|
0001-fix-verify_mok.patch
|
|
0002-shim.c-Add-support-for-hashing-relocation-of-32-bit-.patch
|
|
0003-netboot.h-fix-build-error-on-32-bit-systems.patch
|
|
0004-properly-compile-OpenSSL-in-32-bit-mode.patch
|
|
0005-fallback.c-fix-32-bit-compilation.patch
|
|
0006-fix-fallback.so-build-dependency.patch
|
|
0007-propagate-some-path-variables.patch
|
|
0008-allow-32-bit-compilation-with-64-bit-compiler.patch
|
|
0009-shim-improve-error-messages.patch
|
|
0010-Clarify-meaning-of-insecure_mode.patch
|
|
0011-Don-t-hook-system-services-if-shim-has-no-built-in-k.patch
|
|
0012-Fix-path-generation-for-Dhcpv4-bootloader.patch
|
|
0013-Lengths-that-might-be-1-can-t-be-unsigned-Peter.patch
|
|
0014-Fix-wrong-sizeof.patch
|
|
0015-Initialize-entries-before-we-pass-it-to-another-func.patch
|
|
0016-Rewrite-directory-traversal-allocation-path-so-cover.patch
|
|
0017-Error-check-the-right-thing-in-get_variable_attr-whe.patch
|
|
0018-fallback-For-HD-device-paths-use-just-the-media-node.patch
|
|
0019-fallback-Attempt-to-re-use-existing-entries-when-pos.patch
|
|
0020-Add-a-preliminary-test-plan.patch
|
|
0021-Add-a-failure-case-to-the-test-plan-and-fix-an-order.patch
|
|
0022-Allow-fallback-to-use-the-system-s-LoadImage-StartIm.patch
|
|
0023-additional-bounds-checking-on-section-sizes.patch
|
|
0024-Kees-patch-missed-the-offset-adjustment-to-PEHdr.patch
|
|
0025-Get-rid-of-SectionCache-in-generate_hash-it-is-unuse.patch
|
|
0026-fallback-Avoid-duplicate-old-BootOrder.patch
|
|
0027-fallback-Fix-the-data-size-for-boot-option-compariso.patch
|
|
0028-fallback-Try-to-boot-the-first-boot-option-anyway.patch
|
|
0029-Fetch-the-netboot-image-from-the-same-device.patch
|
|
0030-Check-the-first-4-bytes-of-the-certificate.patch
|
|
0031-Remove-grubpath-in-generate_path.patch
|
|
0032-MokManager-delete-the-BS-NV-variables-the-right-way.patch
|
|
0033-MokManager-handle-the-error-status-from-ReadKeyStrok.patch
|
|
0034-Exclude-ca.crt-while-signing-EFI-images.patch
|
|
0035-No-newline-for-console_notify.patch
|
|
0036-Remove-the-duplicate-calls-in-lib-console.c.patch
|
|
0037-Silence-the-functions-of-shim-protocol.patch
|
|
0038-Free-the-string-from-DevicePathToStr.patch
|
|
0039-Explain-the-logic-in-secure_mode-better.patch
|
|
0040-Check-the-secure-variables-with-the-lib-functions.patch
|
|
0041-Make-sure-we-default-to-assuming-we-re-locked-down.patch
|
|
0042-Simplify-the-checking-of-SB-and-DB-states.patch
|
|
0043-Update-openssl-to-0.9.8za.patch
|
|
0044-Replace-build-instructions-in-README-with-something-.patch
|
|
0045-CryptLib-undefine-va_arg-and-friends-before-redefini.patch
|
|
0046-unhook_system_services-bail-on-systab-NULL.patch
|
|
0047-Factor-out-x86-isms-and-add-cross-compile-support.patch
|
|
0048-Add-support-for-64-bit-ARM-AArch64.patch
|
|
0049-Add-support-for-32-bit-ARM.patch
|
|
0050-Update-openssl-to-0.9.8zb.patch
|
|
0051-Fix-typo-from-Ard-s-old-tree-32-bit-ARM-patch.patch
|
|
0052-Handle-empty-.reloc-section-in-PE-COFF-loader.patch
|
|
0053-Don-t-name-something-exit.patch
|
|
0054-Make-sure-we-don-t-try-to-load-a-binary-from-a-diffe.patch
|
|
0055-Actually-refer-to-the-base-relocation-table-of-our-l.patch
|
|
0056-Make-64-on-32-maybe-work-on-x86_64.patch
|
|
0057-Validate-computed-hash-bases-hash-sizes-more-thoroug.patch
|
|
0058-Don-t-call-AuthenticodeVerify-if-vendor_cert_size-is.patch
|
|
0059-Fix-our-in_protocol-printing.patch
|
|
0060-Generate-a-sane-PE-header-on-shim-fallback-and-MokMa.patch
|
|
0061-Do-the-same-for-ia32.patch
|
|
0062-Make-list_keys-index-variables-all-be-signed.patch
|
|
0063-Revert-header-changes.patch
|
|
0064-Actually-find-the-relocations-correctly-and-process-.patch
|
|
0065-Don-t-append-an-empty-cert-list-to-MokListRT-if-vend.patch
|
|
0066-Fix-some-minor-testplan-errors.patch
|
|
0067-Don-t-verify-images-with-the-empty-build-key.patch
|
|
0068-Cryptlib-remove-the-unused-files.patch
|
|
0069-Another-testplan-error.patch
|
|
0070-shim-buffer-overflow-on-ipv6-option-parsing.patch
|
|
0071-OOB-access-when-parsing-MOK-List-Certificates-on-MOK.patch
|
|
0072-Make-another-integer-compare-be-signed-unsigned-safe.patch
|
|
0073-Use-Werror-sign-compare.patch
|
|
0074-Correctly-reject-bad-tftp-addresses-earlier-rather-t.patch
|
|
rhtest.cer
|
|
securebootca.cer
|