summaryrefslogtreecommitdiff
AgeCommit message (Expand)Author
2023-06-21pe: only process RelocDir->Size of reloc sectionMike Beaton
2023-06-21Work around malformed path delimiters in file paths from DHCPAlberto Perez
2023-06-06Add a security contact email address in README.mdPeter Jones
2023-05-02SBAT-related documents formatting and spellingKamil Aronowski
2023-05-02Further improve load_certs() for non-compliant drivers/firmwaresPete Batard
2023-05-02Block Debian grub binaries with SBAT < 4Steve McIntyre
2023-05-02test-sbat: Fix exit codeNicholas Bishop
2023-05-02Drop invalid calls to `CRYPTO_set_mem_functions`Nicholas Bishop
2023-05-02Optionally allow to keep shim protocol installedLuca Boccassi
2023-02-01Don't loop forever in load_certs() with buggy firmwareRenaud Métrich
2023-01-31Release 15.7-1debian/15.7-1Steve McIntyre
2023-01-30Swith to using the upstream "enable NX" patchSteve McIntyre
2023-01-29Block Debian grub binaries with sbat < 4 (see #1024617)Steve McIntyre
2023-01-27pe: Add IS_PAGE_ALIGNED macroNicholas Bishop
2023-01-27pe: Align section size up to page size for mem attrsNicholas Bishop
2023-01-27CryptoPkg/BaseCryptLib: Fix buffer overflow issue in realloc wrapperLong Qin
2023-01-27Enable the NX compatibility flag by default.Peter Jones
2023-01-24Enable NX support at build timeSteve McIntyre
2023-01-22Update upstream commit hash in buildSteve McIntyre
2023-01-22Update to Standards-Version 4.6.2 (no changes needed)Steve McIntyre
2023-01-22Switch to using gcc-12Steve McIntyre
2023-01-22Switch to new upstream (15.7)Steve McIntyre
2023-01-22Update upstream source from tag 'upstream/15.7'Steve McIntyre
2023-01-22New upstream version 15.7upstream/15.7Steve McIntyre
2022-12-07Make sbat_var.S parse right with buggy gcc/binutilsPeter Jones
2022-11-16Update version to 15.715.7Peter Jones
2022-11-16Bump grub's sbat requirement to grub,3Peter Jones
2022-11-16Update shim's .sbat to sbat,3Peter Jones
2022-11-16More coverity modelingPeter Jones
2022-11-15CryptoPkg/BaseCryptLib: fix NULL dereferenceJian J Wang
2022-11-14mok: remove MokListTrusted from PCR 7Arthur Gautier
2022-11-14make-archive: Build reproducible tarballJulian Andres Klode
2022-11-14pe: Fix image section entry-point validationIlya Okomin
2022-11-14Add -malign-double to IA32 compiler flagsNicholas Bishop
2022-11-08load_cert_file: Use EFI RT memory functionEric Snowberg
2022-11-08load_cert_file: Fix stack issueEric Snowberg
2022-10-04shim: Flush the memory region from i-cache before executiondann frazier
2022-09-01Discard load-options that start with a NULRobbie Harwood
2022-08-16Enable TDX measurement to RTMR registerLu Ken
2022-08-04Add a link to the test plan in the readme.Peter Jones
2022-08-03Reference MokListRT instead of MokListEric Snowberg
2022-08-03Make SBAT variable payload introspectableChris Coulson
2022-07-21Release 15.6-1debian/15.6-1Steve McIntyre
2022-06-23Start packaging updates for the new 15.6 upstream releaseSteve McIntyre
2022-06-23New upstream version 15.6upstream/15.6Steve McIntyre
2022-06-23Update upstream source from tag 'upstream/15.6'Steve McIntyre
2022-06-01bump version to shim-15.615.6Peter Jones
2022-06-01sbat: add the parsed SBAT variable entries to the debug logPeter Jones
2022-05-31shim-15.6~rc215.6-rc2Peter Jones
2022-05-24Also avoid CVE-2022-28737 in verify_image()Peter Jones