
Kees Cook | of: avoid format string parsing in kobject names Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-11 |
Kees Cook | s390: avoid format strings leaking into names Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-11 |
Kees Cook | powerpc/xmon: avoid format string leaking to printk Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-06 |
Kees Cook | tools/testing/selftests/sysctl: validate sysctl_writes_strict Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-06 |
Kees Cook | sysctl: allow for strict write position handling Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-06 |
Kees Cook | sysctl: refactor sysctl string writing logic Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-06-06 |
Kees Cook | sysctl: clean up char buffer arguments Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-05-29 |
Kees Cook | rsi: avoid format string leak to thread name Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-05-26 |
Kees Cook | ASoC: Intel: avoid format string leak to thread name Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-05-23 |
Kees Cook | staging/rtl8821ae: avoid format string leak to thread... Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-05-20 |
Kees Cook | HID: core: fix validation of report id 0 Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-05-06 |
Kees Cook | lockd: avoid warning when CONFIG_SYSCTL undefined Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-05-05 |
Kees Cook | UBI: avoid workqueue format string leak Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-04-18 |
Kees Cook | mips: export flush_icache_range Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-04-16 |
Kees Cook | seccomp: fix memory leak on filter attach Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-04-07 |
Kees Cook | ARM: 8014/1: mm: fix reporting of read-only PMD bits Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-28 |
Kees Cook | [IA64] Keep format strings from leaking into printk Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-24 |
Kees Cook | x86, kaslr: fix module lock ordering problem Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-17 |
Kees Cook | usb: gadget: tcm_usb_gadget: stop format strings Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-17 |
Kees Cook | kallsyms: generalize address range checking Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-15 |
Kees Cook | [SCSI] esas2r: fix potential format string flaw Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-15 |
Kees Cook | iio: force snprintf for PAGE_SIZE bufs Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-13 |
Kees Cook | [media] media: rc-core: use %s in rc_map_get() module... Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-03-10 |
Kees Cook | hwrng: add randomness to system from rng sources Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-02-26 |
Kees Cook | x86, kaslr: randomize module base load address Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-02-26 |
Kees Cook | x86, kaslr: add missed "static" declarations Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-02-18 |
Kees Cook | ARM: 7963/1: mm: report both sections from PMD Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-02-15 |
Kees Cook | lkdtm: include cacheflush.h Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-02-14 |
Kees Cook | lkdtm: add "WRITE_KERN" test Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-02-14 |
Kees Cook | lkdtm: flush icache and report actions Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-02-14 |
Kees Cook | lkdtm: convert to using pr_* for reports Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-01-24 |
Kees Cook | kexec: add sysctl to disable kexec_load Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-01-24 |
Kees Cook | test: check copy_to/from_user boundary validation Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-01-24 |
Kees Cook | test: add minimal module for verification testing Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2014-01-14 |
Kees Cook | x86, kaslr: Clarify RANDOMIZE_BASE_MAX_OFFSET Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-12-20 |
Kees Cook | stackprotector: Introduce CONFIG_CC_STACKPROTECTOR_STRONG Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-12-20 |
Kees Cook | stackprotector: Unify the HAVE_CC_STACKPROTECTOR logic... Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-12-10 |
Kees Cook | [media] doc: no singing Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-12-09 |
Kees Cook | lkdtm: clean up sparse warnings Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-15 |
Kees Cook | vsprintf: ignore %n again Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-14 |
Kees Cook | ARM: 7888/1: seccomp: not compatible with ARM OABI Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-14 |
Kees Cook | ARM: 7886/1: make OABI default to off Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-13 |
Kees Cook | exec/ptrace: fix get_dumpable() incorrect tests Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-13 |
Kees Cook | printk: report console names during cut-over Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-12 |
Kees Cook | x86, kaslr: Use char array to gain sizeof sanity Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-12 |
Kees Cook | x86, kaslr: Mix entropy sources together as needed Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-11 |
Kees Cook | bcache: defensively handle format strings Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-11-06 |
Kees Cook | kbuild: replace unbounded sprintf call in modpost Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-29 |
Kees Cook | lkdtm: add tests for additional page permissions Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-29 |
Kees Cook | lkdtm: adjust recursion size to avoid warnings Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-25 |
Kees Cook | lkdtm: isolate stack corruption test Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-18 |
Kees Cook | x86/relocs: Add percpu fixup for GNU ld 2.23 Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-13 |
Kees Cook | x86, kaslr: Raise the maximum virtual address to -1... Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-13 |
Kees Cook | x86, kaslr: Report kernel offset on panic Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-13 |
Kees Cook | x86, kaslr: Select random position from e820 maps Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-13 |
Kees Cook | x86, kaslr: Provide randomness functions Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-13 |
Kees Cook | x86, kaslr: Return location from decompress_kernel Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-13 |
Kees Cook | x86, boot: Move CPU flags out of cpucheck Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-03 |
Kees Cook | sparc: fix ldom_reboot buffer overflow harder Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-10-02 |
Kees Cook | [media] dib9000: fix potential format string leak Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-09-26 |
Kees Cook | x86, build: move build output statistics away from... Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-09-17 |
Kees Cook | staging: dgnc: fix potential format string flaw Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-09-17 |
Kees Cook | staging: lustre: clean up format string usages Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
2013-09-17 |
Kees Cook | staging: dgap: fix overflows and format strings Signed-off-by: Kees Cook <keescook@chromium.org>
|
commit | commitdiff | tree |
next |