Sign in
◑
Theme
qemu
/
ipxe
/
HEAD
ff6e520
[crypto] Add AES acceleration using the Arm Cryptographic Extensions
by Michael Brown
· 5 days ago
master
0214e43
[crypto] Add support for AES-NI hardware acceleration
by Michael Brown
· 7 days ago
7ada3e0
[crypto] Align AES round keys within the AES context
by Michael Brown
· 7 days ago
c4023b9
[crypto] Allow for AES hardware acceleration
by Michael Brown
· 7 days ago
d916dfc
[librm] Enable the use of SSE instructions if supported by the CPU
by Michael Brown
· 6 days ago
f582820
[librm] Preserve CR0 across virt_call()
by Michael Brown
· 6 days ago
a69ad34
[librm] Preserve CR4 across virt_call() if FXSR is supported
by Michael Brown
· 7 days ago
8f334fd
[librm] Skip runtime check for FXSR support in 64-bit builds
by Michael Brown
· 7 days ago
af96045
[librm] Remove conditionalisation of the Tivoli VMM workaround
by Michael Brown
· 7 days ago
aef505b
[librm] Clarify layout of saved GDTR/IDTR
by Michael Brown
· 7 days ago
b57bc76
[librm] Always disable paging when switching to protected mode
by Michael Brown
· 6 days ago
787ed93
[crypto] Treat high tag numbers as invalid
by Michael Brown
· 8 days ago
d89765d
[test] Add Project Wycheproof RSA-PSS signature verification tests
by Michael Brown
· 8 days ago
2061376
[test] Add a build target for slow self-tests
by Michael Brown
· 8 days ago
6935ca3
[test] Add Project Wycheproof ECDSA signature verification tests
by Michael Brown
· 8 days ago
1901e32
[crypto] Reject non-canonical ECDSA signature encodings
by Michael Brown
· 8 days ago
3a62e9d
[crypto] Reject indefinite and unrepresentable length encodings
by Michael Brown
· 8 days ago
de04e79
[crypto] Reject ASN.1 unsigned integers holding negative values
by Michael Brown
· 9 days ago
511dfd2
[crypto] Reject non-canonical ECDSA signature data structures
by Michael Brown
· 9 days ago
0a1d5fa
[test] Simplify class hierarchy for Project Wycheproof import tool
by Michael Brown
· 10 days ago
2d2dd52
[test] Derive comment labels from Project Wycheproof input files
by Michael Brown
· 10 days ago
ffa20bc
[test] Derive algorithm names from Project Wycheproof input files
by Michael Brown
· 10 days ago
d6032f0
[test] Use a single shared class for Project Wycheproof test flags
by Michael Brown
· 10 days ago
b684d09
[test] Add Project Wycheproof RSA PKCS#1 signature verification tests
by Michael Brown
· 10 days ago
d7226b9
[test] Add Project Wycheproof RSA PKCS#1 signature generation tests
by Michael Brown
· 10 days ago
7b46fa9
[test] Allow for invocation of individual Project Wycheproof tests
by Michael Brown
· 10 days ago
6e73f2a
[crypto] Reject non-canonical RSA inputs
by Michael Brown
· 10 days ago
c6bda17
[crypto] Add OID-identified algorithms for RSA with SHA512/224 and SHA512/256
by Michael Brown
· 10 days ago
22727c6
[test] Add Project Wycheproof RSA PKCS#1 decryption tests
by Michael Brown
· 10 days ago
2b1eaff
[crypto] Add missing padding length check in RSA decryption
by Michael Brown
· 10 days ago
a2f979a
[test] Allow for public-key algorithm tests with incomplete key pairs
by Michael Brown
· 11 days ago
ef58461
[test] Allow for per-group definition code in Project Wycheproof tests
by Michael Brown
· 10 days ago
d9df5d9
[test] Add schema and count validators in Project Wycheproof tests
by Michael Brown
· 10 days ago
35bd9a8
[test] Add Project Wycheproof AES-GCM tests
by Michael Brown
· 12 days ago
e49e1db
[crypto] Reject zero-length IVs for GCM ciphers
by Michael Brown
· 12 days ago
474abc9
[test] Add ability to test for cipher key and IV failures
by Michael Brown
· 12 days ago
5fe9965
[test] Add Project Wycheproof HKDF tests
by Michael Brown
· 12 days ago
6981f23
[test] Allow for HKDF tests without an expected PRK
by Michael Brown
· 12 days ago
16479af
[test] Add Project Wycheproof HMAC tests
by Michael Brown
· 12 days ago
a1c3847
[test] Allow for HMAC tests with partial expected output digest values
by Michael Brown
· 12 days ago
0a2a0ef
[test] Reduce duplication in Project Wycheproof import tool
by Michael Brown
· 12 days ago
d26e049
[test] Add Project Wycheproof import tool and key exchange tests
by Michael Brown
· 2 weeks ago
26f46a2
[tls] Reject a duplicate ServerHelloDone
by Michael Brown
· 2 weeks ago
61a75ec
[crypto] Ensure that a closed channel is left with unusable ciphers
by Michael Brown
· 2 weeks ago
2d66bfa
[crypto] Guard against mutation of certificate chain during validation
by Michael Brown
· 2 weeks ago
2ebc0d4
[tls] Add documentation to assist future code review
by Michael Brown
· 3 weeks ago
0167b5a
[tls] Make certificate processing visibly safe at point of use
by Michael Brown
· 3 weeks ago
8ef91dd
[tls] Make certificate sending visibly safe at point of use
by Michael Brown
· 3 weeks ago
11b793c
[tls] Treat secure channel's cipher algorithm as definitive
by Michael Brown
· 3 weeks ago
dc962df
[tls] Ensure that ServerKeyExchange parsing method is always non-NULL
by Michael Brown
· 3 weeks ago
c6e8c42
[tls] Use null key exchange algorithm as default for DHE and ECDHE
by Michael Brown
· 3 weeks ago
8383acf
[tls] Ensure that broken cipher suites can never be selected
by Michael Brown
· 3 weeks ago
cc87836
[tls] Remove redundant cipher suite name components in debug messages
by Michael Brown
· 3 weeks ago
202466d
[tls] Use null handshake digest algorithm for the null cipher suite
by Michael Brown
· 3 weeks ago
7afbcac
[tls] Use null MAC digest algorithm for AEAD ciphers
by Michael Brown
· 3 weeks ago
d86e86d
[tls] Guarantee that receive data buffer list is non-empty
by Michael Brown
· 3 weeks ago
e97772c
[tls] Use standalone secure channel and key schedule implementations
by Michael Brown
· 3 weeks ago
147ff45
[crypto] Add a standalone implementation of the TLS key schedules
by Michael Brown
· 3 weeks ago
2898206
[crypto] Add a generic implementation of a secure channel
by Michael Brown
· 7 weeks ago
53ac04e
[tls] Clean up session management
by Michael Brown
· 3 weeks ago
5d40abe
[tls] Clarify purpose of stored key exchange algorithm
by Michael Brown
· 3 weeks ago
8958a4a
[tls] Separate the concepts of key schedule and secure channel
by Michael Brown
· 3 weeks ago
6322f50
[tls] Unify handling of ServerKeyExchange and ClientKeyExchange
by Michael Brown
· 3 weeks ago
350c4e2
[crypto] Avoid out-of-bounds read when using uninitialised AES context
by Michael Brown
· 3 weeks ago
0ab2277
[arm] Add missing condition code clobbers to inline assembly
by Michael Brown
· 3 weeks ago
87a2016
[s390x] Add missing condition code clobbers to inline assembly
by Michael Brown
· 3 weeks ago
e6d0a97
[tls] Model classic RSA key transport as a key exchange algorithm
by Michael Brown
· 5 weeks ago
c10c815
[dns] Add redundant explicit check for CNAME validity
by Michael Brown
· 5 weeks ago
b65faae
[bitmap] Avoid potential integer overflow when calculating block count
by Michael Brown
· 5 weeks ago
034ef2b
[ata] Use data-transfer buffers for data-in and data-out
by Michael Brown
· 5 weeks ago
8baf1cd
[crypto] Correct harmless arithmetic error in Weierstrass curve sizing
by Michael Brown
· 5 weeks ago
2fa9f8b
[crypto] Add assertion on HKDF output length
by Michael Brown
· 5 weeks ago
719173a
[crypto] Add redundant high-bit clamp to X25519 scalar multiple
by Michael Brown
· 5 weeks ago
e7f0604
[crypto] Correct harmless arithmetic error in X25519 comments
by Michael Brown
· 5 weeks ago
257e8fa
[test] Allow for key exchange tests without an expected public key
by Michael Brown
· 5 weeks ago
7e882b7
[crypto] Add a null key exchange algorithm
by Michael Brown
· 5 weeks ago
e6e51cc
[build] Move various pointer assignments after their length checks
by Michael Brown
· 5 weeks ago
6215a88
[usb] Guard against invalid descriptor lengths in USB configurations
by Michael Brown
· 5 weeks ago
fe5f845
[vmbus] Check for packets shorter than their own header length
by Michael Brown
· 5 weeks ago
bfc442a
[ucode] Remove harmless read beyond end of malformed equivalence table
by Michael Brown
· 5 weeks ago
0f4a37b
[doc] Add agent-facing instructions
by Michael Brown
· 5 weeks ago
d00df08
[doc] Add security policy document
by Michael Brown
· 5 weeks ago
d3f96b7
[ci] Add a workflow to trigger synchronisation in forks
by Michael Brown
· 5 weeks ago
6084600
[ci] Add a workflow to run in forks to synchronise from the upstream
by Michael Brown
· 5 weeks ago
36c2554
[settings] Fix limited out-of-bounds read in fetch_numeric_setting()
by Michael Brown
· 6 weeks ago
092ab54
[ipv4] Remove harmless but technically undefined left shift
by Michael Brown
· 6 weeks ago
a1992fe
[doc] Document the threat model relevant to iPXE
by Michael Brown
· 6 weeks ago
5e706ff
[fcoe] Add assorted length checks
by Michael Brown
· 6 weeks ago
894a7e0
[efi] Avoid reading beyond end of command line
by Michael Brown
· 6 weeks ago
ba98f2e
[efi] Guard against invalid IpCnt values in the PXE IP address filter
by Michael Brown
· 6 weeks ago
45af75d
[efi] Treat invalid device path components as ending the path
by Michael Brown
· 6 weeks ago
5de611b
[efi] Fix check for well-formed device paths
by Michael Brown
· 6 weeks ago
eaf9875
[elf] Avoid harmless integer overflows in image length checks
by Michael Brown
· 6 weeks ago
3812a69
[uhci] Fix descriptor count for zero-length stream transfers
by Michael Brown
· 6 weeks ago
897c87a
[velocity] Correct direction of endianness conversion
by Michael Brown
· 6 weeks ago
3b06e41
[uhci] Add missing little-endian conversion
by Michael Brown
· 6 weeks ago
8cd4a0c
[intelxl] Add missing little-endian conversions
by Michael Brown
· 6 weeks ago
1e8f4fe
[build] Enable strict shift overflow warnings
by Michael Brown
· 6 weeks ago
07a0d64
[build] Fix technically undefined left shifts in disreputable code
by Michael Brown
· 6 weeks ago
d2df712
[build] Fix technically undefined left shifts in reputable code
by Michael Brown
· 6 weeks ago
Next »