[Skiboot-stable] [git pull] skiboot v6.8.1
Vasant Hegde
hegdevasant at linux.vnet.ibm.com
Thu Jul 22 16:49:43 AEST 2021
The following changes since commit 1cdde9466ab658fb5b5a53af8c4e6a8929eef698:
skiboot v6.8 release notes (2021-05-28 17:38:53 +0530)
are available in the Git repository at:
https://github.com/hegdevasant/skiboot.git tags/v6.8.1
for you to fetch changes up to 0c077e6a538e72edd429857610a95ef611732481:
skiboot v6.8.1 release notes (2021-07-22 12:13:21 +0530)
----------------------------------------------------------------
v6.8.1
----------------------------------------------------------------
Daniel Axtens (4):
secvar/backend: Don't overread data in auth descriptor
secvar/backend: fix an integer underflow bug
secvar/backend: fix a memory leak in get_pkcs7
pkcs7: pkcs7_get_content_info_type should reset *p on error
Nayna Jain (1):
secvar: fix endian conversion
Nick Child (4):
secvar: ensure ESL buf size is at least what ESL header expects
secvar: Make `validate_esl_list` iterate through esl chain
secvar: return error if validate_esl has extra data
secvar: return error if verify_signature runs out of ESLs
Vasant Hegde (1):
skiboot v6.8.1 release notes
doc/release-notes/skiboot-6.8.1.rst | 31 +++++++++
libstb/crypto/pkcs7/pkcs7.c | 4 +-
libstb/secvar/backend/edk2-compat-process.c | 32 +++++++---
libstb/secvar/test/Makefile.check | 5 +-
libstb/secvar/test/data/KEKeslcorrupt.h | 161
+++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/data/KEKpkcs7corrupt.h | 161
+++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/data/multipletrimmedKEK.h | 225
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/data/trimmedKEK.h | 161
+++++++++++++++++++++++++++++++++++++++++++++++
libstb/secvar/test/secvar-test-edk2-compat.c | 124
++++++++++++++++++++++++++++++++++++
libstb/secvar/test/secvar-test-pkcs7.c | 32 ++++++++++
10 files changed, 926 insertions(+), 10 deletions(-)
create mode 100644 doc/release-notes/skiboot-6.8.1.rst
create mode 100644 libstb/secvar/test/data/KEKeslcorrupt.h
create mode 100644 libstb/secvar/test/data/KEKpkcs7corrupt.h
create mode 100644 libstb/secvar/test/data/multipletrimmedKEK.h
create mode 100644 libstb/secvar/test/data/trimmedKEK.h
create mode 100644 libstb/secvar/test/secvar-test-pkcs7.c
More information about the Skiboot-stable
mailing list