summaryrefslogtreecommitdiff
AgeCommit message (Expand)Author
2015-04-13Fix length of allocated buffer for boot option comparison.Laszlo Ersek
2015-04-13fallback: Fix comparison between signed and unsigned in debugging code.Richard W.M. Jones
2015-04-13Don't install our protocols if we're not in secure mode.Peter Jones
2015-04-13Align the sections we're loading, and check for validity /after/ discarding.Peter Jones
2014-12-11Add nostdinc to the CFLAGS for libGary Ching-Pang Lin
2014-10-13Bump version to 0.8Peter Jones
2014-10-08releasing package shim version 0.7-0ubuntu3Steve Langasek
2014-10-08* SECURITY UPDATE: heap overflow and out-of-bounds read access whenSteve Langasek
2014-10-07releasing package shim version 0.7-0ubuntu2Steve Langasek
2014-10-07Update debian/patches/prototypes with some new declarations needed forSteve Langasek
2014-10-07Restore debian/patches/prototypes, which still is needed on shim 0.7Steve Langasek
2014-10-07releasing package shim version 0.7-0ubuntu1Steve Langasek
2014-10-07debian/patches/0001-Update-openssl-to-0.9.8za.patch: cherry-pickSteve Langasek
2014-10-07Drop prototypes patch, apparently not needed upstreamSteve Langasek
2014-10-07drop most patches, included upstream.Steve Langasek
2014-10-06Merge upstream version 0.7Steve Langasek
2014-10-06Import upstream version 0.7Steve Langasek
2014-10-02Correctly reject bad tftp addresses earlier, rather than later.Peter Jones
2014-10-02Use -Werror=sign-compare .Peter Jones
2014-10-02Make another integer compare be signed/unsigned safe as well.Peter Jones
2014-10-02OOB access when parsing MOK List/Certificates on MOK enrollmentSebastian Krahmer
2014-10-02shim buffer overflow on ipv6 option parsingSebastian Krahmer
2014-10-02Another testplan error.Peter Jones
2014-10-02Cryptlib: remove the unused filesGary Ching-Pang Lin
2014-10-02Don't verify images with the empty build keyGary Ching-Pang Lin
2014-10-02Fix some minor testplan errors.Peter Jones
2014-10-02Don't append an empty cert list to MokListRT if vendor_cert_size is 0.Peter Jones
2014-09-30Actually find the relocations correctly and process them that way.Peter Jones
2014-09-30Revert header changesPeter Jones
2014-09-21Make list_keys() index variables all be signed.Peter Jones
2014-09-21Do the same for ia32...Peter Jones
2014-09-21Generate a sane PE header on shim, fallback, and MokManager.Peter Jones
2014-09-21Fix our "in_protocol" printing.Peter Jones
2014-09-21Don't call AuthenticodeVerify if vendor_cert_size is 0.Peter Jones
2014-09-21Validate computed hash bases/hash sizes more thoroughly.Peter Jones
2014-09-21Make 64-on-32 maybe work on x86_64.Peter Jones
2014-09-19Actually refer to the base relocation table of our loaded image.Peter Jones
2014-08-27Make sure we don't try to load a binary from a different arch.Peter Jones
2014-08-27Don't name something exit().Peter Jones
2014-08-27Handle empty .reloc section in PE/COFF loaderArd Biesheuvel
2014-08-27Fix typo from Ard's old tree 32-bit ARM patch.Peter Jones
2014-08-19Update openssl to 0.9.8zbGary Ching-Pang Lin
2014-08-12Add support for 32-bit ARMArd Biesheuvel
2014-08-12Add support for 64-bit ARM (AArch64)Ard Biesheuvel
2014-08-12Factor out x86-isms and add cross compile supportArd Biesheuvel
2014-08-12unhook_system_services: bail on systab == NULLArd Biesheuvel
2014-08-12CryptLib: undefine va_arg and friends before redefining themArd Biesheuvel
2014-08-04releasing package shim version 0.4-0ubuntu5Steve Langasek
2014-07-21Replace build instructions in README with something not completely wrong.Peter Jones
2014-07-14Update openssl to 0.9.8zaGary Ching-Pang Lin