76 Commits

Author SHA1 Message Date
ShenYage
4cc4878d42 Fix CVE-2024-1298
Signed-off-by: ShenYage <shenyage1@huawei.com>
(cherry picked from commit 1d9264d6f99c7f50bdc37bdfc118bd87598adee4)
2024-06-13 09:38:25 +08:00
openeuler-ci-bot
ef6d71c654
!207 openEuler-22.03-LTS-Next分支 修复CVE-2024-2511
From: @jacob1996 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-04-17 01:43:15 +00:00
ShenYage
9aaafd9bf8 fix CVE-2024-2511
Signed-off-by: ShenYage <shenyage1@huawei.com>
2024-04-16 00:32:29 +08:00
openeuler-ci-bot
7f28dc628e
!188 (依赖前置补丁)openEuler-22.03-LTS-Next分支 修复CVE: CVE-2023-45229、CVE-2023-45230、CVE-2023-45231、CVE-2023-45232、CVE-2023-45233、CVE-2023-45234、CVE-2023-45235
From: @Ye-Xiao12 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-03-08 06:46:04 +00:00
openeuler-ci-bot
4048b62760
!184 openEuler-22.03-LTS-Next分支 修复CVE: CVE-2022-36763、CVE-2022-36764、CVE-2022-36765
From: @Ye-Xiao12 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-03-08 06:38:08 +00:00
yexiao
9fe974a680 Fix some CVE
Fix CVE-2023-45229、CVE-2023-45230、CVE-2023-45231、
CVE-2023-45232、CVE-2023-45233、CVE-2023-45234、CVE-2023-45235

Signed-off-by: yexiao <yexiao7@huawei.com>
2024-03-03 17:53:43 +08:00
yexiao
f0577bd245 Fix some CVE
fix CVE-2022-36763、CVE-2022-36764、CVE-2022-36765

Signed-off-by: yexiao <yexiao7@huawei.com>
2024-03-02 10:03:05 +08:00
openeuler-ci-bot
c49b79dfc1
!175 Fix some cve for openEuler-22.03-LTS-Next
From: @Ye-Xiao12 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2024-02-22 13:41:27 +00:00
yexiao
d3b0038b60 Fix some CVE
Fix CVE-2023-0464、CVE-2023-0465、CVE-2023-0466
CVE-2023-2650、CVE-2023-3446、CVE-2023-3817、
CVE-2024-0727

Signed-off-by: yexiao <yexiao7@huawei.com>
2024-01-25 02:14:17 +08:00
openeuler-ci-bot
da4a29c766
!161 [sync] PR-150: Fix miss of changelog
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-08-25 09:49:19 +00:00
yexiao
225073f7fb Fix miss of changelog
Signed-off-by: yexiao <yexiao7@huawei.com>
(cherry picked from commit 95521053a1501021c16552e400c509cdf2f8f427)
2023-08-25 15:32:05 +08:00
openeuler-ci-bot
93259e0c87
!157 [sync] PR-139: solving the compilation failure problem of gcc 12.3.0
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-08-25 07:28:15 +00:00
Jiabo Feng
e70d2c8392 solving the compilation failure problem of gcc 12.3.0
reference:
https://github.com/google/brotli/pull/893
https://github.com/tianocore/edk2/pull/2347
https://github.com/tianocore/edk2/pull/2694

Signed-off-by: Jiabo Feng <fengjiabo1@huawei.com>
(cherry picked from commit b436e3c8aa24f59997f23c6d649aa9fff41d7986)
2023-08-25 10:32:32 +08:00
openeuler-ci-bot
dc4059532c
!153 [sync] PR-130: fix CVE-2022-4304
From: @openeuler-sync-bot 
Reviewed-by: @caojinhuahw 
Signed-off-by: @caojinhuahw
2023-08-25 02:31:26 +00:00
yexiao
731e7b7dd4 Fix CVE-2022-4304
Signed-off-by: yexiao <yexiao7@huawei.com>
(cherry picked from commit f51f632f918731cda6ea23ccc428716a6ebcd6be)
2023-08-25 09:59:34 +08:00
openeuler-ci-bot
281015e446
!129 [sync] PR-121: fix CVE-2023-0286
From: @openeuler-sync-bot 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 07:54:24 +00:00
chenhuiying
ee379ff45d fix CVE-2023-0286
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
(cherry picked from commit 4515de537bdcb6700fb8d1416e92d4f052491e3b)
2023-02-26 15:44:00 +08:00
openeuler-ci-bot
2efc715bca
!127 [sync] PR-117: fix CVE-2023-0215
From: @openeuler-sync-bot 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 07:43:00 +00:00
chenhuiying
c696a08308 fix CEV-2023-0215
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
(cherry picked from commit e25a53b4bbdd23c539fed3baaf9e7e957122942a)
2023-02-26 15:31:37 +08:00
openeuler-ci-bot
5e7db24d60
!124 [sync] PR-106: fix CVE-2023-0401
From: @openeuler-sync-bot 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 07:30:40 +00:00
s00803682
721f081506 fix CVE-2023-0401
(cherry picked from commit 1506bbc136f7ad9b0a3e68d54dc269b29493de58)
2023-02-26 15:19:32 +08:00
openeuler-ci-bot
23c9214766
!111 [sync] PR-104: fix CVE-2022-4450
From: @openeuler-sync-bot 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2023-02-26 04:37:26 +00:00
s00803682
0b193ef398 fix CVE-2022-4450
(cherry picked from commit f6a7530990225389ccc8ab9a0def9ceadc7d4ae3)
2023-02-26 11:57:41 +08:00
openeuler-ci-bot
3729dfc072
!102 [sync] PR-98: fix CVE-2021-38578
From: @openeuler-sync-bot 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-11-29 06:23:04 +00:00
chenhuiying
9eb89655a4 CVE-2021-38578
(cherry picked from commit d212ca2421ed560008c98e6bfdd9e716cf9cb4ef)
2022-11-29 11:56:25 +08:00
openeuler-ci-bot
d7c81cdaa9
!95 [sync] PR-90: fix CVE-2019-11098
From: @openeuler-sync-bot 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-09-30 01:30:28 +00:00
chenhuiying
edb31a3f51 fix CVE-2019-11098
Signed-off-by: chenhuiying <chenhuiying4@huawei.com>
(cherry picked from commit 6e56773a39d924929ed65fa147aaabd490b02a4c)
2022-09-30 09:20:58 +08:00
openeuler-ci-bot
2dce2a964a
!89 [sync] PR-87: Enable TPM for edk
From: @openeuler-sync-bot 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-06-14 03:24:07 +00:00
miaoyubo
e2e211d593 Enable tpm for edk
Enable TPM for pcr 0-7

(cherry picked from commit df8d55955359e0fe0d0ff143d1d5d2d47b41e18d)
2022-06-14 10:47:17 +08:00
openeuler-ci-bot
edd3de5970
!86 fix spec changelog date
From: @loong-C 
Reviewed-by: @yezengruan 
Signed-off-by: @yezengruan
2022-06-01 02:37:02 +00:00
mylee
e280e2756f fix spec changelog date 2022-05-16 15:11:19 +08:00
openeuler-ci-bot
e7ddedffc1
!77 [sync] PR-75: update changelog
From: @openeuler-sync-bot 
Reviewed-by: @kevinzhu1 
Signed-off-by: @kevinzhu1
2022-05-05 09:43:27 +00:00
yezengruan
83adf6d7ce edk: update changelog
Signed-off-by: yezengruan <yezengruan@huawei.com>
(cherry picked from commit 701fa89c5de02e18de4c4d098dd27dc7c8b2fd61)
2022-05-05 15:38:41 +08:00
openeuler-ci-bot
c0a88fcf38
!72 OvmfPkg: VirtioNetDxe: Extend the RxBufferSize to avoid data truncation
From: @caojinhuahw 
Reviewed-by: @imxcc 
Signed-off-by: @imxcc
2022-02-23 03:42:18 +00:00
openeuler-ci-bot
7d68e828ce
!70 fix CVE-2021-38576
From: @caojinhuahw 
Reviewed-by: @imxcc 
Signed-off-by: @imxcc
2022-02-18 02:45:21 +00:00
Jinhua Cao
27bd8394db OvmfPkg:VirtioNetDxe:Extend the RxBufferSize to avoid data truncation
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2022-02-17 18:58:40 +08:00
Jinhua Cao
84a3d9d0b9 fix CVE-2021-38576
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2022-02-15 10:18:13 +08:00
openeuler-ci-bot
f6bf6e740e
!68 update edk2 to stable202011
From: @caojinhuahw 
Reviewed-by: @imxcc 
Signed-off-by: @imxcc
2022-02-12 10:17:50 +00:00
c00576969
733a17d6db update edk2 to stable 202011
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2022-02-09 18:41:17 +08:00
openeuler-ci-bot
a81b8af1e7
!54 BaseTools Adaper
Merge pull request !54 from caojinhuahw/openEuler-22.03-LTS-Next
2022-01-13 06:52:00 +00:00
Jinhua Cao
c3947e42d7 BaseTools Adapter for python3.9
fix ucs-2 lookup on python3.9
    Work around array.array.tostring() removal in python3.9
    (cherry-pick: 5d8648345c 43bec9ea3d)

Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2022-01-12 17:22:27 +08:00
openeuler-ci-bot
d6dc3bb0d2 !53 fix CVE-2021-28216
From: @caojinhuahw
Reviewed-by: @imxcc
Signed-off-by: @imxcc
2021-12-03 08:34:07 +00:00
Jinhua Cao
482473d706 fix CVE-2021-28216
Signed-off-by: Jinhua Cao <caojinhua1@huawei.com>
2021-12-02 21:29:17 +08:00
openeuler-ci-bot
6d8a705a6a !42 fix CVE-2021-38575
From: @imxcc
Reviewed-by: @kevinzhu1
Signed-off-by: @kevinzhu1
2021-09-22 10:08:03 +00:00
imxcc
73872a692b fix cve-2021-38575
Signed-off-by: imxcc <xingchaochao@huawei.com>
2021-09-22 17:32:51 +08:00
openeuler-ci-bot
db9319c770 !38 [sync] PR-37: Fix CVE-2021-28211 #I46N95
From: @openeuler-sync-bot
Reviewed-by: @imxcc
Signed-off-by: @imxcc
2021-09-01 01:09:08 +00:00
miaoyubo
850376eeed Fix CVE-2021-28211
(cherry picked from commit b8316529d841907bb624d71f70ee42f3b6635f4a)
2021-08-31 11:13:19 +08:00
openeuler-ci-bot
acaaf2ef34 !32 ArmPkg/CompilerIntrinsicsLib: provide atomics intrinsics
From: @eillon
Reviewed-by: @imxcc
Signed-off-by: @imxcc
2021-07-30 02:17:49 +00:00
eillon
85be15144b ArmPkg/CompilerIntrinsicsLib: provide atomics intrinsics
Gary reports the GCC 10 will emit calls to atomics intrinsics routines
unless -mno-outline-atomics is specified. This means GCC-10 introduces
new intrinsics, and even though it would be possible to work around this
by specifying the command line option, this would require a new GCC10
toolchain profile to be created, which we prefer to avoid.

So instead, add the new intrinsics to our library so they are provided
when necessary.
2021-07-30 10:00:25 +08:00
openeuler-ci-bot
b5c1394a2c !26 Fix CVE-2021-28210 #I3XQKV
From: @lijiajie128
Reviewed-by: @imxcc
Signed-off-by: @imxcc
2021-06-29 07:12:11 +00:00