mirror of https://github.com/acidanthera/audk.git
84d77d9bf5
Fixes CodeQL alerts for CWE-457: https://cwe.mitre.org/data/definitions/457.html Checks the return value from `ASN1_get_object()` to verify values set by the function are valid. Note that the function returns literal `0x80`: `return (0x80);` That is used to check the return value is as the case in other areas of the code. Cc: Erich McMillan <emcmillan@microsoft.com> Cc: Guomin Jiang <guomin.jiang@intel.com> Cc: Jian J Wang <jian.j.wang@intel.com> Cc: Jiewen Yao <jiewen.yao@intel.com> Cc: Michael Kubacki <mikuback@linux.microsoft.com> Cc: Xiaoyu Lu <xiaoyu1.lu@intel.com> Co-authored-by: Erich McMillan <emcmillan@microsoft.com> Signed-off-by: Michael Kubacki <michael.kubacki@microsoft.com> Reviewed-by: Jiewen Yao <Jiewen.yao@intel.com> Reviewed-by: Oliver Smith-Denny <osd@smith-denny.com> |
||
---|---|---|
.. | ||
CryptAuthenticode.c | ||
CryptAuthenticodeNull.c | ||
CryptDh.c | ||
CryptDhNull.c | ||
CryptEc.c | ||
CryptEcNull.c | ||
CryptPkcs1Oaep.c | ||
CryptPkcs1OaepNull.c | ||
CryptPkcs5Pbkdf2.c | ||
CryptPkcs5Pbkdf2Null.c | ||
CryptPkcs7Sign.c | ||
CryptPkcs7SignNull.c | ||
CryptPkcs7VerifyBase.c | ||
CryptPkcs7VerifyCommon.c | ||
CryptPkcs7VerifyEku.c | ||
CryptPkcs7VerifyEkuNull.c | ||
CryptPkcs7VerifyEkuRuntime.c | ||
CryptPkcs7VerifyNull.c | ||
CryptPkcs7VerifyRuntime.c | ||
CryptRsaBasic.c | ||
CryptRsaBasicNull.c | ||
CryptRsaExt.c | ||
CryptRsaExtNull.c | ||
CryptRsaPss.c | ||
CryptRsaPssNull.c | ||
CryptRsaPssSign.c | ||
CryptRsaPssSignNull.c | ||
CryptTs.c | ||
CryptTsNull.c | ||
CryptX509.c | ||
CryptX509Null.c |