diff options
| author | Chris Coulson <chris.coulson@canonical.com> | 2022-05-03 16:02:19 +0200 |
|---|---|---|
| committer | Peter Jones <pjones@redhat.com> | 2022-05-24 16:28:35 -0400 |
| commit | 5a82d7973656c68f006aac1ed462e7bb37075d92 (patch) | |
| tree | a5f1fa1eef3375e0530042b3ede507c8ea8ac837 /Cryptlib/opensslconf-diff.patch | |
| parent | e99bdbb827a50cde019393d3ca1e89397db221a7 (diff) | |
| download | efi-boot-shim-5a82d7973656c68f006aac1ed462e7bb37075d92.tar.gz efi-boot-shim-5a82d7973656c68f006aac1ed462e7bb37075d92.zip | |
pe: Perform image verification earlier when loading grub
The second stage loader was being verified after loading it into
memory. As an additional hardening measure to avoid performing risky
memcpys using header fields from a potentially specially crafted image,
perform the verification before this so that it can be rejected earlier.
Signed-off-by: Chris Coulson <chris.coulson@canonical.com>
Diffstat (limited to 'Cryptlib/opensslconf-diff.patch')
0 files changed, 0 insertions, 0 deletions
