75 Commits

Author SHA1 Message Date
openeuler-ci-bot
a83fcce07f
!199 Correct the signature code
From: @markeryang 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-10-30 01:12:11 +00:00
markeryang
d152ba03bf Correct the signature code 2024-10-29 07:42:30 +00:00
openeuler-ci-bot
d7e3dccf03
!196 [sync] PR-192: backport patch from upstream
From: @openeuler-sync-bot 
Reviewed-by: @dillon_chen 
Signed-off-by: @dillon_chen
2024-10-22 08:24:59 +00:00
fly_fzc
509d534207 backport patch from upstream
(cherry picked from commit 60f7c2d53e1c65281d6c78ad0c0b38606d29cd6a)
2024-10-22 14:25:44 +08:00
openeuler-ci-bot
b3e2875cd9
!180 支持CFCA安全启动签名
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-05-29 04:43:48 +00:00
jinlun
30ffd1193a add cfca signed shim 2024-05-29 10:19:00 +08:00
openeuler-ci-bot
8f88adaa5a
!177 修复在24.03的物理机上使用shim启动虚拟机报错问题
From: @hzero1996 
Reviewed-by: @zhujianwei001 
Signed-off-by: @zhujianwei001
2024-05-17 06:11:00 +00:00
hzero1996
5e5349dccf Align section size up to page size for mem attrs 2024-05-17 11:40:24 +08:00
openeuler-ci-bot
f2fcad561e
!176 [sync] PR-169: shim包中启动项名称换标替换
From: @openeuler-sync-bot 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-05-09 07:34:54 +00:00
lijuzhang
646f0ce5ab replace vendor for BOOTX64.CSV or BOOTAA64.CSV
Signed-off-by: lijuzhang <lijuzhang@inspur.com>
(cherry picked from commit ca2774aef55f6c40018203c50dbaf652b7650731)
2024-05-09 15:10:46 +08:00
openeuler-ci-bot
819c63f433
!173 [sync] PR-164: 修复tpcm功能问题,并忽略因ebs权限不足导致的签名失败
From: @openeuler-sync-bot 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-05-09 07:08:46 +00:00
jinlun
b5b3cce120 Fix the TPCM feature issue, and ignore signing failures
due to insufficient permissions.

(cherry picked from commit 51c12eb1c8134e46457ecbccbf7bebf69821dd72)
2024-05-08 18:09:54 +08:00
openeuler-ci-bot
c86992ba6c
!158 [sync] PR-150: Interface for replacing the EFI signature
From: @openeuler-sync-bot 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-04-01 07:20:53 +00:00
jinlun
3b02bb76eb Interface for replacing the EFI signature
(cherry picked from commit 4f336add1a901d239d7e16bae7a6de767b1eb020)
2024-04-01 14:41:49 +08:00
openeuler-ci-bot
858d1a3525
!153 [sync] PR-152: 【Mainline】Backport patch from upstream
From: @openeuler-sync-bot 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-03-26 03:03:27 +00:00
yixiangzhike
2622ef5277 Backport patch from upstream
(cherry picked from commit 65d0919c62bdfa8a40ba21cf33d80413f92f25a6)
2024-03-25 20:49:48 +08:00
openeuler-ci-bot
b72af9b104
!148 shim模块添加安全启动签名
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee, @huangzq6 
Signed-off-by: @HuaxinLuGitee
2024-02-28 09:17:54 +00:00
jinlun
2ec03fcf21 shim模块添加安全启动签名 2024-02-28 16:58:41 +08:00
openeuler-ci-bot
3accad21a8
!147 fix CVE-2023-3446 CVE-2023-0465 CVE-2023-2650 CVE-2024-0727
From: @zhengxiaoxiaoGitee 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-02-28 06:09:46 +00:00
zhengxiaoxiao
c6d08b7c05 fix CVE-2023-3446 CVE-2023-0465 CVE-2023-2650 CVE-2024-0727 2024-02-28 11:18:10 +08:00
openeuler-ci-bot
ea9e70daff
!138 修复CVE-2023-0464
From: @jinlun123123 
Reviewed-by: @huangzq6, @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2024-02-21 01:34:37 +00:00
jinlun
bc63d61586 fix CVE-2023-0464 2024-02-19 15:53:41 +08:00
openeuler-ci-bot
f0fc62d241
!137 master:shim支持可信计算3.0tpcm特性
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee, @huangzq6 
Signed-off-by: @HuaxinLuGitee
2024-02-19 06:14:41 +00:00
jinlun
052a50d3f5 add tpcm support with ipmi channel 2024-02-05 11:08:36 +08:00
openeuler-ci-bot
6ecd956536
!129 漏洞修复CVE-2023-40547 CVE-2023-40548 CVE-2023-40549 CVE-2023-40550 CVE-2023-40551
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee, @huangzq6 
Signed-off-by: @HuaxinLuGitee
2024-01-30 01:14:30 +00:00
jinlun
387de7595c fix CVE-2023-40547 CVE-2023-40548 CVE-2023-40549 CVE-2023-40550 CVE-2023-40551 2024-01-25 14:52:51 +08:00
openeuler-ci-bot
1a2bd82fa5
!102 修复shimCVE-2023-40546
From: @jinlun123123 
Reviewed-by: @huangzq6, @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2023-11-08 02:39:01 +00:00
jinlun
e02dd67b00 fix CVE-2023-40546 2023-11-07 10:03:26 +08:00
openeuler-ci-bot
e43729a5b3
!94 shim:update version to 15.7
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2023-07-22 03:42:09 +00:00
jinlun
c21064e554 shim:update version to 15.7 2023-07-18 15:47:29 +08:00
openeuler-ci-bot
879168488b
!89 update openssl version description
From: @yuxiating2021 
Reviewed-by: @huangzq6, @HuaxinLuGitee 
Signed-off-by: @huangzq6, @HuaxinLuGitee
2023-07-11 11:38:38 +00:00
yuxiating
0d6ffed11d update openssl version description
Signed-off-by: yuxiating <yuxiating@xfusion.com>
2023-07-05 16:58:34 +08:00
openeuler-ci-bot
f359ba6200
!81 delete debuginfo subpackage buildarch
From: @fu-shanqing 
Reviewed-by: @jinlun123123, @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2023-03-23 10:54:38 +00:00
fu-shanqing
1adf51038c delete debuginfo subpackage buildarch 2023-02-28 10:35:55 +08:00
openeuler-ci-bot
0061f4faa9
!75 【轻量级 PR】:add code check in shim
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2023-02-14 15:01:25 +00:00
jinlun
125001ae88
add code check in shim
Signed-off-by: jinlun <jinlun@huawei.com>
2023-02-11 06:33:39 +00:00
openeuler-ci-bot
86ca9859ae
!63 【轻量级 PR】:shim:add edition number
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2023-01-09 09:14:57 +00:00
jinlun
4b33ab0934
shim:add edition number
Signed-off-by: jinlun <jinlun@huawei.com>
2022-12-13 03:19:58 +00:00
openeuler-ci-bot
080b70949e
!58 add some switch
From: @HuaxinLuGitee 
Reviewed-by: @zhujianwei001 
Signed-off-by: @zhujianwei001
2022-11-21 11:38:13 +00:00
openeuler-ci-bot
eee98029d4
!55 bugfix for SMx feature
From: @HuaxinLuGitee 
Reviewed-by: @zhujianwei001 
Signed-off-by: @zhujianwei001
2022-11-12 09:35:29 +00:00
Huaxin Lu
73c69ded0e add some switch 2022-11-11 15:09:29 +08:00
Huaxin Lu
aa056b2188 Bugfix for SM2 certificate chain verify 2022-11-11 12:16:57 +08:00
openeuler-ci-bot
6b354f7147
!53 【轻量级 PR】:Add BuildRequires on the arrch64
From: @jinlun123123 
Reviewed-by: @HuaxinLuGitee 
Signed-off-by: @HuaxinLuGitee
2022-11-11 02:54:07 +00:00
Huaxin Lu
a4a25552fe bugfix for SMx feature 2022-11-11 10:47:44 +08:00
jinlun
f5ec1e46d9
Add BuildRequires on the arrch64
Signed-off-by: jinlun <jinlun@huawei.com>
2022-11-10 12:40:37 +00:00
openeuler-ci-bot
3618599565
!52 Optimize patches for SMx feature
From: @HuaxinLuGitee 
Reviewed-by: @zhujianwei001 
Signed-off-by: @zhujianwei001
2022-11-08 12:31:48 +00:00
Huaxin Lu
9b8a9d6210 shim optimize SMx support patches 2022-11-07 12:14:47 +08:00
openeuler-ci-bot
bc03634544
!47 shim support SMx verify
From: @HuaxinLuGitee 
Reviewed-by: @zhujianwei001 
Signed-off-by: @zhujianwei001
2022-11-03 06:33:14 +00:00
Huaxin Lu
22e678972c shim support SMx 2022-11-02 14:27:05 +08:00
openeuler-ci-bot
1843d1a1d6
!30 升级shim版本至15.6,修复CVE-2022-28737
From: @chenxi-mao 
Reviewed-by: @zhujianwei001 
Signed-off-by: @zhujianwei001
2022-07-22 07:04:05 +00:00