SHA256
1
0
forked from pool/tboot

36 Commits

Author SHA256 Message Date
1b7c64ec4a - tboot-grub2-suse.patch: fixed bad if/elif
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=52
2016-06-01 09:29:45 +00:00
7ec4e3924f - Updated to 1.8.3/20140728 FATE#318542
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=50
2016-05-19 11:30:33 +00:00
b61c41021c - tboot-fix-stackoverflow.patch: upstream in 1.9.4
- tboot-fix-stackoverflow.patch: fix a excessive stack usage pattern
  that could lead to resets/crashes (bsc#967441)

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=49
2016-05-19 11:25:52 +00:00
7936a1991f OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=48 2016-05-19 11:13:40 +00:00
9611599ff0 OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=47 2016-05-19 11:10:19 +00:00
fe1ddf8a2e - Updated to 1.9.4/20160518 (FATE#320665)
Added TPM 2.0 CRB support
  Increased BSP and AP stacks to avoid stack overflow 
  Added an ACPI_RSDP structure g_rsdp in tboot to avoid potential memory overwritten issue on TPM 2.0 UEFI platforms
  Added support to both Intel TPM nv index set and TCG TPM nv index set
  grub2: tboot doesn't skip first argument any more
  grub2: sanitize whitespace in command lines        
  grub2: Allow addition of policy data in grub.cfg
  grub2 support: allow the user to customize the command line
  Mitigated S3 resume delay by adjusting LZ_MAX_OFFSET to 5000 in lz.c.        
  Added SGX TPM  nv index support
  Add 64 bit ELF object support
  Gentoo Hardened, which uses the GRSecurity and PaX patch sets
  Disable -fstack-check in CFLAG for compatibility with Gentoo Linux.
  Enhanced tboot compatiblity running on non-Intel TXT platform with a fix of is_launched()
  LCP documentation improvements
- tboot-grub2-suse.patch: refreshed
- tboot-grub2-fix-xen-submenu-name.patch: refreshed

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=46
2016-05-19 10:40:21 +00:00
155536cc12 - Updated to 1.8.3/20140728
* Added verified launch control policy user guide
  * Fixed a bug about var MTRR settings to follow the rule that each VAR MTRR base must be a multiple of that MTRR's size.
  * Access tpm sts reg with 3-byte width in v1.2 case and 4-byte width in v2.0 case
  * Bugfix: lcp2_mlehash get wrong hash if the cmdline string length > 7
  * Optimized tboot log processing flow to avoid log buffer overflow by adopting lz Compress/Uncompress algorithms
  * Added SGX support for Skylake platform
  * tpm2: use the primary object in NULL Hierarchy instead of Platform Hierarchy for seal/unseal usage
  * Fixed a bug for lcp2_mlehash tool
  * Fixed system hang issue caused by TXT disable, TPM disable or SINIT ACM not correctly provided in EFI booting mode
  * Fixed bug for wrong assumption on the way how GRUB2 load modules
  * Fixed MB2 tags mess issue caused by moving shorter module cmdline to head
  * Fixed compile issue when debug=y
- refreshed tboot-grub2-fix-xen-submenu-name.patch

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=44
2015-05-08 12:09:59 +00:00
61a6b9f2ab OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=43 2015-05-08 12:08:47 +00:00
f139c717a0 - tboot-fix.patch: removed, fixed differently upstream.
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=41
2014-07-28 13:26:35 +00:00
72b8478fa6 OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=40 2014-07-28 12:27:36 +00:00
8c11ca8b3b - updated to 1.8.2/20140728
Security Fix: TBOOT Argument Measurement Vulnerability for GRUB2 + ELF Kernels
  fix werror in 32 bit build environment

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=39
2014-07-28 12:14:44 +00:00
d4f3f34f72 OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=37 2014-05-19 12:03:29 +00:00
9e55a6c325 - updated to 1.8.1/20140516
Fix build error "may be used uninitialized"
  Reset eventlog when S3
  Update tboot version to 1.8.1 in grub title
  Fix grub cfg file generation scripts for SLES12
  Fix seal failure issue
  tpm2 lcptools
  Restore local apic base for AP
  Fix typo in hash_alg_to_string()
  Change to create primary object only once
  Add prepare_tpm call in S3 path to ensure locality 0 was released before senter
  Fix possible dead loop in print_bios_data when bios_data version 4
  Fix possible null pointer dereference in loader.c
  Fix possible null pointer dereference in tpm_12.c and tpm_20.c
  Avoid buffer overrun when append tpm12 eventlog
  Fix possible NULL pointer dereference
  Fix one event log issue caused by wrong append and print operation
  Fix error "unsupported hash alg" for agile extend policy
  Fix warning "ACM info_table version mismatch"
  Update the tpm family detection with a general way
  Fix a lcp tools issue caused by redefining TB_HALG_SHA1 from 0 to 4
  Assign g_tpm a value for no tpm case to avoid NULL checks
  Fix crash when TPM is missing
  Fix infinite loop in determine_multiboot_type()
  Fix typo in tpm20_init() and remove unused variable
  Allow the to-be-measured nv to be protected by AUTHWRITE
  Check cpu vendor id to avoid unexpected behavior in non-intel cpu
  Change to detect TPM family only once
  Fix some typos caused by copy-paste
- removed tboot-cs381.patch: upstream

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=36
2014-05-19 11:14:18 +00:00
535e8279ac OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=35 2014-05-19 11:08:13 +00:00
53f5cf91f6 Accepting request 234257 from home:michael-chang:SLE12
- fix grub2 boot menu after installing lots of kernels (bnc#865815)
- add tboot-grub2-fix-menu-in-xen-host-server.patch
- add tboot-grub2-fix-xen-submenu-name.patch

OBS-URL: https://build.opensuse.org/request/show/234257
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=34
2014-05-19 11:07:41 +00:00
25b720120c Accepting request 232174 from home:msmeissn:branches:security
- tboot-cs381.patch: generate tboot entries correctly, from Intel.
  bnc#875581

OBS-URL: https://build.opensuse.org/request/show/232174
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=32
2014-04-30 09:32:20 +00:00
4c613aa4c4 Accepting request 223108 from home:msmeissn:branches:security
- fixed path for /usr/share/grub2/grub-mkconfig_lib in our grub2
  snippets. (bnc#864633)

OBS-URL: https://build.opensuse.org/request/show/223108
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=30
2014-02-19 16:27:47 +00:00
d396ed9c70 - updated to 1.8.0/20130705
Update README for TPM2 support
  tpm2 support
  Adding sha256 algorithm implementation
  Update README for TPM NV measuring
  Update README for EFI support
  Fix typo in tboot/Makefile
  Increase the supported maximum number of cpus from 256 to 512
  Extend tboot policy supporting measuring TPM NV
  EFI support via multiboot2 changes
  Fix typo in common/hash.c
  Fix verification for extended data elements in txt heap

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=28
2014-01-30 22:00:39 +00:00
45f679af26 - updated to 1.7.4/20130705
Fix possible empty submenu block in generated grub.cfg
  Add a call_racm=check option for easy RACM launch result check
  Fix type check for revocation ACM.

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=26
2013-08-08 11:58:01 +00:00
a44f5aa273 - updated to 1.7.3/20121228
Update README with updated code repository url.
  Fix grub2 scripts to be compatible with more distros.
  Update README for RACM launch support
  Add a new option "call_racm=true|false" for revocation acm(RACM) launch
  Fix potential buffer overrun & memory leak in crtpconf.c
  Fix a potential buffer overrun in lcptools/lock.c
  Print cmdline in multi-lines
  Optional print TXT.ERRORCODE under level error or info
  Fix side effects of tboot log level macros in tools
  Update readme for the new detail log level
  Classify all logs into different log levels
  Add detail log level and the macros defined for log level
  Fix acmod_error_t type to correctly align all bits in 4bytes

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=24
2013-01-08 15:28:19 +00:00
0f7e137c77 another strlen
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=22
2012-10-12 06:07:14 +00:00
2a956fdf9c - spec file adjustments
- tboot-fix.patch: fixed printf type mismatch

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=21
2012-10-11 17:17:33 +00:00
2144898384 new grub 2.0 config files
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=20
2012-10-11 15:52:32 +00:00
55c58e5e1c x
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=19
2012-10-11 07:03:04 +00:00
200d9dc8e5 - zlib patch upstreamed.
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=18
2012-10-10 21:20:18 +00:00
ebd200f25c - updated to 1.7.2/20120929
Add Makefile for docs to install man pages.
  Add man pages for tools
  Add grub-mkconfig helper scripts for tboot case in GRUB2
  Fix for deb build in ubuntu
  Fix S3 issue brought by c/s 308
  Fix a S4 hang issue and a potential shutdown reset issue
  Fix build with new zlib 1.2.7.
  Initialize event log when S3
  Update README to change upstream repo url from bughost.org to sf.net.
- updated to 1.7.1/20120427
  Fix cmdline size in tb_polgen
  Add description for option min_ram in README.
  new tboot cmdline option "min_ram=0xXXXXXX"
  Update test-patches/tpm-test.patch to fit in latest code.

OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=17
2012-10-10 15:32:33 +00:00
7de0996a1c x
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=15
2012-05-31 12:00:13 +00:00
aee759155e - adjust to changed zlib api
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=14
2012-05-31 11:21:07 +00:00
c1d7225500 adjust
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=13
2012-05-31 11:20:57 +00:00
f89f20b435 - reenable exclusivearch to avoid building it on ppc and arm.
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=11
2012-04-25 21:16:34 +00:00
e7a6853fa5 exclusivearch intel
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=10
2012-04-25 20:59:43 +00:00
53608871a7 Accepting request 113558 from openSUSE:Factory:ARM
- exclude from build for arm

OBS-URL: https://build.opensuse.org/request/show/113558
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=9
2012-04-14 18:36:56 +00:00
83d9eb7257 Accepting request 107436 from home:msmeissn:branches:security
updated to 1.7.0

OBS-URL: https://build.opensuse.org/request/show/107436
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=7
2012-03-01 16:04:24 +00:00
Pavol Rusnak
133089c64f Accepting request 100009 from devel:openSUSE:Factory:for-legal-lhf
patching license field to be in spdx.org format, for legal team to review before forward

OBS-URL: https://build.opensuse.org/request/show/100009
OBS-URL: https://build.opensuse.org/package/show/security/tboot?expand=0&rev=5
2012-01-13 16:12:20 +00:00
Sascha Peilicke
a749ffab19 Accepting request 71777 from security
Add verbose changelog as requested by Factory maintainers (forwarded request 71748 from namtrac)

OBS-URL: https://build.opensuse.org/request/show/71777
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tboot?expand=0&rev=2
2011-05-30 08:44:22 +00:00
Sascha Peilicke
4e4f34cc97 Accepting request 68696 from security
new trusted boot loader, fixed %install section, prepare_spec

OBS-URL: https://build.opensuse.org/request/show/68696
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/tboot?expand=0&rev=1
2011-04-29 07:26:36 +00:00