arrfab / rpms / shim

Forked from rpms/shim 5 years ago
Clone
0001-fix-verify_mok.patch
0002-shim.c-Add-support-for-hashing-relocation-of-32-bit-.patch
0003-netboot.h-fix-build-error-on-32-bit-systems.patch
0004-properly-compile-OpenSSL-in-32-bit-mode.patch
0005-fallback.c-fix-32-bit-compilation.patch
0006-fix-fallback.so-build-dependency.patch
0007-propagate-some-path-variables.patch
0008-allow-32-bit-compilation-with-64-bit-compiler.patch
0009-shim-improve-error-messages.patch
0010-Clarify-meaning-of-insecure_mode.patch
0011-Don-t-hook-system-services-if-shim-has-no-built-in-k.patch
0012-Fix-path-generation-for-Dhcpv4-bootloader.patch
0013-Lengths-that-might-be-1-can-t-be-unsigned-Peter.patch
0014-Fix-wrong-sizeof.patch
0015-Initialize-entries-before-we-pass-it-to-another-func.patch
0016-Rewrite-directory-traversal-allocation-path-so-cover.patch
0017-Error-check-the-right-thing-in-get_variable_attr-whe.patch
0018-fallback-For-HD-device-paths-use-just-the-media-node.patch
0019-fallback-Attempt-to-re-use-existing-entries-when-pos.patch
0020-Add-a-preliminary-test-plan.patch
0021-Add-a-failure-case-to-the-test-plan-and-fix-an-order.patch
0022-Allow-fallback-to-use-the-system-s-LoadImage-StartIm.patch
0023-additional-bounds-checking-on-section-sizes.patch
0024-Kees-patch-missed-the-offset-adjustment-to-PEHdr.patch
0025-Get-rid-of-SectionCache-in-generate_hash-it-is-unuse.patch
0026-fallback-Avoid-duplicate-old-BootOrder.patch
0027-fallback-Fix-the-data-size-for-boot-option-compariso.patch
0028-fallback-Try-to-boot-the-first-boot-option-anyway.patch
0029-Fetch-the-netboot-image-from-the-same-device.patch
0030-Check-the-first-4-bytes-of-the-certificate.patch
0031-Remove-grubpath-in-generate_path.patch
0032-MokManager-delete-the-BS-NV-variables-the-right-way.patch
0033-MokManager-handle-the-error-status-from-ReadKeyStrok.patch
0034-Exclude-ca.crt-while-signing-EFI-images.patch
0035-No-newline-for-console_notify.patch
0036-Remove-the-duplicate-calls-in-lib-console.c.patch
0037-Silence-the-functions-of-shim-protocol.patch
0038-Free-the-string-from-DevicePathToStr.patch
0039-Explain-the-logic-in-secure_mode-better.patch
0040-Check-the-secure-variables-with-the-lib-functions.patch
0041-Make-sure-we-default-to-assuming-we-re-locked-down.patch
0042-Simplify-the-checking-of-SB-and-DB-states.patch
0043-Update-openssl-to-0.9.8za.patch
0044-Replace-build-instructions-in-README-with-something-.patch
0045-CryptLib-undefine-va_arg-and-friends-before-redefini.patch
0046-unhook_system_services-bail-on-systab-NULL.patch
0047-Factor-out-x86-isms-and-add-cross-compile-support.patch
0048-Add-support-for-64-bit-ARM-AArch64.patch
0049-Add-support-for-32-bit-ARM.patch
0050-Update-openssl-to-0.9.8zb.patch
0051-Fix-typo-from-Ard-s-old-tree-32-bit-ARM-patch.patch
0052-Handle-empty-.reloc-section-in-PE-COFF-loader.patch
0053-Don-t-name-something-exit.patch
0054-Make-sure-we-don-t-try-to-load-a-binary-from-a-diffe.patch
0055-Actually-refer-to-the-base-relocation-table-of-our-l.patch
0056-Make-64-on-32-maybe-work-on-x86_64.patch
0057-Validate-computed-hash-bases-hash-sizes-more-thoroug.patch
0058-Don-t-call-AuthenticodeVerify-if-vendor_cert_size-is.patch
0059-Fix-our-in_protocol-printing.patch
0060-Generate-a-sane-PE-header-on-shim-fallback-and-MokMa.patch
0061-Do-the-same-for-ia32.patch
0062-Make-list_keys-index-variables-all-be-signed.patch
0063-Revert-header-changes.patch
0064-Actually-find-the-relocations-correctly-and-process-.patch
0065-Don-t-append-an-empty-cert-list-to-MokListRT-if-vend.patch
0066-Fix-some-minor-testplan-errors.patch
0067-Don-t-verify-images-with-the-empty-build-key.patch
0068-Cryptlib-remove-the-unused-files.patch
0069-Another-testplan-error.patch
0070-shim-buffer-overflow-on-ipv6-option-parsing.patch
0071-OOB-access-when-parsing-MOK-List-Certificates-on-MOK.patch
0072-Make-another-integer-compare-be-signed-unsigned-safe.patch
0073-Use-Werror-sign-compare.patch
0074-Correctly-reject-bad-tftp-addresses-earlier-rather-t.patch
rhtest.cer
securebootca.cer