summaryrefslogtreecommitdiff
AgeCommit message (Expand)Author
2014-06-25Fetch the netboot image from the same deviceGary Ching-Pang Lin
2014-05-13[fallback] Try to boot the first boot option anywayGary Ching-Pang Lin
2014-05-13[fallback] Fix the data size for boot option comparisonGary Ching-Pang Lin
2014-05-13[fallback] Avoid duplicate old BootOrderGary Ching-Pang Lin
2014-04-11Get rid of SectionCache in generate_hash(), it is unused.Peter Jones
2014-04-11Kees' patch missed the offset adjustment to PEHdr.Peter Jones
2014-04-11additional bounds-checking on section sizesKees Cook
2014-02-14Allow fallback to use the system's LoadImage/StartImage .Peter Jones
2014-02-14Add a failure case to the test plan and fix an ordering error.Peter Jones
2014-02-14Add a preliminary test plan.Peter Jones
2014-01-31[fallback] Attempt to re-use existing entries when possible.Peter Jones
2014-01-31[fallback] For HD() device paths, use just the media node and later.Peter Jones
2013-11-21Error check the right thing in get_variable_attr() when allocating.Peter Jones
2013-11-21Rewrite directory traversal allocation path so coverity can grok it.Peter Jones
2013-11-21Initialize entries before we pass it to another function.Peter Jones
2013-11-21Fix wrong sizeof().Peter Jones
2013-11-21Lengths that might be -1 can't be unsigned, Peter.Peter Jones
2013-11-21Fix path generation for Dhcpv4 bootloader.Peter Jones
2013-11-19Don't hook system services if shim has no built-in keysMatthew Garrett
2013-11-19Clarify meaning of insecure_modeMatthew Garrett
2013-11-12shim: improve error messagesAndrew Boie
2013-11-12allow 32-bit compilation with 64-bit compilerAndrew Boie
2013-11-12propagate some path variablesAndrew Boie
2013-11-12fix fallback.so build dependencyAndrew Boie
2013-11-12fallback.c: fix 32-bit compilationAndrew Boie
2013-11-12properly compile OpenSSL in 32-bit modeAndrey Petrov
2013-11-12netboot.h: fix build error on 32-bit systemsAndrew Boie
2013-11-12shim.c: Add support for hashing/relocation of 32-bit binariesMohanraj S
2013-11-12fix verify_mok()Andrew Boie
2013-11-06Bump version to 0.7.0.7Peter Jones
2013-11-06Fix check logic for SetupMode variable.Peter Jones
2013-10-31Make tag its own make target, and make it sign tags.Peter Jones
2013-10-31Bump version to 0.6Peter Jones
2013-10-30Don't free GetVariable() return data without checking the status code.Peter Jones
2013-10-28We should be checking both mok and the system's SB settingsPeter Jones
2013-10-23Revert "additional bounds-checking on section sizes"Peter Jones
2013-10-22Don't reject all binaries without a certificate database.Peter Jones
2013-10-22additional bounds-checking on section sizesKees Cook
2013-10-04Bump version to 0.50.5Peter Jones
2013-10-04Unhook system services as we exit.Peter Jones
2013-10-04Put SHIM_VERBOSE under shim's guid, not global.Peter Jones
2013-10-04Try to actually make debug printing look reasonable.Peter Jones
2013-10-04Do more strict checking on PE Headers.Peter Jones
2013-10-04Reapply patches lost in the updateMatthew Garrett
2013-10-04Update to current Tiano CryptlibMatthew Garrett
2013-10-04Add Tiano patch e98e59c237e17f064a4ecffb39d45499f89720a1Matthew Garrett
2013-10-03Improve PE image bounds checking.Peter Jones
2013-10-03Add ident-like blobs to shim.efi for version checking.Peter Jones
2013-10-02Update for Josh's changes.Peter Jones
2013-10-02Add support for disabling db for verificationJosh Boyer