summaryrefslogtreecommitdiff
AgeCommit message (Expand)Author
2025-07-07T861: add VyOS UEFI CA alongside Debian UEFI CAHEADvyos/currentChristian Breunig
2025-07-06Merge tag '16.0' into vyos/currentChristian Breunig
2025-03-18Update version to 16.0Peter Jones
2025-03-18SBAT Level update for February 2025 GRUB CVEsJan Setje-Eilers
2025-03-18README.tpm: Update MokList entry to MokListRTThien Trung Vuong
2025-03-14Make 'make fanalyzer' work again.Peter Jones
2025-03-14simple_dir_filter(): test our 'next' pointerPeter Jones
2025-03-14shim_load_image(): initialize the buffer fullyPeter Jones
2025-03-14mirror_mok_db(): Free our mok variable name correctlyPeter Jones
2025-03-14mirror_one_mok_variable(): fix a memory leak on TPM log error.Peter Jones
2025-03-14mirror_mok_db(): get rid of an unused variable+allocationPeter Jones
2025-03-14generate_sbat_var_defs: Ensure revlistentry->revocations is initialized.Peter Jones
2025-03-14generate_sbat_var_defs: Fix memory leak on realloc failure and fd leak.Peter Jones
2025-03-14generate_sbat_var_defs: run clang-format on readfile()Peter Jones
2025-03-14SetSecureVariable(): free Cert on failurePeter Jones
2025-03-04Update version to 16.0~rc1Peter Jones
2025-03-04make-archive: some minor housekeepingPeter Jones
2025-03-04makefiles: Make GITTAG swizzle tildes to dashesPeter Jones
2025-03-03fallback: don't add new boot order entries backwardsPeter Jones
2025-02-26Disable log saving for now.Peter Jones
2025-02-26Some save_logs() improvements.Peter Jones
2025-02-26reject message with different values in multiple Content-Length header fieldDennis Tseng
2025-02-25README.tpm: reflect that vendor_db is in fact logged as "vendor_db"Jan Setje-Eilers
2025-02-25peimage: add a bunch of comments to read_header()Peter Jones
2025-02-25peimage.h: minor whitespace fixesPeter Jones
2025-02-25Add shim's current NX_COMPAT status to HSIStatusPeter Jones
2025-02-25pe: read_header(): allow skipping SecDir content validationPeter Jones
2025-02-25HSI: Add decode_hsi_bits() for easier reading of the debug logPeter Jones
2025-02-25hexdump: give a different debug log for size==0Peter Jones
2025-02-24Add DXE Services information to HSIPeter Jones
2025-02-24Add support for DXE memory attribute updates.Peter Jones
2025-02-24gnu-efi: add some DXE services.Peter Jones
2025-02-24Mirror some more efi variables to mok-variablesPeter Jones
2025-02-24Move mok state variable data flag definitions to the header.Peter Jones
2025-02-24test-mock-variables: improve some debug printsPeter Jones
2025-02-24mock-variables: fix debugging printf format specifier oopsiePeter Jones
2025-02-24shim: add HSIStatus featurePeter Jones
2025-02-24Move memory attribute support to its own file.Peter Jones
2025-02-24Make test-mok-error failures *slightly* more clear.Peter Jones
2025-02-24mok variables: add a format callbackPeter Jones
2025-02-24mok: add MOK_VARIABLE_CONFIG_ONLYPeter Jones
2025-02-24get_mem_attrs(): ensure an error code is set on failurePeter Jones
2025-02-24Silence minor nit in load-options parsing debug outputPeter Jones
2025-02-24Save the debug and error logs in mok-variablesPeter Jones
2025-02-24Move error logging decls out of shim.hPeter Jones
2025-02-24compiler.h: minor ALIGN_... fixesPeter Jones
2025-02-19regression: out of bounds read in CopyMem() in ad8692eJan Setje-Eilers
2025-02-18post-process-pe: add tests to validate NX complianceDennis Tseng
2025-02-18Document how revocations can be deliveredJan Setje-Eilers
2025-02-18netboot can try to load shim_certificate_[0..9].efiJan Setje-Eilers