[Skiboot-stable] [git pull] skiboot v6.7.3
Vasant Hegde
hegdevasant at linux.vnet.ibm.com
Thu Jul 22 16:35:41 AEST 2021
The following changes since commit bcb817ddd668fe93186453e9b74ec796fac8ed4d:
skiboot v6.7.2 release notes (2021-06-30 14:51:38 +0530)
are available in the Git repository at:
https://github.com/hegdevasant/skiboot.git tags/v6.7.3
for you to fetch changes up to bfc543f8c1a77a7b0a4587660262bde4b7cfb8c1:
skiboot v6.7.3 release notes (2021-07-22 11:58:48 +0530)
----------------------------------------------------------------
v6.7.3
----------------------------------------------------------------
Daniel Axtens (4):
secvar/backend: Don't overread data in auth descriptor
secvar/backend: fix an integer underflow bug
secvar/backend: fix a memory leak in get_pkcs7
pkcs7: pkcs7_get_content_info_type should reset *p on error
Nick Child (4):
secvar: ensure ESL buf size is at least what ESL header expects
secvar: Make `validate_esl_list` iterate through esl chain
secvar: return error if validate_esl has extra data
secvar: return error if verify_signature runs out of ESLs
Vasant Hegde (1):
skiboot v6.7.3 release notes
doc/release-notes/skiboot-6.7.3.rst | 29 +++++++++
libstb/crypto/pkcs7/pkcs7.c | 4 +-
libstb/secvar/backend/edk2-compat-process.c | 30 ++++++---
libstb/secvar/test/Makefile.check | 5 +-
libstb/secvar/test/data/KEKeslcorrupt.h | 161
+++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/data/KEKpkcs7corrupt.h | 161
+++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/data/multipletrimmedKEK.h | 225
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/data/trimmedKEK.h | 161
+++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/secvar-test-edk2-compat.c | 124
++++++++++++++++++++++++++++++++++++
libstb/secvar/test/secvar-test-pkcs7.c | 32 ++++++++++
10 files changed, 923 insertions(+), 9 deletions(-)
create mode 100644 doc/release-notes/skiboot-6.7.3.rst
create mode 100644 libstb/secvar/test/data/KEKeslcorrupt.h
create mode 100644 libstb/secvar/test/data/KEKpkcs7corrupt.h
create mode 100644 libstb/secvar/test/data/multipletrimmedKEK.h
create mode 100644 libstb/secvar/test/data/trimmedKEK.h
create mode 100644 libstb/secvar/test/secvar-test-pkcs7.c
More information about the Skiboot-stable
mailing list