index
:
efi-boot-shim.git
bookworm/updates
bullseye/updates
buster/updates
master
upstream
vyos/current
(mirror of https://github.com/vyos/efi-boot-shim.git)
summary
refs
log
tree
commit
diff
log msg
author
committer
range
Age
Commit message (
Expand
)
Author
2022-11-16
Update version to 15.7
15.7
Peter Jones
2022-11-16
Bump grub's sbat requirement to grub,3
Peter Jones
2022-11-16
Update shim's .sbat to sbat,3
Peter Jones
2022-11-16
More coverity modeling
Peter Jones
2022-11-15
CryptoPkg/BaseCryptLib: fix NULL dereference
Jian J Wang
2022-11-14
mok: remove MokListTrusted from PCR 7
Arthur Gautier
2022-11-14
make-archive: Build reproducible tarball
Julian Andres Klode
2022-11-14
pe: Fix image section entry-point validation
Ilya Okomin
2022-11-14
Add -malign-double to IA32 compiler flags
Nicholas Bishop
2022-11-08
load_cert_file: Use EFI RT memory function
Eric Snowberg
2022-11-08
load_cert_file: Fix stack issue
Eric Snowberg
2022-10-04
shim: Flush the memory region from i-cache before execution
dann frazier
2022-09-01
Discard load-options that start with a NUL
Robbie Harwood
2022-08-16
Enable TDX measurement to RTMR register
Lu Ken
2022-08-04
Add a link to the test plan in the readme.
Peter Jones
2022-08-03
Reference MokListRT instead of MokList
Eric Snowberg
2022-08-03
Make SBAT variable payload introspectable
Chris Coulson
2022-06-01
bump version to shim-15.6
15.6
Peter Jones
2022-06-01
sbat: add the parsed SBAT variable entries to the debug log
Peter Jones
2022-05-31
shim-15.6~rc2
15.6-rc2
Peter Jones
2022-05-24
Also avoid CVE-2022-28737 in verify_image()
Peter Jones
2022-05-24
Update SBAT generation requirements for 05/24/22
Jan Setje-Eilers
2022-05-24
Update advertised sbat generation number for shim
Jan Setje-Eilers
2022-05-24
pe: Perform image verification earlier when loading grub
Chris Coulson
2022-05-24
pe: Fix a buffer overflow when SizeOfRawData > VirtualSize
Chris Coulson
2022-05-24
SBAT Policy latest should be a one-shot
Jan Setje-Eilers
2022-05-24
shim-15.6~rc1
Peter Jones
2022-05-23
sbat: Make nth_sbat_field() honor the size limit
Peter Jones
2022-05-23
mok import: handle OOM case
Peter Jones
2022-05-23
load_cert_file(): don't defererence NULL
Peter Jones
2022-05-23
Give the Coverity scanner some more GCC blinders...
Peter Jones
2022-05-23
Fix preserve_sbat_uefi_variable() logic
Jan Setje-Eilers
2022-05-18
mok.c: fix a trivial dead assignment
Peter Jones
2022-05-18
load_certs: trust dir->Read() slightly less.
Peter Jones
2022-05-18
sbat policy: make our policy change actions symbolic
Peter Jones
2022-05-18
Always initialize data/datasize before calling read_image()
Peter Jones
2022-05-18
peimage.h: make our signature macros force the type
Peter Jones
2022-05-18
sbat.h: minor reformatting for legibility
Peter Jones
2022-05-18
make: unbreak scan-build again for gnu-efi
Peter Jones
2022-05-17
SBAT revocation management
Jan Setje-Eilers
2022-05-17
post-process-pe: set EFI_IMAGE_DLLCHARACTERISTICS_NX_COMPAT
Peter Jones
2022-05-17
Add MokPolicy variable and MOK_POLICY_REQUIRE_NX
Peter Jones
2022-05-17
PE Loader: support and require NX
Peter Jones
2022-05-17
Add some missing PE image flag definitions
Peter Jones
2022-05-17
post-process-pe: there is no 's' argument.
Peter Jones
2022-05-17
Load additional certs from a signed binary
Eric Snowberg
2022-05-17
Abstract out image reading
Eric Snowberg
2022-05-17
Add verify_image
Eric Snowberg
2022-05-17
SBAT matching: Break out of the inner sbat loop if we find the entry.
Peter Jones
2022-05-17
shim: use SHIM_DEVEL_VERBOSE when built in devel mode
Peter Jones
[next]