73 Commits

Author SHA1 Message Date
yexiao
33439c309c Fix some CVE
fix CVE-2022-36763、CVE-2022-36764、CVE-2022-36765

Signed-off-by: yexiao <yexiao7@huawei.com>
(cherry picked from commit 45d7902c879c8a960a59b4d86c97ca7b7c1765c6)
2024-03-11 09:58:09 +08:00
openeuler-ci-bot
bf93641b42
!182 修复CVE: CVE-2023-3446、CVE-2023-3817、CVE-2024-0727、CVE-2023-2975、CVE-2023-6129
From: @Ye-Xiao12 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-03-04 12:54:37 +00:00
yexiao
73840139ff Fix some CVE
CVE-2023-3446、CVE-2023-3817、CVE-2024-0727、CVE-2023-2975、CVE-2023-6129

Signed-off-by: yexiao <yexiao7@huawei.com>
2024-03-01 11:18:10 +08:00
openeuler-ci-bot
d36cfacf44
!172 Added firmware scanning directory mapping for libvirt XML
From: @duyiwei7w 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-02-08 02:11:48 +00:00
duyiwei
a0c638905f Added firmware scanning directory mapping for libvirt XML
Signed-off-by: duyiwei <duyiwei@kylinos.cn>
2024-01-25 17:44:47 +08:00
openeuler-ci-bot
34e91a4d10
!164 upgrade to 202308 for support riscv64 and add a patch to fix build error on the riscv64 obs build environment.
From: @ouuleilei 
Reviewed-by: @caojinhuajy, @yezengruan 
Signed-off-by: @yezengruan
2023-09-13 03:24:54 +00:00
ouuleilei
d3d233a55d upgrade to 202308 for support riscv64 and add a patch to fix build error on the riscv64 obs build environment. 2023-09-12 10:08:28 +08:00
openeuler-ci-bot
2cc854a60f
!150 Fix miss of changelog
From: @Ye-Xiao12 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-08-24 11:39:43 +00:00
yexiao
95521053a1 Fix miss of changelog
Signed-off-by: yexiao <yexiao7@huawei.com>
2023-07-27 03:49:50 +08:00
openeuler-ci-bot
6277244371
!139 solving the compilation failure problem of gcc 12.3.0
From: @JiaboFeng 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-07-14 06:09:36 +00:00
Jiabo Feng
b436e3c8aa solving the compilation failure problem of gcc 12.3.0
reference:
https://github.com/google/brotli/pull/893
https://github.com/tianocore/edk2/pull/2347
https://github.com/tianocore/edk2/pull/2694

Signed-off-by: Jiabo Feng <fengjiabo1@huawei.com>
2023-07-14 10:26:46 +08:00
openeuler-ci-bot
6b32063c62
!130 fix CVE-2022-4304
From: @Ye-Xiao12 
Reviewed-by: @yezengruan, @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-07-07 01:50:37 +00:00
yexiao
f51f632f91 Fix CVE-2022-4304
Signed-off-by: yexiao <yexiao7@huawei.com>
2023-07-03 16:47:22 +08:00
openeuler-ci-bot
4f1df06310
!121 fix CVE-2023-0286
From: @huiyingc 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 07:23:07 +00:00
chenhuiying
4515de537b fix CVE-2023-0286
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
2023-02-26 14:48:09 +08:00
openeuler-ci-bot
36448b1372
!117 fix CVE-2023-0215
From: @huiyingc 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 05:42:26 +00:00
chenhuiying
e25a53b4bb fix CEV-2023-0215
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
2023-02-26 13:12:03 +08:00
openeuler-ci-bot
c1494de051
!106 fix CVE-2023-0401
From: @shaodenghui 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 03:56:31 +00:00
s00803682
1506bbc136 fix CVE-2023-0401 2023-02-26 11:11:38 +08:00
openeuler-ci-bot
0e82568e5f
!104 fix CVE-2022-4450
From: @shaodenghui 
Reviewed-by: @huiyingc, @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-02-25 10:26:27 +00:00
s00803682
f6a7530990 fix CVE-2022-4450 2023-02-25 18:07:13 +08:00
openeuler-ci-bot
f67a11893a
!98 fix CVE-2021-38578
From: @huiyingc 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-11-29 03:55:42 +00:00
chenhuiying
d212ca2421 CVE-2021-38578 2022-11-29 10:43:21 +08:00
openeuler-ci-bot
71f6054b22
!90 fix CVE-2019-11098
From: @huiyingc 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2022-09-29 07:08:41 +00:00
chenhuiying
6e56773a39 fix CVE-2019-11098
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
2022-09-29 09:54:27 +08:00
openeuler-ci-bot
1857e59049
!87 Enable TPM for edk
From: @miaoyubo 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-06-14 02:46:50 +00:00
miaoyubo
df8d559553 Enable tpm for edk
Enable TPM for pcr 0-7
2022-06-14 10:30:34 +08:00
openeuler-ci-bot
2f2d08f147
!78 fix spec changelog date
From: @loong-C 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-06-01 02:36:12 +00:00
mylee
ba5cc503db fix spec changelog date 2022-05-16 14:55:28 +08:00
openeuler-ci-bot
a5789db2b1
!75 update changelog
From: @yezengruan 
Reviewed-by: @kevinzhu1 
Signed-off-by: @kevinzhu1
2022-05-05 07:36:42 +00:00
yezengruan
701fa89c5d edk: update changelog
Signed-off-by: yezengruan <yezengruan@huawei.com>
2022-04-27 19:24:48 +08:00
openeuler-ci-bot
ea66396291
!74 sync from branch 22.03-LTS with !68!72
From: @yezengruan 
Reviewed-by: @kevinzhu1 
Signed-off-by: @kevinzhu1
2022-04-06 02:40:09 +00:00
Jinhua Cao
377f2ac93a OvmfPkg:VirtioNetDxe:Extend the RxBufferSize to avoid data truncation
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
(cherry picked from commit 27bd8394db13f2beff206c975f0d7febb69d639b)
2022-03-30 15:39:31 +08:00
c00576969
924da87b5c update edk2 to stable 202011
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
Signed-off-by: yezengruan <yezengruan@huawei.com>
2022-03-30 15:38:19 +08:00
openeuler-ci-bot
b55081ee1f
!59 fix CVE-2021-38576
Merge pull request !59 from caojinhuahw/master
2022-01-29 09:40:24 +00:00
Jinhua Cao
3da4384e42 fix CVE-2021-38576
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2022-01-27 11:39:11 +08:00
openeuler-ci-bot
1f385bed2f
!56 fix CVE-2021-28216
Merge pull request !56 from caojinhuahw/master
2022-01-20 08:17:46 +00:00
openeuler-ci-bot
ddb4134a16
!55 BaseTools Adaper for python3.9
Merge pull request !55 from caojinhuahw/master
2022-01-18 12:15:36 +00:00
Jinhua Cao
e61d8414ff fix CVE-2021-28216
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2022-01-18 19:17:30 +08:00
Jinhua Cao
2f0b056664 BaseTools: Adapter for python3.9
fix ucs-2 lookup on python3.9
    Work around array.array.tostring() removal in python3.9
    (cherry-pick: 5d8648345c 43bec9ea3d)

Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2022-01-18 19:04:29 +08:00
openeuler-ci-bot
74f3001d0b !43 fix CVE-2021-38575
From: @imxcc
Reviewed-by: @kevinzhu1
Signed-off-by: @kevinzhu1
2021-09-22 10:07:49 +00:00
imxcc
5a3c9bbbde fix cve-2021-38575
Signed-off-by: imxcc <xingchaochao@huawei.com>
2021-09-22 17:40:47 +08:00
openeuler-ci-bot
602ed51d0b !37 Fix CVE-2021-28211 #I46N95
From: @miaoyubo
Reviewed-by: @imxcc
Signed-off-by: @imxcc
2021-08-31 02:37:53 +00:00
miaoyubo
b8316529d8 Fix CVE-2021-28211 2021-08-31 09:53:19 +08:00
openeuler-ci-bot
acaaf2ef34 !32 ArmPkg/CompilerIntrinsicsLib: provide atomics intrinsics
From: @eillon
Reviewed-by: @imxcc
Signed-off-by: @imxcc
2021-07-30 02:17:49 +00:00
eillon
85be15144b ArmPkg/CompilerIntrinsicsLib: provide atomics intrinsics
Gary reports the GCC 10 will emit calls to atomics intrinsics routines
unless -mno-outline-atomics is specified. This means GCC-10 introduces
new intrinsics, and even though it would be possible to work around this
by specifying the command line option, this would require a new GCC10
toolchain profile to be created, which we prefer to avoid.

So instead, add the new intrinsics to our library so they are provided
when necessary.
2021-07-30 10:00:25 +08:00
openeuler-ci-bot
b5c1394a2c !26 Fix CVE-2021-28210 #I3XQKV
From: @lijiajie128
Reviewed-by: @imxcc
Signed-off-by: @imxcc
2021-06-29 07:12:11 +00:00
Jiajie Li
30b95c6463 Fix CVE-2021-28210
Signed-off-by: Jiajie Li <lijiajie11@huawei.com>
2021-06-28 16:42:40 +08:00
openeuler-ci-bot
82dc88d611 !20 spec: remove useless BuildRequire python2
From: @zhendongchen
Reviewed-by: 
Signed-off-by:
2020-11-02 11:19:16 +08:00
AlexChen
de34a2e0be spec: remove useless BuildRequire python2
The build of the edk2 don't need python2 anymore, so remote it.

Signed-off-by: AlexChen <alex.chen@huawei.com>
2020-11-02 10:51:23 +08:00